GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,826
Erlang
36
GitHub Actions
32
Go
2,426
Maven
5,000+
npm
4,058
NuGet
723
pip
3,848
Pub
12
RubyGems
934
Rust
1,006
Swift
38
Unreviewed advisories
All unreviewed
5,000+
4,983 advisories
Filter by severity
Apple Mac OS X 10.6 through 10.6.3 and Mac OS X Server 10.6 through 10.6.3 allows local users to...
High
Unreviewed
CVE-2010-1821
was published
May 17, 2022
winpm-32.exe in Pegasus Mail (aka Pmail) v4.72 build 572 allows code execution via a crafted ssgp...
High
Unreviewed
CVE-2017-9046
was published
May 17, 2022
An issue was discovered on Mimosa Client Radios before 2.2.3 and Mimosa Backhaul Radios before 2...
High
Unreviewed
CVE-2017-9131
was published
May 17, 2022
IBM QRadar Incident Forensics 7.2 could allow a remote authenticated attacker to execute...
High
Unreviewed
CVE-2016-9726
was published
May 17, 2022
Huawei AC6605 with software V200R001C00; AC6605 with software V200R002C00; ACU with software...
High
Unreviewed
CVE-2014-8572
was published
May 17, 2022
The sys_thrsigdivert function in kern/kern_sig.c in the OpenBSD kernel 5.9 allows remote...
High
Unreviewed
CVE-2016-6244
was published
May 17, 2022
The TCP Input module in Cisco IOS 12.2 through 12.4 and 15.0 through 15.4, when NAT is used,...
High
Unreviewed
CVE-2014-2109
was published
May 17, 2022
Huawei PC client software HiSuite 4.0.5.300_OVE uses insecure HTTP for upgrade software package...
High
Unreviewed
CVE-2016-8273
was published
May 17, 2022
SEIL/x86 Fuji 1.70 to 5.62, SEIL/BPV4 5.00 to 5.62, SEIL/X1 1.30 to 5.62, SEIL/X2 1.30 to 5.62,...
High
Unreviewed
CVE-2017-2153
was published
May 17, 2022
Untrusted search path vulnerability in Hanako 2017, Hanako 2016, Hanako 2015, Hanako Pro 3, JUST...
High
Unreviewed
CVE-2017-2154
was published
May 17, 2022
The path autocompletion feature in Bash 4.4 allows local users to gain privileges via a crafted...
High
Unreviewed
CVE-2017-5932
was published
May 17, 2022
An issue was discovered in certain Apple products. macOS before 10.12.2 is affected. The issue...
High
Unreviewed
CVE-2016-7742
was published
May 17, 2022
Twigmo bundled with CS-Cart 4.3.9 and earlier and Twigmo bundled with CS-Cart Multi-Vendor 4.3.9...
High
Unreviewed
CVE-2016-4862
was published
May 17, 2022
Sandstorm Cap'n Proto before 0.5.3.1 allows remote crashes related to a compiler optimization. A...
High
Unreviewed
CVE-2017-7892
was published
May 17, 2022
Insufficient input validation in ASP may allow an attacker with a malicious BIOS to potentially...
High
Unreviewed
CVE-2023-20522
was published
Jan 11, 2023
IBM QRadar 7.2 could allow a remote authenticated attacker to execute arbitrary commands on the...
High
Unreviewed
CVE-2016-9727
was published
May 17, 2022
Possible unauthorized memory access in the hypervisor. Lack of input validation could allow...
High
Unreviewed
CVE-2016-8442
was published
May 17, 2022
Unspecified methods in the RACF Connector component before 1.1.1.0 in ForgeRock OpenIDM and...
High
Unreviewed
CVE-2016-6500
was published
May 17, 2022
A denial of service vulnerability in core networking could enable a remote attacker to use...
High
Unreviewed
CVE-2017-0389
was published
May 17, 2022
The parse_char_class function in regparse.c in the Onigmo (aka Oniguruma-mod) regular expression...
High
Unreviewed
CVE-2017-6181
was published
May 17, 2022
Huawei S5300 with software V200R003C00, V200R007C00, V200R008C00, V200R009C00; S5700 with...
High
Unreviewed
CVE-2016-8773
was published
May 17, 2022
Huawei USG9520 V300R001C01, USG9560 V300R001C01, and USG9580 V300R001C01 allow unauthenticated...
High
Unreviewed
CVE-2016-8796
was published
May 17, 2022
A vulnerability in TCP port management in Cisco ONS 15454 Series Multiservice Provisioning...
High
Unreviewed
CVE-2016-9211
was published
May 17, 2022
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has...
High
Unreviewed
CVE-2017-7301
was published
May 17, 2022
Cisco Web Security Appliance (WSA) devices with software 8.5.0-ise-147 do not properly restrict...
High
Unreviewed
CVE-2015-0693
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API