GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,319
Erlang
31
GitHub Actions
21
Go
2,077
Maven
5,000+
npm
3,746
NuGet
674
pip
3,435
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
980 advisories
Filter by severity
An issue in the native clients for Amazon WorkSpaces Clients when running PCoIP protocol may...
High
Unreviewed
CVE-2025-0501
was published
Jan 15, 2025
An issue in the native clients for Amazon WorkSpaces, Amazon AppStream 2.0, and Amazon DCV...
High
Unreviewed
CVE-2025-0500
was published
Jan 15, 2025
Improper handling and storage of certificates in CP Plus CP-VNR-3104 B3223P22C02424 allow...
High
Unreviewed
CVE-2024-54848
was published
Jan 10, 2025
An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to obtain the EC private key and...
Moderate
Unreviewed
CVE-2024-54846
was published
Jan 10, 2025
An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to access the Diffie-Hellman (DH)...
Moderate
Unreviewed
CVE-2024-54847
was published
Jan 10, 2025
An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to obtain the second RSA private...
Moderate
Unreviewed
CVE-2024-54849
was published
Jan 10, 2025
A vulnerability in certification validation routines of Cisco ThousandEyes Endpoint Agent for...
Moderate
Unreviewed
CVE-2025-20126
was published
Jan 8, 2025
IBM Cognos Controller 11.0.0 through 11.0.1 and IBM Controller 11.1.0 could allow an unauthorized...
High
Unreviewed
CVE-2024-40702
was published
Jan 7, 2025
When using Alt-Svc, ALPN did not properly validate certificates when the original server is...
Moderate
Unreviewed
CVE-2025-0239
was published
Jan 7, 2025
TCPDF missing certificate validation
High
CVE-2024-56521
was published
for
tecnickcom/tcpdf
(Composer)
Dec 27, 2024
IBM Storage Defender - Resiliency Service 2.0.0 through 2.0.9 does not properly validate a...
Moderate
Unreviewed
CVE-2024-47119
was published
Dec 18, 2024
An improper validation vulnerability was reported in the firmware update mechanism of LADM and...
High
Unreviewed
CVE-2024-4762
was published
Dec 16, 2024
An improper certificate validation vulnerability was reported in LADM that could allow a network...
High
Unreviewed
CVE-2024-6001
was published
Dec 16, 2024
An Improper Certificate Validation vulnerability exists in Tenable Security Center where an...
Low
Unreviewed
CVE-2024-12174
was published
Dec 10, 2024
lxd CA certificate sign check bypass
Low
CVE-2024-6156
was published
for
github.com/canonical/lxd
(Go)
Dec 9, 2024
An improper certificate validation vulnerability has been reported to affect several QNAP...
High
Unreviewed
CVE-2024-48865
was published
Dec 6, 2024
An Improper Certificate Validation on the UniFi iOS App managing a standalone UniFi Access Point ...
High
Unreviewed
CVE-2024-45205
was published
Dec 4, 2024
An insufficient certification validation issue in the Palo Alto Networks GlobalProtect app...
High
Unreviewed
CVE-2024-5921
was published
Nov 27, 2024
Keycloak mTLS Authentication Bypass via Reverse Proxy TLS Termination
High
CVE-2024-10039
was published
for
org.keycloak:keycloak-core
(Maven)
Nov 25, 2024
NETGEAR RAX30 Improper Certificate Validation Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2023-51634
was published
Nov 22, 2024
A vulnerability in the certificate validation of Cisco Expressway-C and Cisco ...
High
Unreviewed
CVE-2022-20814
was published
Nov 15, 2024
An improper certificate validation vulnerability in Palo Alto Networks PAN-OS software enables an...
Moderate
Unreviewed
CVE-2024-5918
was published
Nov 14, 2024
An issue was discovered on Alecto IVM-100 2019-11-12 devices. The device uses a custom UDP...
Critical
Unreviewed
CVE-2019-20461
was published
Nov 7, 2024
qBittorrent before 5.0.1 proceeds with use of https URLs even after certificate validation errors.
High
Unreviewed
CVE-2024-51774
was published
Nov 2, 2024
ProTip!
Advisories are also available from the
GraphQL API