GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,344
Erlang
31
GitHub Actions
22
Go
2,109
Maven
5,000+
npm
3,767
NuGet
680
pip
3,453
Pub
12
RubyGems
892
Rust
887
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
243,521 advisories
Filter by severity
SQL injection in Ivanti Endpoint Manager before 2024 November Security Update or 2022 SU6...
High
Unreviewed
CVE-2024-50328
was published
Nov 12, 2024
SQL injection in Ivanti Endpoint Manager before 2024 November Security Update or 2022 SU6...
High
Unreviewed
CVE-2024-50327
was published
Nov 12, 2024
An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to...
High
Unreviewed
CVE-2024-50319
was published
Nov 12, 2024
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.3 and Ivanti Policy...
Moderate
Unreviewed
CVE-2024-47909
was published
Nov 12, 2024
Path traversal in Ivanti Endpoint Manager before 2024 November Security Update or 2022 SU6...
High
Unreviewed
CVE-2024-50324
was published
Nov 12, 2024
Excessive binary privileges in Ivanti Connect Secure which affects versions 22.4R2 through 22.7R2...
High
Unreviewed
CVE-2024-47906
was published
Nov 12, 2024
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.3 and Ivanti Policy...
Moderate
Unreviewed
CVE-2024-47905
was published
Nov 12, 2024
A stack-based buffer overflow in IPsec of Ivanti Connect Secure before version 22.7R2.3 allows a...
High
Unreviewed
CVE-2024-47907
was published
Nov 12, 2024
Command injection in Ivanti Connect Secure before version 22.7R2.1 and Ivanti Policy Secure...
Critical
Unreviewed
CVE-2024-11007
was published
Nov 12, 2024
Improper access control in the Password History feature in Devolutions DVLS 2024.3.6 and earlier...
Unknown
Unreviewed
CVE-2024-10971
was published
Nov 12, 2024
The NVMe driver queue processing is vulernable to guest-induced infinite loops.
Moderate
Unreviewed
CVE-2024-51566
was published
Nov 12, 2024
The hda driver is vulnerable to a buffer over-read from a guest-controlled value.
Moderate
Unreviewed
CVE-2024-51565
was published
Nov 12, 2024
Improper Privilege Management vulnerability in Nomysoft Informatics Nomysem allows Collect Data...
Critical
Unreviewed
CVE-2024-8074
was published
Nov 12, 2024
A vulnerability was found in code-projects Job Recruitment up to 1.0. It has been declared as...
Moderate
Unreviewed
CVE-2024-11127
was published
Nov 12, 2024
A vulnerability was found in GetSimpleCMS 3.3.16 and classified as problematic. This issue...
Moderate
Unreviewed
CVE-2024-11125
was published
Nov 12, 2024
A vulnerability was found in ZZCMS up to 2023. It has been rated as problematic. Affected by this...
Moderate
Unreviewed
CVE-2024-11130
was published
Nov 12, 2024
A vulnerability has been identified in Mendix Runtime V10 (All versions < V10.16.0 only if the...
Moderate
Unreviewed
CVE-2024-50313
was published
Nov 12, 2024
The NVMe driver function nvme_opc_get_log_page is vulnerable to a buffer over-read from a guest...
Moderate
Unreviewed
CVE-2024-51562
was published
Nov 12, 2024
A vulnerability has been found in TimGeyssens UIOMatic 5 and classified as critical. This...
Moderate
Unreviewed
CVE-2024-11124
was published
Nov 12, 2024
The virtio_vq_recordon function is subject to a time-of-check to time-of-use (TOCTOU) race...
Moderate
Unreviewed
CVE-2024-51563
was published
Nov 12, 2024
The command ctl_persistent_reserve_out allows the caller to specify an arbitrary size which will...
Moderate
Unreviewed
CVE-2024-39281
was published
Nov 12, 2024
The fetch(3) library uses environment variables for passing certain information, including the...
High
Unreviewed
CVE-2024-45289
was published
Nov 12, 2024
Account users in Apache CloudStack by default are allowed to register templates to be downloaded...
High
Unreviewed
CVE-2024-50386
was published
Nov 12, 2024
A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The...
High
Unreviewed
CVE-2024-47942
was published
Nov 12, 2024
A remote code execution vulnerability exists in the affected
product. The vulnerability allows...
High
Unreviewed
CVE-2024-37365
was published
Nov 12, 2024
ProTip!
Advisories are also available from the
GraphQL API