GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,358
Erlang
33
GitHub Actions
22
Go
2,121
Maven
5,000+
npm
3,783
NuGet
683
pip
3,465
Pub
12
RubyGems
893
Rust
892
Swift
38
Unreviewed advisories
All unreviewed
5,000+
13 advisories
Filter by severity
A firmware update vulnerability exists in the sysupgrade functionality of Robustel R1510 3.1.16...
Low
Unreviewed
CVE-2022-34845
was published
Oct 25, 2022
Unprotected dynamically loaded chunks
Low
CVE-2020-15262
was published
for
webpack-subresource-integrity
(npm)
Oct 19, 2020
User content sandbox can be confused into opening arbitrary documents
Low
CVE-2021-21320
was published
for
matrix-react-sdk
(npm)
Mar 3, 2021
A flaw was found in the Linux kernels SELinux LSM hook implementation before version 5.7, where...
Low
Unreviewed
CVE-2020-10751
was published
May 24, 2022
A vulnerability was found in EmpowerID up to 7.205.0.0. It has been rated as problematic. This...
Low
Unreviewed
CVE-2023-4177
was published
Aug 6, 2023
Graylog vulnerable to insecure source port usage for DNS queries
Low
CVE-2023-41045
was published
for
org.graylog2:graylog2-server
(Maven)
Jul 6, 2023
Pipelines do not validate child UIDs
Low
CVE-2023-37264
was published
for
github.com/tektoncd/pipeline
(Go)
Jul 7, 2023
** DISPUTED ** GNOME Evolution through 3.38.3 produces a "Valid signature" message for an unknown...
Low
Unreviewed
CVE-2021-3349
was published
May 24, 2022
Use of Less Trusted Source vulnerability in SolidWP Solid Security allows HTTP DoS.This issue...
Low
Unreviewed
CVE-2022-44593
was published
Jun 21, 2024
An issue has been discovered in GitLab CE/EE affecting all versions from 12.2 prior to 16.5.6, 16...
Low
Unreviewed
CVE-2023-2030
was published
Jan 12, 2024
Insufficient verification of data authenticity in
the configuration state machine may allow a...
Low
Unreviewed
CVE-2023-20570
was published
Feb 13, 2024
An insufficient verification of data authenticity vulnerability exists in BIG-IP APM Access...
Low
Unreviewed
CVE-2025-23415
was published
Feb 5, 2025
Certifi removes GLOBALTRUST root certificate
Low
CVE-2024-39689
was published
for
certifi
(pip)
Jul 5, 2024
ProTip!
Advisories are also available from the
GraphQL API