GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,714
Erlang
34
GitHub Actions
28
Go
2,301
Maven
5,000+
npm
3,942
NuGet
711
pip
3,711
Pub
12
RubyGems
920
Rust
960
Swift
38
Unreviewed advisories
All unreviewed
5,000+
269 advisories
Filter by severity
In Medtronic Valleylab FT10 Energy Platform (VLFT10GEN) version 2.1.0 and lower and version 2.0.3...
Low
Unreviewed
CVE-2019-13535
was published
May 24, 2022
Medtronic N'Vision Clinician Programmer 8840 N'Vision Clinician Programmer, all versions, and...
Moderate
Unreviewed
CVE-2018-10631
was published
May 13, 2022
Insufficient policy enforcement in iOS Security UI in Google Chrome prior to 121.0.6167.85...
High
Unreviewed
CVE-2024-0804
was published
Jan 24, 2024
When a parent page loaded a child in an iframe with `unsafe-inline`, the parent Content Security...
Moderate
Unreviewed
CVE-2024-0747
was published
Jan 23, 2024
Inappropriate implementation in Site Isolation in Google Chrome prior to 105.0.5195.52 allowed a...
Moderate
Unreviewed
CVE-2022-3044
was published
Sep 27, 2022
This issue was addressed with improved checks. This issue is fixed in watchOS 8.7, iOS 15.6 and...
Critical
Unreviewed
CVE-2022-32845
was published
Sep 25, 2022
Insufficient policy enforcement in Content Security Policy in Google Chrome prior to 105.0.5195...
Moderate
Unreviewed
CVE-2022-3056
was published
Sep 27, 2022
Spring Security authorization bypass for method security annotations on private methods
Critical
CVE-2025-41232
was published
for
org.springframework.security:spring-security-aspects
(Maven)
May 21, 2025
In various functions of ap_input_processor.c, there is a possible way to record audio during a...
Moderate
Unreviewed
CVE-2022-20464
was published
Oct 14, 2022
Inappropriate implementation in Autofill in Google Chrome prior to 121.0.6167.85 allowed a remote...
Moderate
Unreviewed
CVE-2024-0809
was published
Jan 24, 2024
The HISP module has a vulnerability of bypassing the check of the data transferred in the kernel...
High
Unreviewed
CVE-2022-39011
was published
Oct 14, 2022
Protection mechanism failure for some Edge Orchestrator software for Intel(R) Tiber™ Edge...
Low
Unreviewed
CVE-2025-21081
was published
May 13, 2025
A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-31244
was published
May 13, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.6,...
High
Unreviewed
CVE-2025-31224
was published
May 13, 2025
Agent-to-controller security bypass vulnerabilities in Jenkins Compuware Topaz for Total Test Plugin
High
CVE-2022-43428
was published
for
com.compuware.jenkins:compuware-topaz-for-total-test
(Maven)
Oct 19, 2022
Jenkins Compuware Topaz for Total Test Plugin vulnerable to Protection Mechanism Failure
High
CVE-2022-43429
was published
for
com.compuware.jenkins:compuware-topaz-for-total-test
(Maven)
Oct 19, 2022
Agent-to-controller security bypass vulnerability in Jenkins BMC Compuware Source Code Download for Endevor, PDS, and ISPW Plugin
Moderate
CVE-2022-43423
was published
for
com.compuware.jenkins:compuware-scm-downloader
(Maven)
Oct 19, 2022
Jenkins NUnit Plugin vulnerable to Protection Mechanism Failure
Moderate
CVE-2022-43414
was published
for
org.jenkins-ci.plugins:nunit
(Maven)
Oct 19, 2022
The use of `module.constructor.createRequire()` can bypass the policy mechanism and require...
High
Unreviewed
CVE-2023-32006
was published
Aug 15, 2023
In the Linux kernel before 6.6.7, an untrusted VMM can trigger int80 syscall handling at any...
High
Unreviewed
CVE-2024-25744
was published
Feb 12, 2024
A logic issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.6.8,...
High
Unreviewed
CVE-2022-32910
was published
Nov 2, 2022
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7...
High
Unreviewed
CVE-2013-2465
was published
May 14, 2022
@misskey-dev/summaly Redirect Filter Bypass
Low
CVE-2025-46553
was published
for
@misskey-dev/summaly
(npm)
May 5, 2025
Proofpoint Enterprise Protection before 18.8.0 allows a Bypass of a Security Control.
Moderate
Unreviewed
CVE-2021-31608
was published
Nov 18, 2022
Artifex Ghostscript before 10.03.1 allows memory corruption, and SAFER sandbox bypass, via format...
Moderate
Unreviewed
CVE-2024-29510
was published
Jul 3, 2024
ProTip!
Advisories are also available from the
GraphQL API