GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
46
GitHub Actions
47
Go
3,340
Maven
5,000+
npm
5,000+
NuGet
881
pip
4,549
Pub
12
RubyGems
1,012
Rust
1,202
Swift
51
Unreviewed advisories
All unreviewed
5,000+
10,334 advisories
Filter by severity
When connecting to a certain port Axeda agent (All versions) and Axeda Desktop Server for Windows...
Moderate
Unreviewed
CVE-2022-25248
was published
Mar 17, 2022
Exposure of Sensitive information in httpie
Moderate
CVE-2022-0430
was published
for
httpie
(pip)
Mar 16, 2022
Leaking of user information on Cross-Domain communication in sysend
Moderate
CVE-2022-24762
was published
for
sysend
(npm)
Mar 14, 2022
Sensitive Information Exposure in Sylius
Moderate
CVE-2022-24742
was published
for
sylius/sylius
(Composer)
Mar 14, 2022
Exposure of Sensitive Information to an Unauthorized Actor in FreeTAKServer-UI
High
CVE-2022-25512
was published
for
FreeTAKServer-UI
(pip)
Mar 12, 2022
Moodle Information Disclosure vulnerability
Moderate
CVE-2021-32473
was published
for
moodle/moodle
(Composer)
Mar 12, 2022
Moodle Exposure of Sensitive Information to an Unauthorized Actor
Moderate
CVE-2021-32477
was published
for
moodle/moodle
(Composer)
Mar 12, 2022
Moodle Exposure of Sensitive Information to an Unauthorized Actor
Moderate
CVE-2021-32472
was published
for
moodle/moodle
(Composer)
Mar 12, 2022
Information Leak Vulnerability exists in the Xiaomi Router AX6000. The vulnerability is caused by...
Moderate
Unreviewed
CVE-2020-14112
was published
Mar 11, 2022
Exposure of Sensitive Information to an Unauthorized Actor in PhpMyAdmin
High
CVE-2022-0813
was published
for
phpmyadmin/phpmyadmin
(Composer)
Mar 11, 2022
Simple Diagnostics Agent - versions 1.0 (up to version 1.57.), allows an attacker to access...
High
Unreviewed
CVE-2022-22547
was published
Mar 11, 2022
Under certain conditions SAP Business Objects Business Intelligence Platform - versions 420, 430,...
Moderate
Unreviewed
CVE-2022-24398
was published
Mar 11, 2022
Information Exposure vulnerability in Galaxy Watch Plugin prior to version 2.2.05.220126741...
Low
Unreviewed
CVE-2022-25823
was published
Mar 11, 2022
Information Exposure vulnerability in Galaxy Watch Plugin prior to version 2.2.05.22012751 allows...
Low
Unreviewed
CVE-2022-25827
was published
Mar 11, 2022
Information Exposure vulnerability in Galaxy S3 Plugin prior to version 2.2.03.22012751 allows...
Low
Unreviewed
CVE-2022-25826
was published
Mar 11, 2022
Information Exposure vulnerability in Watch Active2 Plugin prior to version 2.2.08.22012751...
Low
Unreviewed
CVE-2022-25829
was published
Mar 11, 2022
Information Exposure vulnerability in Watch Active Plugin prior to version 2.2.07.22012751 allows...
Low
Unreviewed
CVE-2022-25828
was published
Mar 11, 2022
Information Exposure vulnerability in Galaxy Watch3 Plugin prior to version 2.2.09.22012751...
Low
Unreviewed
CVE-2022-25830
was published
Mar 11, 2022
SPIP before 3.2.14 and 4.x before 4.0.5 allows unauthenticated access to information about...
Moderate
Unreviewed
CVE-2022-26847
was published
Mar 11, 2022
IBM Guardium Data Encryption (GDE) 4.0.0.0 and 5.0.0.0 could disclose internal IP address...
Moderate
Unreviewed
CVE-2021-39025
was published
Mar 11, 2022
HTTP caching is marking private HTTP headers as public in Shopware
Moderate
CVE-2022-24747
was published
for
shopware/core
(Composer)
Mar 10, 2022
The Video Conferencing with Zoom WordPress plugin before 3.8.17 does not have authorisation in...
Moderate
Unreviewed
CVE-2022-0384
was published
Mar 8, 2022
The CorreosExpress WordPress plugin through 2.6.0 generates log files which are publicly...
Moderate
Unreviewed
CVE-2021-25009
was published
Mar 8, 2022
Exposure of Sensitive Information to an Unauthorized Actor in httpie
Moderate
CVE-2022-24737
was published
for
httpie
(pip)
Mar 7, 2022
A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes of server memory...
Moderate
Unreviewed
CVE-2021-3677
was published
Mar 4, 2022
ProTip!
Advisories are also available from the
GraphQL API