GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,231
Erlang
31
GitHub Actions
20
Go
1,991
Maven
5,000+
npm
3,709
NuGet
661
pip
3,341
Pub
11
RubyGems
884
Rust
846
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
51 advisories
Filter by severity
ZZ Inc. KeyMouse Windows 3.08 and prior is affected by a remote code execution vulnerability...
High
Unreviewed
CVE-2022-24644
was published
Mar 11, 2022
Data Integrity Failure in 'Backup Config' in D-Link DNR-322L <= 2.60B15 allows an authenticated...
High
Unreviewed
CVE-2022-40799
was published
Nov 29, 2022
Certain EMCO Software products are affected by: CWE-494: Download of Code Without Integrity Check...
High
Unreviewed
CVE-2022-28944
was published
May 24, 2022
An issue was discovered in Emote Remote Mouse through 4.0.0.0. It uses cleartext HTTP to check,...
High
Unreviewed
CVE-2021-27574
was published
May 24, 2022
Caphyon Ltd Advanced Installer 19.2 was discovered to contain a remote code execution (RCE)...
High
Unreviewed
CVE-2022-27438
was published
Jun 7, 2022
The Zoom Client for Meetings for Windows before version 5.10.0 and Zoom Rooms for Conference Room...
High
Unreviewed
CVE-2022-22786
was published
May 19, 2022
The ABB CP635 HMI uses two different transmission methods to upgrade its firmware and its...
High
Unreviewed
CVE-2019-7229
was published
May 24, 2022
An arbitrary file download vulnerability in Oliver v5 Library Server Versions < 5.00.008.053 via...
High
Unreviewed
CVE-2021-45027
was published
Sep 2, 2022
Tencent GameLoop before 4.1.21.90 downloaded updates over an insecure HTTP connection. A...
High
Unreviewed
CVE-2021-33879
was published
May 24, 2022
In cPanel before 96.0.13, fix_cpanel_perl lacks verification of the integrity of downloads (SEC...
High
Unreviewed
CVE-2021-38588
was published
May 24, 2022
Download of code without integrity check vulnerability in NEXACRO14 Runtime ActiveX control of...
High
Unreviewed
CVE-2020-7874
was published
May 24, 2022
DEXT5 Upload 5.0.0.117 and earlier versions contain a vulnerability, which could allow remote...
High
Unreviewed
CVE-2020-7875
was published
May 24, 2022
A CWE-494: Download of Code Without Integrity Check vulnerability exists in PLC Simulator on...
High
Unreviewed
CVE-2020-28213
was published
May 24, 2022
Novel-Plus v3.6.2 was discovered to contain an arbitrary file download vulnerability via the...
High
Unreviewed
CVE-2022-36671
was published
Sep 2, 2022
An exploitable privilege escalation vulnerability exists in the Shimo VPN helper service due to...
High
Unreviewed
CVE-2018-4009
was published
May 13, 2022
The Miss Marple Updater Service in COMPAREX Miss Marple Enterprise Edition before 2.0 allows...
High
Unreviewed
CVE-2018-19234
was published
May 13, 2022
Akeo Consulting Rufus prior to version 2.17.1187 does not adequately validate the integrity of...
High
Unreviewed
CVE-2017-13083
was published
May 13, 2022
Mate 9 smartphones with software MHA-AL00AC00B125 have a privilege escalation vulnerability in...
High
Unreviewed
CVE-2017-2707
was published
May 13, 2022
Download of code with improper integrity check in snsupd.exe and upd.exe in SAFE'N'SEC...
High
Unreviewed
CVE-2018-13012
was published
May 13, 2022
An exploitable firmware modification vulnerability was discovered in WNR612v2 Wireless Routers...
High
Unreviewed
CVE-2023-23110
was published
Feb 2, 2023
A vulnerability exists in the file upload validation part of Hitachi Energy TXpert Hub CoreTec 4...
High
Unreviewed
CVE-2021-35532
was published
Jun 8, 2022
A CWE-494 Download of Code Without Integrity Check vulnerability exists that could allow...
High
Unreviewed
CVE-2023-5984
was published
Nov 15, 2023
In Dreamer CMS before 4.0.1, the backend attachment management office has an Arbitrary File...
High
Unreviewed
CVE-2023-46887
was published
Nov 29, 2023
A data integrity vulnerability exists in the BR_NO_CHECK_HASH_FOR functionality of Buildroot 2023...
High
Unreviewed
CVE-2023-43608
was published
Dec 5, 2023
Multiple data integrity vulnerabilities exist in the package hash checking functionality of...
High
Unreviewed
CVE-2023-45838
was published
Dec 5, 2023
ProTip!
Advisories are also available from the
GraphQL API