GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
340 advisories
Filter by severity
When running in Appliance mode, an authenticated attacker assigned the Administrator role may be...
Moderate
Unreviewed
CVE-2024-23976
was published
Feb 14, 2024
AWS CDK EKS overly permissive trust policies
Moderate
CVE-2023-35165
was published
for
@aws-cdk/aws-eks
(npm)
Jun 19, 2023
A vulnerability was found in Click Studios Passwordstate and Passwordstate Browser Extension...
Moderate
Unreviewed
CVE-2022-4613
was published
Dec 19, 2022
A flaw was found during the upgrade of an existing OpenShift Container Platform 3.x cluster....
Moderate
Unreviewed
CVE-2019-14819
was published
May 24, 2022
A vulnerability was found in all openshift/mediawiki-apb 4.x.x versions prior to 4.3.0, where an...
Moderate
Unreviewed
CVE-2019-19345
was published
May 24, 2022
An insecure modification vulnerability in the /etc/passwd file was found in the openshift/ocp...
Moderate
Unreviewed
CVE-2019-19355
was published
May 24, 2022
An insecure modification vulnerability in the /etc/passwd file was found in the container...
Moderate
Unreviewed
CVE-2019-19351
was published
May 24, 2022
A vulnerability was found in openshift/template-service-broker-operator in all 4.x.x versions...
Moderate
Unreviewed
CVE-2020-1705
was published
May 24, 2022
It has been found in openshift-enterprise version 3.11 and all openshift-enterprise versions from...
Moderate
Unreviewed
CVE-2020-1708
was published
May 24, 2022
text_helpers uses web link to untrusted target with window.opener access
Moderate
CVE-2020-36624
was published
for
text_helpers
(RubyGems)
Dec 22, 2022
Privilege Escalation Flaw in Elasticsearch
Moderate
CVE-2020-7014
was published
for
org.elasticsearch:elasticsearch
(Maven)
Mar 18, 2021
Multiple vulnerabilities in the Admin portal of Cisco Identity Services Engine (ISE) could allow...
Moderate
Unreviewed
CVE-2021-1416
was published
May 24, 2022
Multiple vulnerabilities in the Admin portal of Cisco Identity Services Engine (ISE) could allow...
Moderate
Unreviewed
CVE-2021-1412
was published
May 24, 2022
A flaw was found in cifs-utils in versions before 6.13. A user when mounting a krb5 CIFS file...
Moderate
Unreviewed
CVE-2021-20208
was published
May 24, 2022
Incorrect Privilege Assignment in GitHub repository phpipam/phpipam prior to 1.4.6.
Moderate
Unreviewed
CVE-2022-1225
was published
Apr 5, 2022
ProTip!
Advisories are also available from the
GraphQL API