GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,749
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,739
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
9,593 advisories
Filter by severity
File read permission bypass vulnerability in the kernel file system module
Impact: Successful...
Moderate
Unreviewed
CVE-2025-31171
was published
Apr 7, 2025
Microsoft Exchange Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022...
Moderate
Unreviewed
CVE-2022-34692
was published
Aug 10, 2022
Exposure of sensitive information to an unauthorized actor in Power Automate allows an...
Critical
Unreviewed
CVE-2025-47966
was published
Jun 5, 2025
Deno vulnerable to Exposure of Sensitive Information to an Unauthorized Actor
Moderate
CVE-2024-21486
was published
for
deno
(Rust)
Jun 5, 2025
PostgreSQL Anonymizer v2.0 and v2.1 contain a vulnerability that allows a masked user to bypass...
Moderate
Unreviewed
CVE-2025-5690
was published
Jun 5, 2025
This issue was addressed with improved redaction of sensitive information. This issue is fixed in...
Moderate
Unreviewed
CVE-2024-23207
was published
Jan 23, 2024
A vulnerability in the web-based chat interface of Cisco Customer Collaboration Platform (CCP),...
Moderate
Unreviewed
CVE-2025-20129
was published
Jun 4, 2025
Vulnerability CVE-2024-22022 allows a Veeam Recovery Orchestrator user that has been assigned a...
High
Unreviewed
CVE-2024-22022
was published
Feb 7, 2024
Vulnerability in the Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle...
Low
Unreviewed
CVE-2024-20955
was published
Jan 17, 2024
Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Core)...
Low
Unreviewed
CVE-2024-20914
was published
Jan 17, 2024
HCL DevOps Deploy / HCL Launch (UCD) could disclose sensitive user information when installing...
Moderate
Unreviewed
CVE-2024-23550
was published
Feb 3, 2024
Vulnerability in Oracle Audit Vault and Database Firewall (component: Firewall). Supported...
Low
Unreviewed
CVE-2024-20910
was published
Jan 17, 2024
A vulnerability was found in Multilaser Sirius RE016 MLT1.0. It has been rated as problematic....
Moderate
Unreviewed
CVE-2025-5436
was published
Jun 2, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2025-31231
was published
May 30, 2025
In FUEL CMS 11.4.12 and before, the page preview feature allows an anonymous user to take...
Critical
Unreviewed
CVE-2020-26167
was published
May 24, 2022
An issue was discovered in the Archibus app 4.0.3 for iOS. There is an XSS vulnerability in the...
Moderate
Unreviewed
CVE-2023-48644
was published
Mar 6, 2024
The API in Accredible Credential.net December 6th, 2023 allows an Insecure Direct Object...
High
Unreviewed
CVE-2023-50872
was published
Apr 16, 2024
An issue was discovered on Innovaphone PBX before 14r1 devices. It provides different responses...
Moderate
Unreviewed
CVE-2024-24720
was published
Feb 27, 2024
An issue was discovered in Archibus Web Central 2022.03.01.107. A service exposed by the...
Moderate
Unreviewed
CVE-2022-45167
was published
Jan 10, 2023
An issue was discovered in Zoho ManageEngine Key Manager Plus before 6200. A service exposed by...
Moderate
Unreviewed
CVE-2022-24447
was published
Mar 3, 2022
An SSRF issue was discovered in Zoho Application Control Plus before version 10.0.511. The mail...
Moderate
Unreviewed
CVE-2020-15594
was published
May 24, 2022
The Integration for Salesforce and Contact Form 7, WPForms, Elementor, Formidable, Ninja Forms...
Moderate
Unreviewed
CVE-2025-4659
was published
May 30, 2025
There is a possible disclosure of Bluetooth adapter details due to a permissions bypass. This...
Moderate
Unreviewed
CVE-2024-56193
was published
May 27, 2025
Windows Kernel Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022-30197.
Moderate
Unreviewed
CVE-2022-34708
was published
Aug 10, 2022
Windows Defender Credential Guard Information Disclosure Vulnerability. This CVE ID is unique...
Moderate
Unreviewed
CVE-2022-34710
was published
Aug 10, 2022
ProTip!
Advisories are also available from the
GraphQL API