GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,460
Maven
5,000+
npm
5,000+
NuGet
1,090
pip
5,000+
Pub
13
RubyGems
1,142
Rust
1,509
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
224 advisories
Filter by severity
An improper access control vulnerability [CWE-284] in FortiOS version 7.2.0, version 7.0.13 and...
Low
Unreviewed
CVE-2023-47536
was published
Dec 13, 2023
Broken access control in Silverpeas
Low
CVE-2023-47320
was published
for
org.silverpeas.core:silverpeas-core-war
(Maven)
Dec 13, 2023
cPanel before 68.0.15 allows jailed accounts to restore files that are outside of the jail (SEC...
Low
Unreviewed
CVE-2017-18384
was published
May 24, 2022
cPanel before 66.0.2 allows demo accounts to create databases and users (SEC-271).
Low
Unreviewed
CVE-2017-18421
was published
May 24, 2022
Improper access control in Audio system service prior to SMR Jul-2023 Release 1 allows attacker...
Low
Unreviewed
CVE-2023-30667
was published
Jul 6, 2023
Improper access control in Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call...
Low
Unreviewed
CVE-2023-30683
was published
Aug 10, 2023
Improper access control vulnerability in Telecom prior to SMR Aug-2023 Release 1 allows local...
Low
Unreviewed
CVE-2023-30685
was published
Aug 10, 2023
Improper access control in Samsung Telecom prior to SMR Aug-2023 Release 1 allows local attackers...
Low
Unreviewed
CVE-2023-30684
was published
Aug 10, 2023
Improper access control in Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call...
Low
Unreviewed
CVE-2023-30682
was published
Aug 10, 2023
Improper access control vulnerability in Weather prior to SMR Sep-2023 Release 1 allows attackers...
Low
Unreviewed
CVE-2023-30715
was published
Sep 6, 2023
Improper access control in system property prior to SMR Oct-2023 Release 1 allows local attacker...
Low
Unreviewed
CVE-2023-30732
was published
Oct 4, 2023
Improper access control vulnerability in PersonaManagerService prior to SMR Jul-2023 Release 1...
Low
Unreviewed
CVE-2023-30640
was published
Jul 6, 2023
A vulnerability was found in Beijing Baichuo Smart S85F Management Platform up to 20230816. It...
Low
Unreviewed
CVE-2023-4546
was published
Aug 26, 2023
Mattermost allows team admins to promote guests to team admins
Low
CVE-2024-4195
was published
for
github.com/mattermost/mattermost-server
(Go)
Apr 26, 2024
Mattermost fails to fully validate role changes
Low
CVE-2024-4198
was published
for
github.com/mattermost/mattermost-server
(Go)
Apr 26, 2024
vantage6 collaboration admins can extend their influence by expanding the collaboration
Low
CVE-2024-32969
was published
for
vantage6
(pip)
May 22, 2024
HCL Connections contains a broken access control vulnerability that may expose sensitive...
Low
Unreviewed
CVE-2024-30107
was published
Apr 18, 2024
An Improper Access Control could allow a malicious actor authenticated in the API to enable...
Low
Unreviewed
CVE-2024-29206
was published
May 7, 2024
Mattermost versions 9.5.x <= 9.5.5 and 9.8.0, when using shared channels with multiple remote...
Low
Unreviewed
CVE-2024-36257
was published
Jul 3, 2024
Mattermost versions 9.8.0, 9.7.x <= 9.7.4, 9.6.x <= 9.6.2 and 9.5.x <= 9.5.5 fail to prevent...
Low
Unreviewed
CVE-2024-39361
was published
Jul 3, 2024
An issue was discovered in GitLab CE/EE affecting all versions starting from 17.0 prior to 17.0.4...
Low
Unreviewed
CVE-2024-5470
was published
Jul 11, 2024
An issue was discovered in GitLab CE/EE affecting all versions starting from 16.5 prior to 16.11...
Low
Unreviewed
CVE-2024-2880
was published
Jul 11, 2024
Mattermost fails to check the required permissions
Low
CVE-2024-24776
was published
for
github.com/mattermost/mattermost/server/v8
(Go)
Feb 9, 2024
Mattermost allows demoted guests to change group names
Low
CVE-2023-50333
was published
for
github.com/mattermost/mattermost/server/v8
(Go)
Jan 2, 2024
An issue was discovered in GitLab CE/EE affecting all versions starting from 16.1 prior to 16.11...
Low
Unreviewed
CVE-2024-4011
was published
Jun 27, 2024
ProTip!
Advisories are also available from the
GraphQL API