GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,825
Erlang
36
GitHub Actions
32
Go
2,417
Maven
5,000+
npm
4,054
NuGet
723
pip
3,845
Pub
12
RubyGems
933
Rust
1,005
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,235 advisories
Filter by severity
An issue was discovered in components/com_users/models/registration.php in Joomla! before 3.6.5....
High
Unreviewed
CVE-2016-9838
was published
May 17, 2022
X.org libXi before 1.7.7 allows remote X servers to cause a denial of service (infinite loop) via...
High
Unreviewed
CVE-2016-7946
was published
May 17, 2022
steps/mail/sendmail.inc in Roundcube before 1.1.7 and 1.2.x before 1.2.3, when no SMTP server is...
High
Unreviewed
CVE-2016-9920
was published
May 17, 2022
The GPS component in Android before 2016-12-05 allows man-in-the-middle attackers to cause a...
High
Unreviewed
CVE-2016-5341
was published
May 17, 2022
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion...
High
Unreviewed
CVE-2016-5574
was published
May 14, 2022
The makecontext function in the GNU C Library (aka glibc or libc6) before 2.25 creates execution...
High
Unreviewed
CVE-2016-6323
was published
May 14, 2022
TGCaptcha2 version 0.3.0 is vulnerable to a replay attack due to a missing nonce allowing...
High
Unreviewed
CVE-2016-1000032
was published
May 17, 2022
vaconfig/time in Novell Filr before 1.2 Security Update 3 and 2.0 before Security Update 2 allows...
High
Unreviewed
CVE-2016-1608
was published
May 17, 2022
The Apache HTTP Server through 2.4.23 follows RFC 3875 section 4.1.18 and therefore does not...
High
Unreviewed
CVE-2016-5387
was published
May 13, 2022
The net/http package in Go through 1.6 does not attempt to address RFC 3875 section 4.1.18...
High
Unreviewed
CVE-2016-5386
was published
May 13, 2022
The Apache HTTP Server 2.4.18 through 2.4.20, when mod_http2 and mod_ssl are enabled, does not...
High
Unreviewed
CVE-2016-4979
was published
May 13, 2022
Heap-based buffer overflow in the KeyView PDF filter in IBM Domino 8.5.x before 8.5.3 FP6 IF13...
High
Unreviewed
CVE-2016-0278
was published
May 13, 2022
Unspecified vulnerability in Opera Mail before 2016-02-16 on Windows allows user-assisted remote...
High
Unreviewed
CVE-2016-5101
was published
May 17, 2022
The RPC API in the RSCD agent in BMC BladeLogic Server Automation (BSA) 8.2.x, 8.3.x, 8.5.x, 8.6...
High
Unreviewed
CVE-2016-1543
was published
May 14, 2022
The TreeScope::adoptIfNeeded function in WebKit/Source/core/dom/TreeScope.cpp in the DOM...
High
Unreviewed
CVE-2016-1667
was published
May 14, 2022
The Data Provisioning Agent (aka DP Agent) in SAP HANA does not properly restrict access to...
High
Unreviewed
CVE-2016-4018
was published
May 14, 2022
Schneider Electric Struxureware Building Operations Automation Server AS 1.7 and earlier and AS-P...
High
Unreviewed
CVE-2016-2278
was published
May 14, 2022
The client implementation in IBM Informix Dynamic Server 11.70.xCn on Windows does not properly...
High
Unreviewed
CVE-2016-0226
was published
May 17, 2022
The default configuration of the server in MobaXterm before 8.3 has a disabled Access Control...
High
Unreviewed
CVE-2015-7244
was published
May 17, 2022
nvSCPAPISvr.exe in the Stereoscopic 3D Driver Service in the NVIDIA GPU graphics driver R340...
High
Unreviewed
CVE-2015-7865
was published
May 14, 2022
The vertica-udx-zygote process in HP Vertica 7.1.1 UDx does not require authentication, which...
High
Unreviewed
CVE-2015-6867
was published
May 17, 2022
packages/Keyguard/res/layout/keyguard_password_view.xml in Lockscreen in Android 5.x before 5.1.1...
High
Unreviewed
CVE-2015-3860
was published
May 17, 2022
Windows Media Center in Microsoft Windows Vista SP2, Windows 7 SP1, Windows 8, and Windows 8.1...
High
Unreviewed
CVE-2015-2509
was published
May 14, 2022
vmware-vmx.exe in VMware Workstation 7.x through 10.x before 10.0.7 and 11.x before 11.1.1,...
High
Unreviewed
CVE-2015-3650
was published
May 17, 2022
The createFromParcel method in the com.absolute.android.persistence.MethodSpec class in Samsung...
High
Unreviewed
CVE-2015-4034
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API