GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,822
Erlang
36
GitHub Actions
32
Go
2,413
Maven
5,000+
npm
4,052
NuGet
723
pip
3,844
Pub
12
RubyGems
933
Rust
1,005
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,502 advisories
Filter by severity
Mozilla Firefox before 34.0 and SeaMonkey before 2.31 provide stylesheets with an incorrect...
Moderate
Unreviewed
CVE-2014-1589
was published
May 17, 2022
bug_report.php in MantisBT before 1.2.18 allows remote attackers to assign arbitrary issues via...
Moderate
Unreviewed
CVE-2014-9388
was published
May 17, 2022
Payments Director in IBM Financial Transaction Manager (FTM) for ACH Services, Check Services,...
Moderate
Unreviewed
CVE-2016-3060
was published
May 17, 2022
The Accessibility services in Android 7.0 before 2016-10-01 mishandle motion events, which allows...
Moderate
Unreviewed
CVE-2016-3923
was published
May 17, 2022
Off-by-one error in server/wifi/anqp/VenueNameElement.java in Wi-Fi in Android 6.x before 2016-10...
Moderate
Unreviewed
CVE-2016-3882
was published
May 17, 2022
Cisco IOS 15.2(04)M6 and 15.4(03)S lets physical-interface ACLs supersede tunnel-interface ACLs,...
Moderate
Unreviewed
CVE-2015-6366
was published
May 17, 2022
Unspecified vulnerability in the Siebel Apps - Customer Order Management component in Oracle...
Moderate
Unreviewed
CVE-2016-5534
was published
May 17, 2022
Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 16.1 allows...
Moderate
Unreviewed
CVE-2016-5560
was published
May 17, 2022
Stunnel 5.00 through 5.13, when using the redirect option, does not redirect client connections...
Moderate
Unreviewed
CVE-2015-3644
was published
May 17, 2022
Cisco Unified Web and E-Mail Interaction Manager 9.0(2) and 11.0(1) improperly performs...
Moderate
Unreviewed
CVE-2015-4298
was published
May 17, 2022
The Time Machine server in Server App in Apple OS X Server before 5.1 does not notify the user...
Moderate
Unreviewed
CVE-2016-1774
was published
May 17, 2022
Web Server in Apple OS X Server before 5.1 does not properly restrict access to .DS_Store and ...
Moderate
Unreviewed
CVE-2016-1776
was published
May 17, 2022
The default configuration of IBM WebSphere Application Server (WAS) 7.0.0 before 7.0.0.39, 8.0.0...
Moderate
Unreviewed
CVE-2015-1927
was published
May 17, 2022
SpringBoard in Apple iOS before 9 does not properly restrict access to privileged API calls,...
Moderate
Unreviewed
CVE-2015-5838
was published
May 17, 2022
Siemens RUGGEDCOM ROS 3.8.0 through 4.1.x permanently enables the IP forwarding feature, which...
Moderate
Unreviewed
CVE-2015-6675
was published
May 17, 2022
The XPC Services API in LaunchServices in Apple iOS before 9.3 allows attackers to bypass...
Moderate
Unreviewed
CVE-2016-1760
was published
May 17, 2022
Apple Mac EFI before 2015-001, as used in OS X before 10.10.4 and other products, does not...
Moderate
Unreviewed
CVE-2015-3692
was published
May 17, 2022
A vulnerability has been identified in a signed kernel driver for the BIOS of some ThinkPad...
Moderate
Unreviewed
CVE-2016-8222
was published
May 17, 2022
IBM BigFix Platform could allow an attacker on the local network to crash the BES and relay servers.
Moderate
Unreviewed
CVE-2016-6085
was published
May 17, 2022
The dpkg-source command in Debian dpkg before 1.16.16 and 1.17.x before 1.17.25 allows remote...
Moderate
Unreviewed
CVE-2015-0840
was published
May 17, 2022
An elevation of privilege vulnerability in the AOSP Launcher in Android 7.0 before 2016-11-01...
Moderate
Unreviewed
CVE-2016-6716
was published
May 17, 2022
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services...
Moderate
Unreviewed
CVE-2016-8307
was published
May 17, 2022
Vulnerability in the Oracle FLEXCUBE Private Banking component of Oracle Financial Services...
Moderate
Unreviewed
CVE-2016-8282
was published
May 17, 2022
Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services...
Moderate
Unreviewed
CVE-2016-8317
was published
May 17, 2022
Vulnerability in the Oracle FLEXCUBE Core Banking component of Oracle Financial Services...
Moderate
Unreviewed
CVE-2016-8323
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API