GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
2,000
Maven
5,000+
npm
3,711
NuGet
661
pip
3,383
Pub
11
RubyGems
885
Rust
849
Swift
36
Unreviewed advisories
All unreviewed
5,000+
55 advisories
Filter by severity
IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 could allow an authenticated user to obtain...
Moderate
Unreviewed
CVE-2024-37070
was published
Nov 19, 2024
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-49025
was published
Nov 14, 2024
An exposure of sensitive information to an unauthorized actor [CWE-200] in Fortinet FortiManager...
Moderate
Unreviewed
CVE-2023-44255
was published
Nov 12, 2024
Sensitive information disclosure due to spell-jacking. The following products are affected:...
Moderate
Unreviewed
CVE-2024-49386
was published
Oct 17, 2024
This vulnerability exists in Apex Softcell LD Geo due to improper validation of the certain...
High
Unreviewed
CVE-2024-47087
was published
Sep 19, 2024
This vulnerability exists in LD DP Back Office due to improper validation of certain parameters ...
High
Unreviewed
CVE-2024-47085
was published
Sep 19, 2024
An attacker with no knowledge of the current users in the web application, could build a...
Moderate
Unreviewed
CVE-2024-8891
was published
Sep 18, 2024
org.xwiki.platform:xwiki-platform-notifications-ui leaks data of notification filters of users
Moderate
CVE-2024-46979
was published
for
org.xwiki.platform:xwiki-platform-notifications-ui
(Maven)
Sep 18, 2024
This vulnerability exists in Reedos aiM-Star version 2.0.1 due to transmission of sensitive...
High
Unreviewed
CVE-2024-45787
was published
Sep 11, 2024
XWiki Platform document history including authors of any page exposed to unauthorized actors
Moderate
CVE-2024-45591
was published
for
org.xwiki.platform:xwiki-platform-rest-server
(Maven)
Sep 10, 2024
Due to missing authorization checks, SAP Business Warehouse (BEx Analyzer) allows an...
Moderate
Unreviewed
CVE-2024-44113
was published
Sep 10, 2024
Due to missing authorization checks, SAP BEx Analyzer allows an authenticated attacker to access...
Moderate
Unreviewed
CVE-2024-41729
was published
Sep 10, 2024
Dell Path to PowerProtect, versions 1.1, 1.2, contains an Exposure of Private Personal...
Moderate
Unreviewed
CVE-2024-37136
was published
Sep 3, 2024
Improper access control in the clipboard synchronization feature in TeamViewer Full Client prior...
Moderate
Unreviewed
CVE-2024-6053
was published
Aug 28, 2024
Matrix SDK for React's URL preview setting for a room is controllable by the homeserver
Moderate
CVE-2024-42347
was published
for
matrix-react-sdk
(npm)
Aug 6, 2024
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-38103
was published
Jul 26, 2024
IBM InfoSphere Information Server 11.7 could disclose sensitive user information to another user...
Low
Unreviewed
CVE-2024-37533
was published
Jul 24, 2024
A vulnerability has been identified in SIMATIC PCS 7 V9.1 (All versions), SIMATIC WinCC Runtime...
High
Unreviewed
CVE-2024-30321
was published
Jul 9, 2024
In the module "Theme settings" (pk_themesettings) <= 1.8.8 from Promokit.eu for PrestaShop, a...
High
Unreviewed
CVE-2024-36682
was published
Jun 25, 2024
In the module "Login as customer PRO" (loginascustomerpro) <1.2.7 from Weblir for PrestaShop, a...
High
Unreviewed
CVE-2024-36677
was published
Jun 19, 2024
An issue in Foundation.app Foundation platform 1.0 allows a remote attacker to obtain sensitive...
High
Unreviewed
CVE-2023-50053
was published
Apr 30, 2024
An issue in FME Modules eventsmanager before 4.4.0 allows an attacker to obtain sensitive...
High
Unreviewed
CVE-2024-33271
was published
Apr 29, 2024
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-29987
was published
Apr 18, 2024
Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-29986
was published
Apr 18, 2024
Saleor: Customers' addresses leak when using Warehouse as a `Pickup: Local stock only` delivery method
Moderate
CVE-2024-29888
was published
for
saleor
(pip)
Mar 28, 2024
ProTip!
Advisories are also available from the
GraphQL API