GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,750
Erlang
35
GitHub Actions
29
Go
2,323
Maven
5,000+
npm
3,956
NuGet
712
pip
3,739
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
372 advisories
Filter by severity
The Bluetooth subsystem in Apple OS X before 10.10.5 allows remote attackers to cause a denial of...
Low
Unreviewed
CVE-2015-3787
was published
May 17, 2022
A remote HTTP parameter Pollution vulnerability in HPE Matrix Operating Environment version 7.6...
Low
Unreviewed
CVE-2016-8535
was published
May 14, 2022
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10,...
Low
Unreviewed
CVE-2017-17292
was published
May 14, 2022
The PyGrub boot loader in Xen unstable before changeset 25589:60f09d1ab1fe, 4.2.x, and 4.1.x...
Low
Unreviewed
CVE-2012-2625
was published
May 14, 2022
The sys_recvfrom function in nmbd in Samba 3.6.x before 3.6.24, 4.0.x before 4.0.19, and 4.1.x...
Low
Unreviewed
CVE-2014-0244
was published
May 14, 2022
Outlook Web App (OWA) in Microsoft Exchange Server 2013 SP1 and Cumulative Update 6 does not...
Low
Unreviewed
CVE-2014-6336
was published
May 14, 2022
Xen 4.4.x does not properly check alignment, which allows local users to cause a denial of...
Low
Unreviewed
CVE-2014-3716
was published
May 14, 2022
Xen 4.4.x does not properly validate the load address for 64-bit ARM guest kernels, which allows...
Low
Unreviewed
CVE-2014-3717
was published
May 14, 2022
The ARM image loading functionality in Xen 4.4.x does not properly validate kernel length, which...
Low
Unreviewed
CVE-2014-3714
was published
May 14, 2022
The dissect_stun_message function in epan/dissectors/packet-stun.c in the STUN dissector in...
Low
Unreviewed
CVE-2012-4292
was published
May 14, 2022
The "insert-blank-characters" capability in caps.c in gnome-terminal (vte) before 0.28.1 allows...
Low
Unreviewed
CVE-2011-2198
was published
May 14, 2022
dbus 1.3.0 before 1.6.22 and 1.8.x before 1.8.6 allows local users to cause a denial of service ...
Low
Unreviewed
CVE-2014-3533
was published
May 14, 2022
The _dbus_printf_string_upper_bound function in dbus/dbus-sysdeps-unix.c in D-Bus (aka DBus) 1.4...
Low
Unreviewed
CVE-2013-2168
was published
May 14, 2022
The Unity Settings Daemon before 14.04.0+14.04.20150825-0ubuntu2 and 15.04.x before 15.04.1+15.04...
Low
Unreviewed
CVE-2015-1319
was published
May 14, 2022
The kernel in Apple iOS before 6.1 and Apple TV before 5.2 does not properly validate copyin and...
Low
Unreviewed
CVE-2013-0964
was published
May 14, 2022
This issue was addressed with improved entitlements. This issue affected versions prior to iOS 12.
Low
Unreviewed
CVE-2018-4322
was published
May 14, 2022
Virtual Machine Manager (VMM) in Hyper-V in Microsoft Windows 8.1 and Windows Server 2012 R2...
Low
Unreviewed
CVE-2015-1647
was published
May 14, 2022
Insufficient input validation in Kernel Mode Driver in Intel(R) Graphics Driver for Windows*...
Low
Unreviewed
CVE-2018-12222
was published
May 14, 2022
libvirt 1.0.0 through 1.2.x before 1.2.5, when fine grained access control is enabled, allows...
Low
Unreviewed
CVE-2014-5177
was published
May 14, 2022
Huawei eSpace Desktop before V100R001C03 allows local users to cause a denial of service (program...
Low
Unreviewed
CVE-2014-9415
was published
May 14, 2022
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 Admin console is vulnerable to a Client...
Low
Unreviewed
CVE-2019-4271
was published
May 24, 2022
The Meeting component in Huawei eSpace Desktop before V100R001C03 allows local users to cause a...
Low
Unreviewed
CVE-2014-9417
was published
May 14, 2022
In Messaging, there is a possible way to attach a private file to an SMS message due to improper...
Low
Unreviewed
CVE-2022-20241
was published
Aug 12, 2022
A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 13...
Low
Unreviewed
CVE-2020-9792
was published
May 24, 2022
An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. The issue...
Low
Unreviewed
CVE-2017-2351
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API