GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,300
Erlang
31
GitHub Actions
21
Go
2,069
Maven
5,000+
npm
3,744
NuGet
668
pip
3,429
Pub
12
RubyGems
892
Rust
877
Swift
36
Unreviewed advisories
All unreviewed
5,000+
525 advisories
Filter by severity
A vulnerability has been identified in Desigo DXR2 (All versions < V01.21.142.5-22), Desigo PXC3 ...
Moderate
Unreviewed
CVE-2022-24043
was published
May 21, 2022
Tor Browser before 8.0.1 has an information exposure vulnerability. It allows remote attackers to...
Moderate
Unreviewed
CVE-2019-12383
was published
May 24, 2022
In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.846, the Login process allows attackers...
Moderate
Unreviewed
CVE-2019-13383
was published
May 24, 2022
If hyperthreading is not disabled, a timing attack vulnerability exists, similar to previous...
High
Unreviewed
CVE-2019-9815
was published
May 24, 2022
Pterodactyl vulnerable to 2FA Sniffing
High
CVE-2019-1020002
was published
for
pterodactyl/panel
(Composer)
May 24, 2022
HumHub Social Network Kit Enterprise v1.3.13 allows remote attackers to find the user accounts...
Moderate
Unreviewed
CVE-2019-12743
was published
May 24, 2022
** DISPUTED ** On Mooltipass Mini devices, a side channel for the row-based OLED display was...
Low
Unreviewed
CVE-2019-14357
was published
May 24, 2022
** DISPUTED ** On ShapeShift KeepKey devices, a side channel for the row-based OLED display was...
Low
Unreviewed
CVE-2019-14355
was published
May 24, 2022
** DISPUTED ** On BC Vault devices, a side channel for the row-based SSD1309 OLED display was...
Low
Unreviewed
CVE-2019-14359
was published
May 24, 2022
Search Guard versions before 21.0 had an timing side channel issue when using the internal user...
Moderate
Unreviewed
CVE-2019-13420
was published
May 24, 2022
The implementations of SAE and EAP-pwd in hostapd and wpa_supplicant 2.x through 2.8 are...
Moderate
Unreviewed
CVE-2019-13377
was published
May 24, 2022
Zabbix through 4.4.0alpha1 allows User Enumeration. With login requests, it is possible to...
Moderate
Unreviewed
CVE-2019-15132
was published
May 24, 2022
In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.848, the Login process allows attackers...
Moderate
Unreviewed
CVE-2019-13599
was published
May 24, 2022
An issue was discovered in Couchbase Server 5.5.x through 5.5.3 and 6.0.0. The Memcached ...
Moderate
Unreviewed
CVE-2019-11465
was published
May 24, 2022
In situations where an attacker receives automated notification of the success or failure of a...
Moderate
Unreviewed
CVE-2019-1563
was published
May 24, 2022
Inteno EG200 EG200-WU7P1U_ADAMO3.16.4-190226_1650 routers have a JUCI ACL misconfiguration that...
Moderate
Unreviewed
CVE-2019-13140
was published
May 24, 2022
SPIP before 3.1.11 and 3.2 before 3.2.5 provides different error messages from the password...
Moderate
Unreviewed
CVE-2019-16394
was published
May 24, 2022
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to an Information Exposure Through...
Moderate
Unreviewed
CVE-2019-3740
was published
May 24, 2022
RSA BSAFE Crypto-J versions prior to 6.2.5 are vulnerable to Information Exposure Through Timing...
Moderate
Unreviewed
CVE-2019-3739
was published
May 24, 2022
Pagekit User enumeration
Moderate
CVE-2019-16669
was published
for
pagekit/pagekit
(Composer)
May 24, 2022
It was discovered that there was a ECDSA timing attack in the libgcrypt20 cryptographic library....
Moderate
Unreviewed
CVE-2019-13627
was published
May 24, 2022
In BIG-IP 15.0.0, 14.1.0-14.1.0.6, 14.0.0-14.0.0.5, 13.0.0-13.1.1.5, 12.1.0-12.1.4.1, 11.5.1-11.6...
Moderate
Unreviewed
CVE-2019-6651
was published
May 24, 2022
RSA BSAFE Crypto-C Micro Edition versions prior to 4.1.4 and RSA Micro Edition Suite versions...
Moderate
Unreviewed
CVE-2019-3731
was published
May 24, 2022
RSA BSAFE Crypto-C Micro Edition, versions prior to 4.0.5.3 (in 4.0.x) and versions prior to 4.1...
Moderate
Unreviewed
CVE-2019-3732
was published
May 24, 2022
wolfCrypt leaks cryptographic information via timing side channel
Moderate
CVE-2019-13628
was published
for
wolfcrypt
(pip)
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API