GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
48
GitHub Actions
48
Go
3,391
Maven
5,000+
npm
5,000+
NuGet
882
pip
4,614
Pub
13
RubyGems
1,026
Rust
1,205
Swift
51
Unreviewed advisories
All unreviewed
5,000+
29,432 advisories
Filter by severity
Presto Changeo testsitecreator up to 1.1.1 was discovered to contain a deserialization...
Critical
Unreviewed
CVE-2023-43981
was published
Oct 5, 2023
Presto Changeo attributegrid up to 2.0.3 was discovered to contain a SQL injection vulnerability...
Critical
Unreviewed
CVE-2023-43983
was published
Oct 5, 2023
SQL injection vulnerability in KnowBand Module One Page Checkout, Social Login & Mailchimp ...
Critical
Unreviewed
CVE-2023-44024
was published
Oct 5, 2023
Dell SmartFabric Storage Software version 1.3 and lower contain an improper input validation...
Critical
Unreviewed
CVE-2023-32485
was published
Oct 5, 2023
Line directives ("//line") can be used to bypass the restrictions on "//go:cgo_" directives,...
Critical
Unreviewed
CVE-2023-39323
was published
Oct 5, 2023
Qognify NiceVision versions 3.1 and prior are vulnerable to exposing sensitive information...
Critical
Unreviewed
CVE-2023-2306
was published
Oct 5, 2023
IQ Engine before 10.6r2 on Extreme Network AP devices has a Buffer Overflow.
Critical
Unreviewed
CVE-2023-35803
was published
Oct 5, 2023
Atos Unify OpenScape Session Border Controller through V10 R3.01.03 allows execution of...
Critical
Unreviewed
CVE-2023-36619
was published
Oct 4, 2023
A?CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')...
Critical
Unreviewed
CVE-2023-5399
was published
Oct 4, 2023
A?CWE-502:?Deserialization of untrusted data?vulnerability exists?that could allow an attacker...
Critical
Unreviewed
CVE-2023-5391
was published
Oct 4, 2023
TouchLink packets processed after timeout or out of range due to Operation on a Resource after...
Critical
Unreviewed
CVE-2023-41094
was published
Oct 4, 2023
A vulnerability in Cisco Emergency Responder could allow an unauthenticated, remote attacker to...
Critical
Unreviewed
CVE-2023-20101
was published
Oct 4, 2023
TCMAN GIM v8.0.1 is vulnerable to a SQL injection via the 'SqlWhere' parameter inside the...
Critical
Unreviewed
CVE-2022-36276
was published
Oct 4, 2023
A?CWE-269: Improper Privilege Management vulnerability exists?that could cause?a local privilege...
Critical
Unreviewed
CVE-2023-5402
was published
Oct 4, 2023
Atlassian has been made aware of an issue reported by a handful of customers where external...
Critical
Unreviewed
CVE-2023-22515
was published
Oct 4, 2023
Stack-based buffer overflow vulnerability in Easy Chat Server 3.1 version. An attacker could send...
Critical
Unreviewed
CVE-2023-4494
was published
Oct 4, 2023
Buffer overflow vulnerability in Easy Address Book Web Server 1.6 version. The exploitation of...
Critical
Unreviewed
CVE-2023-4491
was published
Oct 4, 2023
Plaintext credential usage vulnerability in Sage 200 Spain 2023.38.001 version, the exploitation...
Critical
Unreviewed
CVE-2023-2809
was published
Oct 4, 2023
Stack-based Buffer Overflow in vulnerability HDCP trustlet prior to SMR Oct-2023 Release 1 allows...
Critical
Unreviewed
CVE-2023-30733
was published
Oct 4, 2023
IBM Observability with Instana 1.0.243 through 1.0.254 could allow an attacker on the network to...
Critical
Unreviewed
CVE-2023-37404
was published
Oct 4, 2023
Improper neutralization of SQL parameter in Theme Volty CMS Category Slider module for PrestaShop...
Critical
Unreviewed
CVE-2023-39649
was published
Oct 4, 2023
Improper neutralization of SQL parameter in Theme Volty CMS BrandList module for PrestaShop In...
Critical
Unreviewed
CVE-2023-39651
was published
Oct 4, 2023
Improper neutralization of SQL parameter in Theme Volty CMS Category Product module for...
Critical
Unreviewed
CVE-2023-39647
was published
Oct 4, 2023
Improper neutralization of SQL parameter in Theme Volty CMS Category Chain Slider module for...
Critical
Unreviewed
CVE-2023-39646
was published
Oct 4, 2023
Improper neutralization of SQL parameter in Theme Volty CMS Testimonial module for PrestaShop. In...
Critical
Unreviewed
CVE-2023-39648
was published
Oct 4, 2023
ProTip!
Advisories are also available from the
GraphQL API