GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,750
Erlang
35
GitHub Actions
29
Go
2,323
Maven
5,000+
npm
3,956
NuGet
712
pip
3,739
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
115 advisories
Filter by severity
Improper access control vulnerability in KnoxCustomManagerService prior to SMR Jul-2022 Release 1...
Low
Unreviewed
CVE-2022-33701
was published
Jul 13, 2022
Improper access control vulnerability in Samsung Gallery prior to version 13.1.05.8 allows...
Low
Unreviewed
CVE-2022-33706
was published
Jul 13, 2022
Improper access control vulnerability in sendDHCPACKBroadcast function of SemWifiApClient prior...
Low
Unreviewed
CVE-2022-30752
was published
Jul 13, 2022
Improper access control vulnerability in sendDHCPACKBroadcast function of SemWifiApClient prior...
Low
Unreviewed
CVE-2022-30751
was published
Jul 13, 2022
Improper access control vulnerability in clearAllGlobalProxy in MiscPolicy prior to SMR Nov-2022...
Low
Unreviewed
CVE-2022-39887
was published
Nov 10, 2022
Improper access control vulnerability in BixbyTouch prior to version 2.2.00.6 in China models...
Low
Unreviewed
CVE-2022-25824
was published
Mar 11, 2022
Improper access control vulnerability in Samsung Members prior to version 13.6.08.5 allows local...
Low
Unreviewed
CVE-2022-28777
was published
Apr 12, 2022
Improper access control vulnerability in Samsung Security Supporter prior to version 1.2.40.0...
Low
Unreviewed
CVE-2022-28778
was published
Apr 12, 2022
Improper access control vulnerability in Samsung Flow prior to version 4.8.06.5 allows attacker...
Low
Unreviewed
CVE-2022-28775
was published
Apr 12, 2022
Improper access control vulnerability in Samsung SearchWidget prior to versions 2.3.00.6 in China...
Low
Unreviewed
CVE-2022-24923
was published
Feb 12, 2022
Improper access control vulnerability in QuickShare prior to version 13.2.3.5 allows attackers to...
Low
Unreviewed
CVE-2022-39860
was published
Oct 7, 2022
Improper access control vulnerability in WebApp in Cameralyzer prior to versions 3.2.22, 3.3.22,...
Low
Unreviewed
CVE-2022-36832
was published
Aug 6, 2022
Tauri Filesystem Scope can be Partially Bypassed
Low
CVE-2022-41874
was published
for
Tauri
(Rust)
Nov 8, 2022
The (1) Java GUI and (2) Web GUI components in the IBM Tivoli Storage Manager (TSM) Backup...
Low
Unreviewed
CVE-2014-6195
was published
May 17, 2022
SpotlightIndex in Apple OS X before 10.10.2 does not properly perform deserialization during...
Low
Unreviewed
CVE-2014-8833
was published
May 17, 2022
LoginWindow in Apple OS X before 10.10.2 does not transition to the lock-screen state immediately...
Low
Unreviewed
CVE-2014-8827
was published
May 17, 2022
IBM Security Identity Manager 6.x before 6.0.0.3 IF14 does not properly perform logout actions,...
Low
Unreviewed
CVE-2014-6110
was published
May 17, 2022
IBM InfoSphere Information Server 8.5 through FP3, 8.7 through FP2, 9.1 through 9.1.2.0, 11.3...
Low
Unreviewed
CVE-2015-7490
was published
May 17, 2022
Apple OS X before 10.10.5 does not properly restrict access to the Date & Time preferences pane,...
Low
Unreviewed
CVE-2015-3757
was published
May 17, 2022
chan_iax2.c in the IAX2 channel driver in Certified Asterisk 1.8.11-cert before 1.8.11-cert2 and...
Low
Unreviewed
CVE-2012-2947
was published
May 17, 2022
The Data Movement implementation in IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5,...
Low
Unreviewed
CVE-2015-1922
was published
May 14, 2022
Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to conduct...
Low
Unreviewed
CVE-2016-3274
was published
May 14, 2022
Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to conduct content...
Low
Unreviewed
CVE-2016-3276
was published
May 14, 2022
Mozilla Firefox before 36.0 does not properly restrict transitions of JavaScript objects from a...
Low
Unreviewed
CVE-2015-0820
was published
May 14, 2022
Drupal 6.x before 6.35 and 7.x before 7.35 allows remote authenticated users to reset the...
Low
Unreviewed
CVE-2015-2559
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API