GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,826
Erlang
36
GitHub Actions
32
Go
2,426
Maven
5,000+
npm
4,058
NuGet
723
pip
3,849
Pub
12
RubyGems
941
Rust
1,006
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,082 advisories
Filter by severity
A vulnerability in the Secure Sockets Layer (SSL) Virtual Private Network (VPN) Client...
High
Unreviewed
CVE-2018-0227
was published
May 13, 2022
A vulnerability in the Extensible Authentication Protocol-Transport Layer Security (EAP-TLS)...
High
Unreviewed
CVE-2018-0277
was published
May 13, 2022
A vulnerability in the certificate management subsystem of Cisco AnyConnect Network Access...
Moderate
Unreviewed
CVE-2018-0334
was published
May 13, 2022
A vulnerability in the Zero Touch Provisioning feature of the Cisco SD-WAN Solution could allow...
High
Unreviewed
CVE-2018-0434
was published
May 13, 2022
Keycloak Authentication Error
Moderate
CVE-2018-10894
was published
for
org.keycloak:keycloak-saml-adapter-core
(Maven)
May 13, 2022
Fixed issues with NetIQ eDirectory prior to 9.1.1 when checking certificate revocation.
High
Unreviewed
CVE-2018-12461
was published
May 13, 2022
Dell Networking OS10 versions prior to 10.4.3.0 contain a vulnerability in the Phone Home feature...
High
Unreviewed
CVE-2018-15784
was published
May 13, 2022
IBM Security Guardium EcoSystem 10.5 does not validate, or incorrectly validates, a certificate...
High
Unreviewed
CVE-2018-1509
was published
May 13, 2022
IBM WebSphere MQ 8.0 and 9.0 could allow a remote attacker to obtain sensitive information,...
Moderate
Unreviewed
CVE-2018-1543
was published
May 13, 2022
A vulnerability has been identified in Siveillance VMS Video for Android (All versions < V12.1a ...
High
Unreviewed
CVE-2018-4849
was published
May 13, 2022
Philips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have an SSL incorrect hostname...
High
Unreviewed
CVE-2018-5462
was published
May 13, 2022
Philips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have a self-signed SSL certificate...
High
Unreviewed
CVE-2018-5466
was published
May 13, 2022
Philips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have an untrusted SSL certificate...
High
Unreviewed
CVE-2018-5464
was published
May 13, 2022
Jenkins Active Directory Plugin Improper certificate validation with StartTLS
High
CVE-2019-1003009
was published
for
org.jenkins-ci.plugins:active-directory
(Maven)
May 13, 2022
A vulnerability in the Identity Services Engine (ISE) integration feature of Cisco Prime...
High
Unreviewed
CVE-2019-1659
was published
May 13, 2022
A vulnerability in the Cisco Network Plug-and-Play (PnP) agent of Cisco IOS Software and Cisco...
High
Unreviewed
CVE-2019-1748
was published
May 13, 2022
A vulnerability in the certificate handling component of the Cisco SPA112, SPA525, and SPA5X5...
High
Unreviewed
CVE-2019-1683
was published
May 13, 2022
A vulnerability in the Cisco Smart Call Home feature of Cisco IOS and IOS XE Software could allow...
Moderate
Unreviewed
CVE-2019-1757
was published
May 13, 2022
Kubevirt/virt-cdi-importer, versions 1.4.0 to 1.5.3 inclusive, were reported to disable TLS...
Moderate
Unreviewed
CVE-2019-3841
was published
May 13, 2022
Pivotal Application Service (PAS), versions 2.2.x prior to 2.2.12, 2.3.x prior to 2.3.7 and 2.4.x...
Critical
Unreviewed
CVE-2019-3777
was published
May 13, 2022
An issue has been found in PowerDNS Recursor versions 4.1.x before 4.1.9 where records in the...
Critical
Unreviewed
CVE-2019-3807
was published
May 13, 2022
Cyberduck before 4.4.4 on Windows does not properly validate X.509 certificate chains, which...
Moderate
Unreviewed
CVE-2014-2845
was published
May 13, 2022
The (1) update and (2) package-installation features in MODX Revolution 2.5.4-pl and earlier do...
High
Unreviewed
CVE-2017-7322
was published
May 13, 2022
When using an OCSP responder Apache Tomcat Native 1.2.0 to 1.2.16 and 1.1.23 to 1.1.34 did not...
High
Unreviewed
CVE-2018-8019
was published
May 13, 2022
A potential vulnerability has been identified in HP Remote Graphics Software’s certificate...
Critical
Unreviewed
CVE-2018-5926
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API