GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,360
Erlang
33
GitHub Actions
22
Go
2,127
Maven
5,000+
npm
3,793
NuGet
683
pip
3,471
Pub
12
RubyGems
894
Rust
894
Swift
38
Unreviewed advisories
All unreviewed
5,000+
24,580 advisories
Filter by severity
In BIG-IP Versions 16.1.x before 16.1.3, 15.1.x before 15.1.5.1, 14.1.x before 14.1.5, and all...
Critical
Unreviewed
CVE-2022-35243
was published
Aug 5, 2022
In BIG-IP Versions 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x,...
Critical
Unreviewed
CVE-2022-34865
was published
Aug 5, 2022
Apache Hadoop argument injection vulnerability
Critical
CVE-2022-25168
was published
for
org.apache.hadoop:hadoop-common
(Maven)
Aug 5, 2022
A vulnerability classified as critical has been found in SourceCodester Multi Language Hotel...
Critical
Unreviewed
CVE-2022-2656
was published
Aug 5, 2022
Crow before v1.0+4 was discovered to contain a buffer overflow via the function qs_parse at...
Critical
Unreviewed
CVE-2022-34970
was published
Aug 5, 2022
Totolink A3600R_Firmware V4.1.2cu.5182_B20201102 contains a hard code password for root in /etc...
Critical
Unreviewed
CVE-2022-34993
was published
Aug 5, 2022
Raneto v0.17.0 employs weak password complexity requirements
Critical
CVE-2022-35143
was published
for
raneto
(npm)
Aug 5, 2022
This vulnerability allows remote attackers to bypass authentication on affected installations of...
Critical
Unreviewed
CVE-2022-2272
was published
Aug 4, 2022
D-LINK DIR-818LW A1:DIR818L_FW105b01 was discovered to contain a remote code execution (RCE)...
Critical
Unreviewed
CVE-2022-35619
was published
Aug 4, 2022
D-Link DIR810LA1_FW102B22 was discovered to contain a command injection vulnerability via the...
Critical
Unreviewed
CVE-2022-34974
was published
Aug 4, 2022
D-LINK DIR-818LW A1:DIR818L_FW105b01 was discovered to contain a remote code execution (RCE)...
Critical
Unreviewed
CVE-2022-35620
was published
Aug 4, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
Critical
Unreviewed
CVE-2022-35865
was published
Aug 4, 2022
In ConnMan through 1.41, remote attackers able to send HTTP requests to the gweb component are...
Critical
Unreviewed
CVE-2022-32292
was published
Aug 4, 2022
This vulnerability allows remote attackers to bypass authentication on affected installations of...
Critical
Unreviewed
CVE-2022-35866
was published
Aug 4, 2022
GVRET Stable Release as of Aug 15, 2015 was discovered to contain a buffer overflow via the...
Critical
Unreviewed
CVE-2022-35161
was published
Aug 4, 2022
Pligg CMS v2.0.2 was discovered to contain a time-based SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2022-34955
was published
Aug 3, 2022
Web Based Quiz System v1.0 was discovered to contain a SQL injection vulnerability via the qid...
Critical
Unreviewed
CVE-2022-35422
was published
Aug 3, 2022
Pligg CMS v2.0.2 was discovered to contain a time-based SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2022-34956
was published
Aug 3, 2022
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2022-34954
was published
Aug 3, 2022
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2022-34947
was published
Aug 3, 2022
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2022-34948
was published
Aug 3, 2022
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2022-34951
was published
Aug 3, 2022
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2022-34953
was published
Aug 3, 2022
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the...
Critical
Unreviewed
CVE-2022-34952
was published
Aug 3, 2022
Pharmacy Management System v1.0 was discovered to contain multiple SQL injection vulnerabilities...
Critical
Unreviewed
CVE-2022-34949
was published
Aug 3, 2022
ProTip!
Advisories are also available from the
GraphQL API