GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,350
Erlang
31
GitHub Actions
22
Go
2,119
Maven
5,000+
npm
3,778
NuGet
680
pip
3,459
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,142 advisories
Filter by severity
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.3, macOS...
Moderate
Unreviewed
CVE-2023-27951
was published
May 8, 2023
Under certain conditions, vmdir that ships with VMware vCenter Server, as part of an embedded or...
Moderate
Unreviewed
CVE-2020-3952
was published
May 24, 2022
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.3,...
Moderate
Unreviewed
CVE-2023-23538
was published
May 8, 2023
An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This...
Moderate
Unreviewed
CVE-2025-0743
was published
Jan 30, 2025
An Improper Access Control vulnerability has been found in EmbedAI
2.1 and below. This...
Moderate
Unreviewed
CVE-2025-0741
was published
Jan 30, 2025
An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This...
Moderate
Unreviewed
CVE-2025-0742
was published
Jan 30, 2025
Improper Access Control in /tc/rpc in Jedox GmbH Jedox 2020.2.5 allows remote authenticated users...
Moderate
Unreviewed
CVE-2022-47874
was published
May 2, 2023
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.3, macOS...
Moderate
Unreviewed
CVE-2025-24099
was published
Jan 30, 2025
Improper access control vulnerability in the system date/time setting page of SolarView Compact...
Moderate
Unreviewed
CVE-2023-27920
was published
May 23, 2023
Insecure Permissions vulnerability found in MagicJack A921 USB Phone Jack Rev 3.0 v.1.4 allows a...
Moderate
Unreviewed
CVE-2023-30024
was published
Apr 28, 2023
Incorrect Authorization vulnerability in Drupal Freelinking allows Forceful Browsing.This issue...
Moderate
Unreviewed
CVE-2024-13270
was published
Jan 9, 2025
Incorrect Authorization vulnerability in Drupal Content Entity Clone allows Forceful Browsing...
Moderate
Unreviewed
CVE-2024-13271
was published
Jan 9, 2025
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition...
Moderate
Unreviewed
CVE-2025-21502
was published
Jan 21, 2025
This vulnerability allows network-adjacent attackers to disclose sensitive information on...
Moderate
Unreviewed
CVE-2024-23937
was published
Jan 31, 2025
Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component: SDK...
Moderate
Unreviewed
CVE-2025-21560
was published
Jan 21, 2025
Improper access control in Odoo Community 13.0 and earlier and Odoo Enterprise 13.0 and earlier...
Moderate
Unreviewed
CVE-2021-44465
was published
Apr 25, 2023
Infopop Ultimate Bulletin Board up to v5.47a was discovered to allow all messages posted inside...
Moderate
Unreviewed
CVE-2022-25091
was published
Apr 27, 2023
An access control issue in the component websURLFilterAddDel of D-Link 816A2_FWv1...
Moderate
Unreviewed
CVE-2024-57683
was published
Jan 16, 2025
An access control issue in the component form2alg.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210...
Moderate
Unreviewed
CVE-2024-57681
was published
Jan 16, 2025
An access control issue in the component form2WlAc.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210...
Moderate
Unreviewed
CVE-2024-57678
was published
Jan 16, 2025
An access control issue in the component form2WlanBasicSetup.cgi of D-Link 816A2_FWv1...
Moderate
Unreviewed
CVE-2024-57676
was published
Jan 16, 2025
An access control issue in the component form2PortriggerRule.cgi of D-Link 816A2_FWv1...
Moderate
Unreviewed
CVE-2024-57680
was published
Jan 16, 2025
The Booster for WooCommerce plugin is vulnerable to Unauthenticated Arbitrary Shortcode Execution...
Moderate
Unreviewed
CVE-2024-3957
was published
May 2, 2024
An access control issue in the component form2Wan.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210...
Moderate
Unreviewed
CVE-2024-57677
was published
Jan 16, 2025
An access control issue in the component form2RepeaterSetup.cgi of D-Link 816A2_FWv1...
Moderate
Unreviewed
CVE-2024-57679
was published
Jan 16, 2025
ProTip!
Advisories are also available from the
GraphQL API