GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,757
Erlang
35
GitHub Actions
29
Go
2,327
Maven
5,000+
npm
3,960
NuGet
712
pip
3,741
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
9,596 advisories
Filter by severity
The API in Accredible Credential.net December 6th, 2023 allows an Insecure Direct Object...
High
Unreviewed
CVE-2023-50872
was published
Apr 16, 2024
In FUEL CMS 11.4.12 and before, the page preview feature allows an anonymous user to take...
Critical
Unreviewed
CVE-2020-26167
was published
May 24, 2022
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2025-31231
was published
May 30, 2025
A vulnerability was found in Multilaser Sirius RE016 MLT1.0. It has been rated as problematic....
Moderate
Unreviewed
CVE-2025-5436
was published
Jun 2, 2025
Vulnerability in Oracle Audit Vault and Database Firewall (component: Firewall). Supported...
Low
Unreviewed
CVE-2024-20910
was published
Jan 17, 2024
Vulnerability CVE-2024-22022 allows a Veeam Recovery Orchestrator user that has been assigned a...
High
Unreviewed
CVE-2024-22022
was published
Feb 7, 2024
HCL DevOps Deploy / HCL Launch (UCD) could disclose sensitive user information when installing...
Moderate
Unreviewed
CVE-2024-23550
was published
Feb 3, 2024
Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Core)...
Low
Unreviewed
CVE-2024-20914
was published
Jan 17, 2024
Vulnerability in the Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle...
Low
Unreviewed
CVE-2024-20955
was published
Jan 17, 2024
A vulnerability in the web-based chat interface of Cisco Customer Collaboration Platform (CCP),...
Moderate
Unreviewed
CVE-2025-20129
was published
Jun 4, 2025
This issue was addressed with improved redaction of sensitive information. This issue is fixed in...
Moderate
Unreviewed
CVE-2024-23207
was published
Jan 23, 2024
PostgreSQL Anonymizer v2.0 and v2.1 contain a vulnerability that allows a masked user to bypass...
Moderate
Unreviewed
CVE-2025-5690
was published
Jun 5, 2025
Deno vulnerable to Exposure of Sensitive Information to an Unauthorized Actor
Moderate
CVE-2024-21486
was published
for
deno
(Rust)
Jun 5, 2025
Exposure of sensitive information to an unauthorized actor in Power Automate allows an...
Critical
Unreviewed
CVE-2025-47966
was published
Jun 5, 2025
Microsoft Exchange Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022...
Moderate
Unreviewed
CVE-2022-34692
was published
Aug 10, 2022
File read permission bypass vulnerability in the kernel file system module
Impact: Successful...
Moderate
Unreviewed
CVE-2025-31171
was published
Apr 7, 2025
Sentry's Python SDK unintentionally exposes environment variables to subprocesses
Low
CVE-2024-40647
was published
for
sentry-sdk
(pip)
Jul 18, 2024
Argo CD does not scrub secret values from patch errors
Moderate
CVE-2025-23216
was published
for
github.com/argoproj/argo-cd
(Go)
Jan 30, 2025
The AuthPolicy metadata on Red Hat Connectivity Link contains an object which stores secretes,...
Moderate
Unreviewed
CVE-2025-25209
was published
Jun 9, 2025
In the module "Mailjet" (mailjet) from Mailjet for PrestaShop before versions 3.5.1, a guest can...
High
Unreviewed
CVE-2024-24304
was published
Feb 7, 2024
Exposure of sensitive data in active sessions in Lablup's BackendAI allows attackers to retrieve...
High
Unreviewed
CVE-2025-49653
was published
Jun 9, 2025
ProTip!
Advisories are also available from the
GraphQL API