GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,324
Erlang
31
GitHub Actions
21
Go
2,087
Maven
5,000+
npm
3,751
NuGet
674
pip
3,437
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
451 advisories
Filter by severity
Sensitive log information leakage vulnerability in Samsung Account prior to version 13.5.0 allows...
Moderate
Unreviewed
CVE-2022-39874
was published
Oct 7, 2022
IBM Cloud Private 2.1.0 , 3.1.0, 3.1.1, and 3.1.2 could allow a local privileged user to obtain...
Moderate
Unreviewed
CVE-2019-4284
was published
May 24, 2022
In F5 BIG-IP APM software version 13.0.0 and 12.1.2, under rare conditions, the BIG-IP APM system...
Moderate
Unreviewed
CVE-2017-6139
was published
May 14, 2022
Exposure of Sensitive Information vulnerability in kernel prior to SMR Dec-2022 Release 1 allows...
Moderate
Unreviewed
CVE-2022-39897
was published
Dec 8, 2022
The IBM Cloud Private Key Management Service (IBM Cloud Private 3.1.1 and 3.1.2) could allow a...
Moderate
Unreviewed
CVE-2019-4143
was published
May 14, 2022
Insertion of Sensitive Information into Log File vulnerability in Hitachi Ops Center Analyzer on...
Moderate
Unreviewed
CVE-2022-3191
was published
Nov 1, 2022
Insertion of Sensitive Information into Temporary File vulnerability in Hitachi Infrastructure...
Moderate
Unreviewed
CVE-2022-41553
was published
Nov 1, 2022
The Vivo V7 device with a build fingerprint of vivo/1718/1718:7.1.2/N2G47H/compil11021857:user...
Moderate
Unreviewed
CVE-2018-15002
was published
May 14, 2022
The ZTE Blade Vantage Android device with a build fingerprint of ZTE/Z839/sweet:7.1.1/NMF26V...
Moderate
Unreviewed
CVE-2018-14995
was published
May 14, 2022
The Vivo V7 Android device with a build fingerprint of vivo/1718/1718:7.1.2/N2G47H/compil11021857...
Moderate
Unreviewed
CVE-2018-15001
was published
May 14, 2022
The Coolpad Canvas device with a build fingerprint of Coolpad/cp3636a/cp3636a:7.0/NRD90M...
Moderate
Unreviewed
CVE-2018-15004
was published
May 14, 2022
An exposure of sensitive information to an unauthorized actor vulnerabiltiy [CWE-200] in...
Moderate
Unreviewed
CVE-2022-33878
was published
Nov 2, 2022
An issue was discovered in 1Password 7.2.3.BETA before 7.2.3.BETA-3 on macOS. A mistake in error...
Moderate
Unreviewed
CVE-2018-19863
was published
May 14, 2022
An issue was discovered on Orbic Wonder Orbic/RC555L/RC555L:7.1.2/N2G47H/329100b:user/release...
Moderate
Unreviewed
CVE-2018-6599
was published
May 14, 2022
Under certain circumstances SAP Dynamic Authorization Management (DAM) by NextLabs (Java Policy...
Moderate
Unreviewed
CVE-2018-2440
was published
May 14, 2022
The klsi_105_get_line_state function in drivers/usb/serial/kl5kusb105.c in the Linux kernel...
Moderate
Unreviewed
CVE-2017-5549
was published
May 14, 2022
An issue was discovered in the WP Security Audit Log plugin 3.1.1 for WordPress. Access to wp...
Moderate
Unreviewed
CVE-2018-8719
was published
May 14, 2022
IBM Tivoli Key Lifecycle Manager 2.5, 2.6, and 2.7 discloses sensitive information in error...
Moderate
Unreviewed
CVE-2017-1727
was published
May 14, 2022
The Foundry Magritte plugin osisoft-pi-web-connector versions 0.15.0 - 0.43.0 was found to be...
Moderate
Unreviewed
CVE-2022-27893
was published
Nov 4, 2022
The admin_edit function in app/Controller/UsersController.php in MISP 2.4.82 mishandles the...
Moderate
Unreviewed
CVE-2017-16946
was published
May 17, 2022
The rend_service_intro_established function in or/rendservice.c in Tor before 0.2.8.15, 0.2.9.x...
Moderate
Unreviewed
CVE-2017-0380
was published
May 17, 2022
Docker Desktop version 4.3.0 and 4.3.1 has a bug that may log sensitive information (access token...
Moderate
Unreviewed
CVE-2021-45449
was published
Jan 13, 2022
IBM Sterling Gentran:Server for Microsoft Windows 5.3 stores potentially sensitive information in...
Moderate
Unreviewed
CVE-2021-39032
was published
Jan 15, 2022
SAP Business One - version 10.0, extended log stores information that can be of a sensitive...
Moderate
Unreviewed
CVE-2021-44234
was published
Jan 15, 2022
Wire through 3.22.3993 on Windows advertises deletion of sent messages; nonetheless, all messages...
Moderate
Unreviewed
CVE-2022-43673
was published
Nov 18, 2022
ProTip!
Advisories are also available from the
GraphQL API