GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,748
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,736
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
22,512 advisories
Filter by severity
A memory corruption vulnerability exists in the httpd unescape functionality of DD-WRT Revision...
Critical
Unreviewed
CVE-2022-27631
was published
Aug 6, 2022
Authentication Bypass by Primary Weakness in GitHub repository bookwyrm-social/bookwyrm prior to...
Critical
Unreviewed
CVE-2022-2651
was published
Aug 5, 2022
OMICARD EDM’s API function has insufficient validation for user input. An unauthenticated remote...
Critical
Unreviewed
CVE-2022-32964
was published
Aug 5, 2022
OMICARD EDM has a hard-coded machine key. An unauthenticated remote attacker can use the machine...
Critical
Unreviewed
CVE-2022-32965
was published
Aug 5, 2022
A vulnerability was found in SourceCodester Online Admission System and classified as critical....
Critical
Unreviewed
CVE-2022-2644
was published
Aug 5, 2022
A vulnerability has been found in SourceCodester Online Admission System and classified as...
Critical
Unreviewed
CVE-2022-2643
was published
Aug 5, 2022
A vulnerability was found in jeecg-boot. It has been declared as critical. This vulnerability...
Critical
Unreviewed
CVE-2022-2647
was published
Aug 5, 2022
A vulnerability was found in SourceCodester Multi Language Hotel Management Software. It has been...
Critical
Unreviewed
CVE-2022-2648
was published
Aug 5, 2022
In BIG-IP Versions 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x,...
Critical
Unreviewed
CVE-2022-34865
was published
Aug 5, 2022
In BIG-IP Versions 16.1.x before 16.1.3, 15.1.x before 15.1.5.1, 14.1.x before 14.1.5, and all...
Critical
Unreviewed
CVE-2022-35243
was published
Aug 5, 2022
In BIG-IP Versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x...
Critical
Unreviewed
CVE-2022-35728
was published
Aug 5, 2022
A vulnerability classified as critical has been found in SourceCodester Multi Language Hotel...
Critical
Unreviewed
CVE-2022-2656
was published
Aug 5, 2022
Totolink A3600R_Firmware V4.1.2cu.5182_B20201102 contains a hard code password for root in /etc...
Critical
Unreviewed
CVE-2022-34993
was published
Aug 5, 2022
Crow before v1.0+4 was discovered to contain a buffer overflow via the function qs_parse at...
Critical
Unreviewed
CVE-2022-34970
was published
Aug 5, 2022
In ConnMan through 1.41, remote attackers able to send HTTP requests to the gweb component are...
Critical
Unreviewed
CVE-2022-32292
was published
Aug 4, 2022
This vulnerability allows remote attackers to bypass authentication on affected installations of...
Critical
Unreviewed
CVE-2022-2272
was published
Aug 4, 2022
D-Link DIR810LA1_FW102B22 was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-34974
was published
Aug 4, 2022
D-LINK DIR-818LW A1:DIR818L_FW105b01 was discovered to contain a remote code execution (RCE)...
Critical
Unreviewed
CVE-2022-35620
was published
Aug 4, 2022
D-LINK DIR-818LW A1:DIR818L_FW105b01 was discovered to contain a remote code execution (RCE)...
Critical
Unreviewed
CVE-2022-35619
was published
Aug 4, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
Critical
Unreviewed
CVE-2022-35865
was published
Aug 4, 2022
This vulnerability allows remote attackers to bypass authentication on affected installations of...
Critical
Unreviewed
CVE-2022-35866
was published
Aug 4, 2022
GVRET Stable Release as of Aug 15, 2015 was discovered to contain a buffer overflow via the...
Critical
Unreviewed
CVE-2022-35161
was published
Aug 4, 2022
Pligg CMS v2.0.2 was discovered to contain a time-based SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2022-34955
was published
Aug 3, 2022
Pligg CMS v2.0.2 was discovered to contain a time-based SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2022-34956
was published
Aug 3, 2022
Web Based Quiz System v1.0 was discovered to contain a SQL injection vulnerability via the qid...
Critical
Unreviewed
CVE-2022-35422
was published
Aug 3, 2022
ProTip!
Advisories are also available from the
GraphQL API