GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
10,667 advisories
Filter by severity
Undertow Denial of Service vulnerability
Moderate
CVE-2023-1973
was published
for
io.undertow:undertow-core
(Maven)
Nov 7, 2024
A vulnerability in the External Agent Assignment Service (EAAS) feature of Cisco Enterprise Chat...
High
Unreviewed
CVE-2024-20484
was published
Nov 6, 2024
Symfony has an incorrect response from Validator when input ends with `\n`
Low
CVE-2024-50343
was published
for
symfony/symfony
(Composer)
Nov 6, 2024
Symfony allows changing the environment through a query
Moderate
CVE-2024-50340
was published
for
symfony/runtime
(Composer)
Nov 6, 2024
Vulnerability of input parameters not being verified in the HDC module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-51520
was published
Nov 5, 2024
Data verification vulnerability in the battery module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-51529
was published
Nov 5, 2024
Vulnerability of input parameters not being verified in the HDC module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-51519
was published
Nov 5, 2024
LaunchAnywhere vulnerability in the account module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-51530
was published
Nov 5, 2024
Vulnerability of parameter type not being verified in the WantAgent module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-51511
was published
Nov 5, 2024
Vulnerability of parameter type not being verified in the WantAgent module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-51512
was published
Nov 5, 2024
Vulnerability of pop-up windows belonging to no app in the VPN module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-51514
was published
Nov 5, 2024
Vulnerability of processes not being fully terminated in the VPN module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-51513
was published
Nov 5, 2024
Memory corruption while processing the update SIM PB records request.
Moderate
Unreviewed
CVE-2024-33031
was published
Nov 4, 2024
memory corruption when WiFi display APIs are invoked with large random inputs.
Moderate
Unreviewed
CVE-2024-23386
was published
Nov 4, 2024
The LevelOne WBR-6012 router firmware R0.40e6 suffers from an input validation vulnerability...
High
Unreviewed
CVE-2024-33700
was published
Oct 30, 2024
Improper input validation for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi...
Moderate
Unreviewed
CVE-2023-34983
was published
Oct 29, 2024
Improper input validation for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi...
Moderate
Unreviewed
CVE-2023-28374
was published
Oct 29, 2024
Improper input validation for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi...
Moderate
Unreviewed
CVE-2023-25951
was published
Oct 29, 2024
mudler/LocalAI version 2.17.1 allows for arbitrary file write due to improper handling of...
High
Unreviewed
CVE-2024-6868
was published
Oct 29, 2024
There is a command injection vulnerability in ZTE MF258 Pro product. Due to insufficient...
Moderate
Unreviewed
CVE-2024-22065
was published
Oct 29, 2024
NVIDIA vGPU software contains a vulnerability in the GPU kernel driver of the vGPU Manager for...
High
Unreviewed
CVE-2024-0127
was published
Oct 26, 2024
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability which could allow a...
High
Unreviewed
CVE-2024-0126
was published
Oct 26, 2024
Denied Host Validation Bypass in Zitadel Actions
Moderate
CVE-2024-49753
was published
for
github.com/zitadel/zitadel
(Go)
Oct 25, 2024
Apache Syncope: Stored XSS in Console and Enduser
Moderate
CVE-2024-45031
was published
for
org.apache.syncope.client:syncope-client-console
(Maven)
Oct 24, 2024
Improper input validation in some Intel(R) SGX DCAP software for Windows before version 1.19.100...
Moderate
Unreviewed
CVE-2023-42776
was published
Oct 24, 2024
ProTip!
Advisories are also available from the
GraphQL API