GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,170
Erlang
30
GitHub Actions
19
Go
1,981
Maven
5,000+
npm
3,700
NuGet
656
pip
3,319
Pub
11
RubyGems
882
Rust
832
Swift
35
Unreviewed advisories
All unreviewed
5,000+
821 advisories
Filter by severity
On Arista Strata family products which have “TCAM profile” feature enabled when Port IPv4 access...
High
Unreviewed
CVE-2021-28504
was published
Apr 3, 2022
In PackageManager, there is a possible way to update the last usage time of another package due...
High
Unreviewed
CVE-2021-39743
was published
Mar 31, 2022
Xerox ColorQube 8580 was discovered to contain an access control issue which allows attackers to...
High
Unreviewed
CVE-2022-26572
was published
Apr 5, 2022
Rockwell Automation FactoryTalk Services Platform v6.11 and earlier, if FactoryTalk Security is...
High
Unreviewed
CVE-2021-32960
was published
Apr 3, 2022
Seyeon Tech Co., Ltd FlexWATCH FW3170-PS-E Network Video System 4.23-3000_GY allows attackers to...
High
Unreviewed
CVE-2022-25584
was published
Apr 6, 2022
An unauthorized file creation vulnerability in Telesquare TLR-2855KS6 via PUT method can allow...
High
Unreviewed
CVE-2021-46418
was published
Apr 8, 2022
Dalmark Systems Systeam 2.22.8 build 1724 is vulnerable to Incorrect Access Control. The Systeam...
High
Unreviewed
CVE-2021-44877
was published
Dec 22, 2021
The Protect WP Admin WordPress plugin before 3.6.2 does not check for authorisation in the lib...
High
Unreviewed
CVE-2021-24906
was published
Jan 25, 2022
A permission bypass vulnerability exists when the NFC CAs access the TEE.Successful exploitation...
High
Unreviewed
CVE-2022-22254
was published
Apr 12, 2022
With certain LDAP configurations, Zammad 5.0.1 was found to be vulnerable to unauthorized access...
High
Unreviewed
CVE-2021-43145
was published
Feb 10, 2022
An Access Control vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS...
High
Unreviewed
CVE-2021-37292
was published
Apr 12, 2022
In setServiceForegroundInnerLocked of ActiveServices.java, there is a possible way for a...
High
Unreviewed
CVE-2021-0694
was published
Apr 13, 2022
On affected Arista EOS platforms, if a VXLAN match rule exists in an IPv4 access-list that is...
High
Unreviewed
CVE-2021-28505
was published
Apr 15, 2022
There is a permission verification vulnerability in the Bluetooth module.Successful exploitation...
High
Unreviewed
CVE-2021-40044
was published
Feb 11, 2022
Glewlwyd 2.0.0, fixed in 2.6.1 is affected by an incorrect access control vulnerability. One user...
High
Unreviewed
CVE-2021-45379
was published
Dec 31, 2021
Incorrect access control in NexusPHP 1.5.beta5.20120707 allows unauthorized attackers to access...
High
Unreviewed
CVE-2020-24771
was published
Mar 31, 2022
A file disclosure vulnerability in the UploadedImageDisplay.aspx endpoint of SelectSurvey.NET...
High
Unreviewed
CVE-2021-41608
was published
Jan 29, 2022
The Salon booking system Free and Pro WordPress plugins before 7.6.3 do not have proper...
High
Unreviewed
CVE-2022-0920
was published
Apr 12, 2022
An issue was discovered on Kyocera d-COLOR MF3555 2XD_S000.002.271 devices. The Web Application...
High
Unreviewed
CVE-2022-25342
was published
Apr 21, 2022
There is a security protection bypass vulnerability with the modem.Successful exploitation of...
High
Unreviewed
CVE-2021-37109
was published
Feb 11, 2022
Improper access control in firmware for Intel(R) PROSet/Wireless Wi-Fi in multiple operating...
High
Unreviewed
CVE-2021-0164
was published
Feb 11, 2022
antd-admin 5.5.0 is affected by an incorrect access control vulnerability. Unauthorized access to...
High
Unreviewed
CVE-2021-46371
was published
Feb 15, 2022
An issue was discovered in dst-admin v1.3.0. The product has an unauthorized arbitrary file...
High
Unreviewed
CVE-2021-44586
was published
Jan 11, 2022
Allwinner R818 SoC Android Q SDK V1.0 is affected by an incorrect access control vulnerability...
High
Unreviewed
CVE-2021-38789
was published
Jan 20, 2022
Improper access control in the Intel(R) Advisor software before version 2021.2 may allow an...
High
Unreviewed
CVE-2021-23152
was published
Feb 11, 2022
ProTip!
Advisories are also available from the
GraphQL API