GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
2,000
Maven
5,000+
npm
3,711
NuGet
661
pip
3,383
Pub
11
RubyGems
885
Rust
849
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
235,356 advisories
Filter by severity
Cross Site Scripting vulnerability in Friendica v.2023.12 allows a remote attacker to obtain...
Moderate
Unreviewed
CVE-2024-27728
was published
Aug 15, 2024
Command injection vulnerability in Asus RT-N15U 3.0.0.4.376_3754 allows a remote attacker to...
Critical
Unreviewed
CVE-2024-42757
was published
Aug 15, 2024
Cross Site Scripting vulnerability in Friendica v.2023.12 allows a remote attacker to obtain...
High
Unreviewed
CVE-2024-27729
was published
Aug 15, 2024
XML External Entity (XXE) vulnerability in Terminalfour 8.0.0001 through 8.3.18 and XML JDBC...
High
Unreviewed
CVE-2024-22218
was published
Aug 15, 2024
An issue in the handler function in /goform/telnet of Tenda FH1206 v02.03.01.35 allows attackers...
Critical
Unreviewed
CVE-2024-42978
was published
Aug 15, 2024
A Server-Side Request Forgery (SSRF) vulnerability in Terminalfour before 8.3.19 allows...
Moderate
Unreviewed
CVE-2024-22217
was published
Aug 15, 2024
XML External Entity (XXE) vulnerability in Terminalfour 8.0.0001 through 8.3.18 and XML JDBC...
Moderate
Unreviewed
CVE-2024-22219
was published
Aug 15, 2024
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in...
Moderate
Unreviewed
CVE-2024-42979
was published
Aug 15, 2024
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in...
High
Unreviewed
CVE-2024-42980
was published
Aug 15, 2024
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the delno parameter in...
High
Unreviewed
CVE-2024-42981
was published
Aug 15, 2024
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in...
High
Unreviewed
CVE-2024-42982
was published
Aug 15, 2024
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the pptpPPW parameter in...
Moderate
Unreviewed
CVE-2024-42983
was published
Aug 15, 2024
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in...
Moderate
Unreviewed
CVE-2024-42984
was published
Aug 15, 2024
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in...
High
Unreviewed
CVE-2024-42985
was published
Aug 15, 2024
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the PPPOEPassword...
High
Unreviewed
CVE-2024-42986
was published
Aug 15, 2024
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the modino parameter in...
High
Unreviewed
CVE-2024-42987
was published
Aug 15, 2024
Incorrect access control in TOTOLINK N350RT V9.3.5u.6139_B20201216 allows attackers to obtain the...
Critical
Unreviewed
CVE-2024-42966
was published
Aug 15, 2024
IBM InfoSphere Information Server 11.7 could allow a privileged user to obtain sensitive...
Moderate
Unreviewed
CVE-2024-40704
was published
Aug 15, 2024
Information Disclosure in GNCC's GC2 Indoor Security Camera 1080P allows an attacker with...
Moderate
Unreviewed
CVE-2024-31799
was published
Aug 15, 2024
Identical Hardcoded Root Password for All Devices in GNCC's GC2 Indoor Security Camera 1080P...
Moderate
Unreviewed
CVE-2024-31798
was published
Aug 15, 2024
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error....
Unknown
Unreviewed
CVE-2023-37228
was published
Aug 15, 2024
IBM QRadar Network Packet Capture 7.5 could allow a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2024-31905
was published
Aug 15, 2024
An issue in the handler function in /goform/telnet of Tenda FH1201 v1.2.0.14 (408) allows...
Critical
Unreviewed
CVE-2024-42947
was published
Aug 15, 2024
Incorrect access control in TOTOLINK LR350 V9.3.5u.6369_B20220309 allows attackers to obtain the...
Critical
Unreviewed
CVE-2024-42967
was published
Aug 15, 2024
Authentication Bypass in GNCC's GC2 Indoor Security Camera 1080P allows an attacker with physical...
Moderate
Unreviewed
CVE-2024-31800
was published
Aug 15, 2024
ProTip!
Advisories are also available from the
GraphQL API