GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
1,996
Maven
5,000+
npm
3,709
NuGet
661
pip
3,348
Pub
11
RubyGems
885
Rust
846
Swift
36
Unreviewed advisories
All unreviewed
5,000+
117,795 advisories
Filter by severity
In BnCameraService::onTransact of CameraService.cpp, there is a possible information disclosure...
Moderate
Unreviewed
CVE-2018-9420
was published
Nov 20, 2024
In writeInplace of Parcel.cpp, there is a possible information leak across processes, using...
Moderate
Unreviewed
CVE-2018-9421
was published
Nov 20, 2024
IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 could allow an authenticated user to obtain...
Moderate
Unreviewed
CVE-2024-37070
was published
Nov 19, 2024
Uncontrolled resource consumption in some Zoom Apps before version 6.2.0 may allow an...
Moderate
Unreviewed
CVE-2024-45420
was published
Nov 19, 2024
Improper input validation in some Zoom Apps before version 6.2.0 may allow an unauthenticated...
Moderate
Unreviewed
CVE-2024-45422
was published
Nov 19, 2024
IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 could allow an authenticated user to...
Moderate
Unreviewed
CVE-2024-52359
was published
Nov 19, 2024
A cross-site scripting (XSS) vulnerability in the component /master/header.php of Ganglia-web v3...
Moderate
Unreviewed
CVE-2024-52762
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-50430
was published
Nov 19, 2024
In BnAudioPolicyService::onTransact of AudioPolicyService.cpp, there is a possible information...
Moderate
Unreviewed
CVE-2018-9345
was published
Nov 19, 2024
In BnAudioPolicyService::onTransact of AudioPolicyService.cpp, there is a possible information...
Moderate
Unreviewed
CVE-2018-9346
was published
Nov 19, 2024
Rclone has Improper Permission and Ownership Handling on Symlink Targets with --links and --metadata
Moderate
CVE-2024-52522
was published
for
github.com/rclone/rclone
(Go)
Nov 19, 2024
Cross-Site Request Forgery (CSRF) vulnerability in Repute InfoSystems ARMember, Repute...
Moderate
Unreviewed
CVE-2022-47424
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
drm/i915/hdcp: Add encoder...
Moderate
Unreviewed
CVE-2024-53050
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
drm/i915/hdcp: Add encoder...
Moderate
Unreviewed
CVE-2024-53051
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51914
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51917
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51921
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51924
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51920
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51925
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51918
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51926
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51922
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51927
was published
Nov 19, 2024
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-51930
was published
Nov 19, 2024
ProTip!
Advisories are also available from the
GraphQL API