GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,266
Erlang
31
GitHub Actions
21
Go
2,035
Maven
5,000+
npm
3,732
NuGet
662
pip
3,413
Pub
12
RubyGems
891
Rust
865
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
134 advisories
Filter by severity
Dell RecoverPoint for Virtual Machines 6.0.x contains an OS Command injection vulnerability. A...
High
Unreviewed
CVE-2024-22461
was published
Dec 13, 2024
This vulnerability exists in the TP-Link Archer C50 due to improper signature verification...
High
Unreviewed
CVE-2024-54126
was published
Dec 5, 2024
Dell NetWorker Management Console, version(s) 19.11, contain(s) an Improper Verification of...
High
Unreviewed
CVE-2024-47476
was published
Dec 3, 2024
The WinVerifyTrust function in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows...
High
Unreviewed
CVE-2013-3900
was published
May 3, 2022
An improper verification of cryptographic signature vulnerability [CWE-347] in FortiClient MacOS...
High
Unreviewed
CVE-2024-40592
was published
Nov 12, 2024
In neomutt and mutt, the To and Cc email headers are not validated by cryptographic signing which...
High
Unreviewed
CVE-2024-49393
was published
Nov 12, 2024
Permission control vulnerability in the hidebug module
Impact: Successful exploitation of this...
High
Unreviewed
CVE-2024-51526
was published
Nov 5, 2024
Improper Verification of Cryptographic Signature vulnerability in Zscaler Client Connector on...
High
Unreviewed
CVE-2023-28796
was published
Oct 23, 2023
CWE-347: Improper Verification of Cryptographic Signature vulnerability exists that could...
High
Unreviewed
CVE-2024-8531
was published
Oct 11, 2024
Improper privilege management in Zoom Desktop Client for Windows and Zoom Rooms for Windows...
High
Unreviewed
CVE-2023-39211
was published
Aug 9, 2023
Improper verification of cryptographic signature during installation of a VPN driver via the...
High
Unreviewed
CVE-2024-7479
was published
Sep 25, 2024
Improper verification of cryptographic signature during installation of a Printer driver via the...
High
Unreviewed
CVE-2024-7481
was published
Sep 25, 2024
Improper privilege management in Zoom for Windows, Zoom Rooms for Windows, and Zoom VDI for...
High
Unreviewed
CVE-2023-34120
was published
Jun 13, 2023
Improper Digital Signature Invalidation vulnerability in Zip Repair Mode of The Document...
High
Unreviewed
CVE-2024-7788
was published
Sep 17, 2024
An issue in D-Link COVR 1100, 1102, 1103 AC1200 Dual-Band Whole-Home Mesh Wi-Fi System (Hardware...
High
Unreviewed
CVE-2023-52043
was published
Apr 4, 2024
Anti-tampering can be disabled under certain conditions without signature validation. This...
High
Unreviewed
CVE-2024-23456
was published
Aug 6, 2024
Windows Enroll Engine Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2024-38069
was published
Jul 9, 2024
A firmware update vulnerability exists in the boa formUpload functionality of Realtek rtl819x...
High
Unreviewed
CVE-2023-34435
was published
Jul 8, 2024
IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to identity spoofing by an...
High
Unreviewed
CVE-2024-37532
was published
Jun 20, 2024
Parallels Desktop Updater Improper Verification of Cryptographic Signature Local Privilege...
High
Unreviewed
CVE-2023-50228
was published
May 3, 2024
A fallback mechanism in code sign checking on macOS may allow arbitrary code execution. This...
High
Unreviewed
CVE-2024-23480
was published
May 1, 2024
A vulnerability in software image verification in Cisco IOS XE Software could allow an...
High
Unreviewed
CVE-2020-3209
was published
May 24, 2022
Secure Boot Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2024-26194
was published
Apr 9, 2024
The Texas Instruments OMAP L138 (secure variants) trusted execution environment (TEE) performs an...
High
Unreviewed
CVE-2022-25333
was published
Oct 19, 2023
The BIG-IP Edge Client Installer on macOS does not follow best practices for elevating...
High
Unreviewed
CVE-2023-43611
was published
Oct 10, 2023
ProTip!
Advisories are also available from the
GraphQL API