GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,286
Erlang
31
GitHub Actions
21
Go
2,058
Maven
5,000+
npm
3,742
NuGet
668
pip
3,423
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
210 advisories
Filter by severity
An issue was discovered in PrinterOn Central Print Services (CPS) through 4.1.4. The core...
High
Unreviewed
CVE-2018-17210
was published
May 24, 2022
GitLab EE, versions 8.3 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, is...
High
Unreviewed
CVE-2018-19581
was published
May 24, 2022
GitLab CE/EE, versions 8.8 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1,...
High
Unreviewed
CVE-2018-19569
was published
May 24, 2022
The provided secure solrconfig.xml sample configuration does not enforce Sentry authorization on ...
High
Unreviewed
CVE-2017-9325
was published
May 24, 2022
An issue was discovered on D-Link DCS-1130 devices. The device requires that a user logging to...
High
Unreviewed
CVE-2017-8409
was published
May 24, 2022
Moodle all messaging conversations could be viewed
High
CVE-2019-10154
was published
for
moodle/moodle
(Composer)
May 24, 2022
Truncated access authentication token leads to weakened access control for stored secure...
High
Unreviewed
CVE-2018-13908
was published
May 24, 2022
A vulnerability has been identified in Siveillance VMS 2017 R2 (All versions < V11.2a),...
High
Unreviewed
CVE-2019-6581
was published
May 24, 2022
A vulnerability has been identified in Siveillance VMS 2017 R2 (All versions < V11.2a),...
High
Unreviewed
CVE-2019-6582
was published
May 24, 2022
An Improper Authorization vulnerability in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.0 to 5.6.8 and 5...
High
Unreviewed
CVE-2018-13382
was published
May 24, 2022
Open-Xchange GmbH OX Cloud Plugins 1.4.0 and earlier is affected by: Missing Authorization.
High
Unreviewed
CVE-2017-8777
was published
May 24, 2022
A vulnerability in the Secure Shell (SSH) authentication process of Cisco Small Business Switches...
High
Unreviewed
CVE-2019-1859
was published
May 24, 2022
Rockwell Automation FactoryTalk EnergyMetrix before 2.20.00 does not invalidate credentials upon...
High
Unreviewed
CVE-2016-4531
was published
May 17, 2022
The m_authenticate function in modules/m_sasl.c in Charybdis before 3.5.3 allows remote attackers...
High
Unreviewed
CVE-2016-7143
was published
May 17, 2022
A vulnerability in Cisco Intercloud Fabric for Business and Cisco Intercloud Fabric for Providers...
High
Unreviewed
CVE-2016-9217
was published
May 17, 2022
Possible unauthorized memory access in the hypervisor. Incorrect configuration provides access to...
High
Unreviewed
CVE-2016-8443
was published
May 17, 2022
In TrustZone in all Android releases from CAF using the Linux kernel, an Improper Authorization...
High
Unreviewed
CVE-2014-9945
was published
May 17, 2022
In Core Kernel in all Android releases from CAF using the Linux kernel, an Improper Authorization...
High
Unreviewed
CVE-2014-9950
was published
May 17, 2022
WebKit/Source/core/loader/FrameLoader.cpp in Blink, as used in Google Chrome before 52.0.2743.82,...
High
Unreviewed
CVE-2016-1711
was published
May 17, 2022
The ChromeClientImpl::createWindow method in WebKit/Source/web/ChromeClientImpl.cpp in Blink, as...
High
Unreviewed
CVE-2016-1710
was published
May 17, 2022
cgi-bin/cgi_system in NUUO NVRmini 2 1.7.5 through 2.x, NUUO NVRsolo 1.7.5 through 2.x, and...
High
Unreviewed
CVE-2016-5676
was published
May 17, 2022
Aruba Networks ClearPass Policy Manager before 6.4.7 and 6.5.x before 6.5.2 allows remote...
High
Unreviewed
CVE-2015-3656
was published
May 17, 2022
WordPress before 4.5 does not consider octal and hexadecimal IP address formats when determining...
High
Unreviewed
CVE-2016-4029
was published
May 17, 2022
The Backup Server component in SAP Sybase ASE 15.7 before SP51 allows remote attackers to bypass...
High
Unreviewed
CVE-2013-7245
was published
May 14, 2022
Microsoft Windows 8.1, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 do not properly check...
High
Unreviewed
CVE-2016-3352
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API