GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,750
Erlang
35
GitHub Actions
29
Go
2,323
Maven
5,000+
npm
3,956
NuGet
712
pip
3,739
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,188 advisories
Filter by severity
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion...
High
Unreviewed
CVE-2016-5574
was published
May 14, 2022
The makecontext function in the GNU C Library (aka glibc or libc6) before 2.25 creates execution...
High
Unreviewed
CVE-2016-6323
was published
May 14, 2022
TGCaptcha2 version 0.3.0 is vulnerable to a replay attack due to a missing nonce allowing...
High
Unreviewed
CVE-2016-1000032
was published
May 17, 2022
vaconfig/time in Novell Filr before 1.2 Security Update 3 and 2.0 before Security Update 2 allows...
High
Unreviewed
CVE-2016-1608
was published
May 17, 2022
The Apache HTTP Server through 2.4.23 follows RFC 3875 section 4.1.18 and therefore does not...
High
Unreviewed
CVE-2016-5387
was published
May 13, 2022
The net/http package in Go through 1.6 does not attempt to address RFC 3875 section 4.1.18...
High
Unreviewed
CVE-2016-5386
was published
May 13, 2022
The Apache HTTP Server 2.4.18 through 2.4.20, when mod_http2 and mod_ssl are enabled, does not...
High
Unreviewed
CVE-2016-4979
was published
May 13, 2022
Unspecified vulnerability in Opera Mail before 2016-02-16 on Windows allows user-assisted remote...
High
Unreviewed
CVE-2016-5101
was published
May 17, 2022
Heap-based buffer overflow in the KeyView PDF filter in IBM Domino 8.5.x before 8.5.3 FP6 IF13...
High
Unreviewed
CVE-2016-0278
was published
May 13, 2022
The RPC API in the RSCD agent in BMC BladeLogic Server Automation (BSA) 8.2.x, 8.3.x, 8.5.x, 8.6...
High
Unreviewed
CVE-2016-1543
was published
May 14, 2022
The TreeScope::adoptIfNeeded function in WebKit/Source/core/dom/TreeScope.cpp in the DOM...
High
Unreviewed
CVE-2016-1667
was published
May 14, 2022
The Data Provisioning Agent (aka DP Agent) in SAP HANA does not properly restrict access to...
High
Unreviewed
CVE-2016-4018
was published
May 14, 2022
Schneider Electric Struxureware Building Operations Automation Server AS 1.7 and earlier and AS-P...
High
Unreviewed
CVE-2016-2278
was published
May 14, 2022
The client implementation in IBM Informix Dynamic Server 11.70.xCn on Windows does not properly...
High
Unreviewed
CVE-2016-0226
was published
May 17, 2022
The default configuration of the server in MobaXterm before 8.3 has a disabled Access Control...
High
Unreviewed
CVE-2015-7244
was published
May 17, 2022
nvSCPAPISvr.exe in the Stereoscopic 3D Driver Service in the NVIDIA GPU graphics driver R340...
High
Unreviewed
CVE-2015-7865
was published
May 14, 2022
The vertica-udx-zygote process in HP Vertica 7.1.1 UDx does not require authentication, which...
High
Unreviewed
CVE-2015-6867
was published
May 17, 2022
packages/Keyguard/res/layout/keyguard_password_view.xml in Lockscreen in Android 5.x before 5.1.1...
High
Unreviewed
CVE-2015-3860
was published
May 17, 2022
Windows Media Center in Microsoft Windows Vista SP2, Windows 7 SP1, Windows 8, and Windows 8.1...
High
Unreviewed
CVE-2015-2509
was published
May 14, 2022
vmware-vmx.exe in VMware Workstation 7.x through 10.x before 10.0.7 and 11.x before 11.1.1,...
High
Unreviewed
CVE-2015-3650
was published
May 17, 2022
The createFromParcel method in the com.absolute.android.persistence.MethodSpec class in Samsung...
High
Unreviewed
CVE-2015-4034
was published
May 17, 2022
The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files...
High
Unreviewed
CVE-2015-3306
was published
May 13, 2022
Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allow...
High
Unreviewed
CVE-2015-3073
was published
May 17, 2022
The XcListener in SAP Afaria 7.0.6001.5 does not properly restrict access, which allows remote...
High
Unreviewed
CVE-2015-2816
was published
May 14, 2022
The WPML plugin before 3.1.9 for WordPress does not properly handle multiple actions in a request...
High
Unreviewed
CVE-2015-2792
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API