GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,324
Erlang
31
GitHub Actions
21
Go
2,087
Maven
5,000+
npm
3,751
NuGet
674
pip
3,437
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
494 advisories
Filter by severity
An issue found in Wondershare Technology Co, Ltd Edrawmind v.10.0.6 allows a remote attacker to...
High
Unreviewed
CVE-2023-27759
was published
Apr 4, 2023
An issue found in Wondershare Technology Co, Ltd Filmora v.12.0.9 allows a remote attacker to...
High
Unreviewed
CVE-2023-27760
was published
Apr 4, 2023
An issue found in Wondershare Technology Co.,Ltd PDFelement v9.1.1 allows a remote attacker to...
High
Unreviewed
CVE-2023-27768
was published
Apr 4, 2023
An issue found in Wondershare Technology Co.,Ltd Repairit v.3.5.4 allows a remote attacker to...
High
Unreviewed
CVE-2023-27764
was published
Apr 4, 2023
An issue found in Wondershare Technology Co.,Ltd PDF Reader v.1.0.1 allows a remote attacker to...
High
Unreviewed
CVE-2023-27769
was published
Apr 4, 2023
An issue found in Wondershare Technology Co.,Ltd Dr.Fone v.12.4.9 allows a remote attacker to...
High
Unreviewed
CVE-2023-27767
was published
Apr 4, 2023
An issue found in Wondershare Technology Co.,Ltd Anireel 1.5.4 allows a remote attacker to...
High
Unreviewed
CVE-2023-27766
was published
Apr 4, 2023
An issue found in Wondershare Technology Co.,Ltd Recoverit v.10.6.3 allows a remote attacker to...
High
Unreviewed
CVE-2023-27765
was published
Apr 4, 2023
An issue found in Wondershare Technology Co., Ltd UniConverter v.14.0.0 allows a remote attacker...
High
Unreviewed
CVE-2023-27761
was published
Apr 4, 2023
An issue found in Wondershare Technology Co., Ltd DemoCreator v.6.0.0 allows a remote attacker to...
High
Unreviewed
CVE-2023-27762
was published
Apr 4, 2023
An issue found in Wondershare Technology Co.,Ltd MobileTrans v.4.0.2 allows a remote attacker to...
High
Unreviewed
CVE-2023-27763
was published
Apr 4, 2023
An issue found in Wondershare Technology Co.,Ltd Edraw-max v.12.0.4 allows a remote attacker to...
High
Unreviewed
CVE-2023-27770
was published
Apr 4, 2023
An issue found in Wondershare Technology Co.,Ltd Creative Centerr v.1.0.8 allows a remote...
High
Unreviewed
CVE-2023-27771
was published
Apr 4, 2023
Creative Cloud version 5.9.1 (and earlier) is affected by an Untrusted Search Path vulnerability...
High
Unreviewed
CVE-2023-26358
was published
Mar 22, 2023
An untrusted search path vulnerability exists in Node.js. <19.6.1, <18.14.1, <16.19.1, and <14.21...
Moderate
Unreviewed
CVE-2023-23920
was published
Feb 23, 2023
Untrusted search path vulnerability in ELECOM Camera Assistant 1.00 and QuickFileDealer Ver.1.2.1...
High
Unreviewed
CVE-2023-22368
was published
Feb 15, 2023
A vulnerability has been identified in TIA Multiuser Server V14 (All versions), TIA Multiuser...
High
Unreviewed
CVE-2022-35868
was published
Feb 14, 2023
A flaw was found in libXpm. When processing files with .Z or .gz extensions, the library calls...
High
Unreviewed
CVE-2022-4883
was published
Feb 7, 2023
A privilege escalation vulnerability exists in the sudo functionality of OpenStack Kolla git...
High
Unreviewed
CVE-2022-38060
was published
Dec 21, 2022
mDNSResponder.exe is vulnerable to DLL Sideloading attack. Executable improperly specifies how to...
High
Unreviewed
CVE-2022-23748
was published
Nov 18, 2022
A Untrusted Search Path vulnerability in openldap2 of openSUSE Factory allows local attackers...
High
Unreviewed
CVE-2022-31253
was published
Nov 9, 2022
Untrusted Search Path vulnerability in LiteSpeed Technologies OpenLiteSpeed Web Server Container...
High
Unreviewed
CVE-2022-0074
was published
Oct 28, 2022
A vulnerability was found in Redis. It has been declared as critical. This vulnerability affects...
Critical
Unreviewed
CVE-2022-3734
was published
Oct 28, 2022
Untrusted search path vulnerability in the installer of Content Transfer (for Windows) Ver.1.3...
High
Unreviewed
CVE-2022-41796
was published
Oct 24, 2022
Poetry vulnerable to Untrusted Search Path leading to Local Code Execution on Windows
High
CVE-2022-36070
was published
for
poetry
(pip)
Oct 11, 2022
ProTip!
Advisories are also available from the
GraphQL API