GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,373
Erlang
33
GitHub Actions
22
Go
2,135
Maven
5,000+
npm
3,797
NuGet
687
pip
3,478
Pub
12
RubyGems
896
Rust
897
Swift
38
Unreviewed advisories
All unreviewed
5,000+
103,831 advisories
Filter by severity
Apache Atlas produces Stack trace in error response
High
CVE-2017-3154
was published
for
org.apache.atlas:atlas-common
(Maven)
May 17, 2022
Apache Superset SQL Injection when template processing is enabled
High
CVE-2021-41971
was published
for
apache-superset
(pip)
May 24, 2022
XXE in PHPSpreadsheet encoding is returned
High
CVE-2024-45048
was published
for
phpoffice/phpspreadsheet
(Composer)
Aug 29, 2024
Apollo Query Planner and Apollo Gateway may infinitely loop on sufficiently complex queries
High
CVE-2024-43414
was published
for
@apollo/gateway
(npm)
Aug 27, 2024
ColdFusion versions 2023.6, 2021.12 and earlier are affected by an Improper Authentication...
High
Unreviewed
CVE-2024-45113
was published
Sep 13, 2024
Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write...
High
Unreviewed
CVE-2024-45109
was published
Sep 13, 2024
Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write...
High
Unreviewed
CVE-2024-45108
was published
Sep 13, 2024
Photoshop Desktop versions 24.7.4, 25.11 and earlier are affected by an out-of-bounds write...
High
Unreviewed
CVE-2024-43760
was published
Sep 13, 2024
Illustrator versions 28.6, 27.9.5 and earlier are affected by an Integer Overflow or Wraparound...
High
Unreviewed
CVE-2024-34121
was published
Sep 13, 2024
After Effects versions 23.6.6, 24.5 and earlier are affected by an out-of-bounds write...
High
Unreviewed
CVE-2024-39381
was published
Sep 13, 2024
Media Encoder versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds write...
High
Unreviewed
CVE-2024-39377
was published
Sep 13, 2024
Acrobat Reader versions 24.002.21005, 24.001.30159, 20.005.30655, 24.003.20054 and earlier are...
High
Unreviewed
CVE-2024-45112
was published
Sep 13, 2024
Acrobat Reader versions 24.002.21005, 24.001.30159, 20.005.30655, 24.003.20054 and earlier are...
High
Unreviewed
CVE-2024-41869
was published
Sep 13, 2024
Acrobat Reader versions 20.005.30636, 24.002.20965, 24.002.20964, 24.001.30123 and earlier are...
High
Unreviewed
CVE-2024-39420
was published
Aug 14, 2024
Illustrator versions 28.6, 27.9.5 and earlier are affected by an Integer Underflow (Wrap or...
High
Unreviewed
CVE-2024-41857
was published
Sep 13, 2024
Illustrator versions 28.5, 27.9.4 and earlier are affected by an Improper Input Validation...
High
Unreviewed
CVE-2024-41856
was published
Aug 14, 2024
Illustrator versions 28.6, 27.9.5 and earlier are affected by a Use After Free vulnerability that...
High
Unreviewed
CVE-2024-43758
was published
Sep 13, 2024
Premiere Pro versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds write...
High
Unreviewed
CVE-2024-39384
was published
Sep 13, 2024
After Effects versions 23.6.6, 24.5 and earlier are affected by an out-of-bounds write...
High
Unreviewed
CVE-2024-41859
was published
Sep 13, 2024
A vulnerability in the MSC800 allows an unauthenticated attacker to modify the product’s IP...
High
Unreviewed
CVE-2024-8751
was published
Sep 13, 2024
An issue found in IXP Data Easy Install v.6.6.14884.0 allows a local attacker to gain privileges...
High
Unreviewed
CVE-2023-27795
was published
Oct 19, 2023
An issue discovered in IXP Data Easy Install v.6.6.14884.0 allows local attackers to gain...
High
Unreviewed
CVE-2023-27793
was published
Oct 19, 2023
Tina search token leak via lock file in TinaCMS
High
CVE-2024-45391
was published
for
@tinacms/cli
(npm)
Sep 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
f2fs: fix to cover read...
High
Unreviewed
CVE-2024-44941
was published
Aug 26, 2024
The provisioning manager component of Mitel MiVoice MX-ONE through 7.6 SP1 could allow an...
High
Unreviewed
CVE-2024-36446
was published
Aug 13, 2024
ProTip!
Advisories are also available from the
GraphQL API