GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,822
Erlang
36
GitHub Actions
32
Go
2,413
Maven
5,000+
npm
4,052
NuGet
723
pip
3,844
Pub
12
RubyGems
933
Rust
1,005
Swift
38
Unreviewed advisories
All unreviewed
5,000+
4,983 advisories
Filter by severity
Siemens Automation License Manager (ALM) before 5.3 SP3 Update 1 allows remote attackers to cause...
High
Unreviewed
CVE-2016-8563
was published
May 17, 2022
APK can load a crafted model into the CDSP which can lead to a compromise of CDSP and other APK`s...
High
Unreviewed
CVE-2021-35116
was published
Jun 15, 2022
Cisco Access Point devices with software 8.2(102.43) allow remote attackers to cause a denial of...
High
Unreviewed
CVE-2016-1419
was published
May 17, 2022
Cisco RV180 and RV180W devices allow remote authenticated users to execute arbitrary commands as...
High
Unreviewed
CVE-2016-1430
was published
May 17, 2022
A vulnerability in Advanced Malware Protection (AMP) for Cisco Email Security Appliances (ESA)...
High
Unreviewed
CVE-2016-6360
was published
May 17, 2022
EMC Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) versions 7.3 and older contain a...
High
Unreviewed
CVE-2016-0909
was published
May 17, 2022
A vulnerability in the email message filtering feature of Cisco AsyncOS Software for Cisco Email...
High
Unreviewed
CVE-2016-1481
was published
May 17, 2022
There is an illegal address access in the extend_alias_table function in localealias.c of Exiv2 0...
High
Unreviewed
CVE-2017-11553
was published
May 17, 2022
vim before patch 8.0.0056 does not properly validate values for the 'filetype', 'syntax' and ...
High
Unreviewed
CVE-2016-1248
was published
May 17, 2022
IBM i OSPF 6.1, 7.1, 7.2, and 7.3 is vulnerable when a rogue router spoofs its origin. Routing...
High
Unreviewed
CVE-2017-1460
was published
May 17, 2022
The j_spring_security_switch_user function in Cisco Unified Intelligence Center (CUIC) 8.5.4...
High
Unreviewed
CVE-2016-6426
was published
May 17, 2022
Cisco IOS 12.2(33)SXJ9 on Supervisor Engine 32 and 720 modules for 6500 and 7600 devices...
High
Unreviewed
CVE-2016-6422
was published
May 17, 2022
Cisco IOS 12.2 and IOS XE 3.14 through 3.16 and 16.1 allow remote attackers to cause a denial of...
High
Unreviewed
CVE-2016-6379
was published
May 17, 2022
The IDS - Connectivity component in Apple iOS before 10 and OS X before 10.12 allows man-in-the...
High
Unreviewed
CVE-2016-4722
was published
May 17, 2022
The command “ipfilter” in Brocade Fabric OS before Brocade Fabric OS v.9.0.1a, v8.2.3, and v8.2...
High
Unreviewed
CVE-2021-27792
was published
May 24, 2022
A vulnerability in the email message filtering feature of Cisco AsyncOS Software for Cisco Email...
High
Unreviewed
CVE-2016-6356
was published
May 17, 2022
Improper Input Validation vulnerability in MELSEC iQ-R Series R00/01/02CPU Firmware versions "24"...
High
Unreviewed
CVE-2021-20611
was published
Dec 2, 2021
In unflatten of GraphicBuffer.cpp, there is a possible arbitrary code execution due to improper...
High
Unreviewed
CVE-2022-20156
was published
Jun 16, 2022
In readArguments of CallSubjectDialog.java, there is a possible way to trick the user to call the...
High
Unreviewed
CVE-2022-20134
was published
Jun 16, 2022
The web management interface in Netgear WGR614v9 allows remote attackers to cause a denial of...
High
Unreviewed
CVE-2008-6122
was published
May 17, 2022
CRLF injection vulnerability in SocialEngine (SE) 2.7 and earlier allows remote attackers to...
High
Unreviewed
CVE-2008-6121
was published
May 17, 2022
The rdp_rdp_process_color_pointer_pdu function in rdp/rdp_rdp.c in xrdp 0.4.1 and earlier allows...
High
Unreviewed
CVE-2008-5904
was published
May 17, 2022
Cisco Firepower Management Center and FireSIGHT System Software 6.0.1 mishandle comparisons...
High
Unreviewed
CVE-2016-6411
was published
May 17, 2022
VMware Horizon DaaS before 7.0.0 contains a vulnerability that exists due to insufficient...
High
Unreviewed
CVE-2017-4897
was published
May 17, 2022
A denial of service vulnerability in Mediaserver could enable an attacker to use a specially...
High
Unreviewed
CVE-2017-0488
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API