GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,077
Erlang
29
GitHub Actions
19
Go
1,903
Maven
5,000+
npm
3,632
NuGet
638
pip
3,249
Pub
10
RubyGems
864
Rust
818
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
4,225 advisories
Filter by severity
A flaw was found in Envoy. It is possible to modify or manipulate headers from external clients...
High
Unreviewed
CVE-2024-7207
was published
Sep 20, 2024
In Brave Android prior to v1.67.116, domains in the Brave Shields popup are elided from the right...
High
Unreviewed
CVE-2024-37406
was published
Sep 19, 2024
Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged...
High
Unreviewed
CVE-2024-21781
was published
Sep 16, 2024
Improper input validation in UEFI firmware error handler for some Intel(R) Processors may allow a...
High
Unreviewed
CVE-2024-21829
was published
Sep 16, 2024
Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged...
High
Unreviewed
CVE-2024-21871
was published
Sep 16, 2024
In ppmp_protect_mfcfw_buf of code/drm_fw.c, there is a possible memory corruption due to improper...
High
Unreviewed
CVE-2024-44094
was published
Sep 13, 2024
A denial-of-service vulnerability exists in the Rockwell Automation affected products when...
High
Unreviewed
CVE-2024-6077
was published
Sep 12, 2024
CVE-2024-45825 IMPACT
A denial-of-service vulnerability exists in the affected products. The...
High
Unreviewed
CVE-2024-45825
was published
Sep 12, 2024
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows OS...
High
Unreviewed
CVE-2024-6658
was published
Sep 12, 2024
A vulnerability in the segment routing feature for the Intermediate System-to-Intermediate System...
High
Unreviewed
CVE-2024-20406
was published
Sep 11, 2024
Kernel Streaming Service Driver Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-38241
was published
Sep 10, 2024
Kernel Streaming Service Driver Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-38244
was published
Sep 10, 2024
Kernel Streaming Service Driver Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-38243
was published
Sep 10, 2024
Kernel Streaming Service Driver Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-38245
was published
Sep 10, 2024
Windows Remote Desktop Licensing Service Spoofing Vulnerability
High
Unreviewed
CVE-2024-43455
was published
Sep 10, 2024
Microsoft SQL Server Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-37965
was published
Sep 10, 2024
PowerShell Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-38046
was published
Sep 10, 2024
An authenticated attacker can exploit an improper authorization vulnerability in Azure Web Apps...
High
Unreviewed
CVE-2024-38194
was published
Sep 10, 2024
Azure Stack Hub Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-38216
was published
Sep 10, 2024
VMware Fusion (13.x before 13.6) contains a code-execution vulnerability due to the usage of an...
High
Unreviewed
CVE-2024-38811
was published
Sep 3, 2024
Cryptographic issue while parsing RSA keys in COBR format.
High
Unreviewed
CVE-2024-23362
was published
Sep 2, 2024
Improper Input Validation vulnerability in OpenText NetIQ Access Manager leads to Cross-Site...
High
Unreviewed
CVE-2024-4554
was published
Aug 28, 2024
Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84...
High
Unreviewed
CVE-2024-7977
was published
Aug 21, 2024
Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84...
High
Unreviewed
CVE-2024-7980
was published
Aug 21, 2024
This SMM vulnerability affects certain modules, allowing privileged attackers to execute...
High
Unreviewed
CVE-2024-33657
was published
Aug 21, 2024
ProTip!
Advisories are also available from the
GraphQL API