GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,757
Erlang
35
GitHub Actions
29
Go
2,328
Maven
5,000+
npm
3,965
NuGet
712
pip
3,745
Pub
12
RubyGems
921
Rust
974
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
14 advisories
Filter by severity
An unanchored /[a-z]{2}/ regular expression in ISPConfig before 3.1.13 makes it possible to...
High
Unreviewed
CVE-2018-17984
was published
May 14, 2022
An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST...
Moderate
Unreviewed
CVE-2019-11387
was published
May 24, 2022
An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST...
Moderate
Unreviewed
CVE-2019-11390
was published
May 24, 2022
An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST...
Moderate
Unreviewed
CVE-2019-11388
was published
May 24, 2022
An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST...
Moderate
Unreviewed
CVE-2019-11391
was published
May 24, 2022
An issue was discovered in OWASP ModSecurity Core Rule Set (CRS) through 3.1.0. /rules/REQUEST...
Moderate
Unreviewed
CVE-2019-11389
was published
May 24, 2022
An issue was discovered in Artifex MuJS 1.0.5. regcompx in regexp.c does not restrict regular...
Critical
Unreviewed
CVE-2019-12798
was published
May 24, 2022
A flaw was found in openshift-ansible. OpenShift Container Platform (OCP) 3.11 is too permissive...
Moderate
Unreviewed
CVE-2020-1741
was published
May 24, 2022
A vulnerability in the Split DNS feature of Cisco IOS Software and Cisco IOS XE Software could...
High
Unreviewed
CVE-2020-3408
was published
May 24, 2022
A user authorized to perform database queries may trigger denial of service by issuing specially...
Moderate
Unreviewed
CVE-2020-7929
was published
May 24, 2022
An Incorrect Regular Expression vulnerability in Bitdefender GravityZone Update Server allows an...
High
Unreviewed
CVE-2024-2223
was published
Apr 9, 2024
The WP Hardening – Fix Your WordPress Security plugin for WordPress is vulnerable to Security...
Moderate
Unreviewed
CVE-2024-6641
was published
Sep 18, 2024
It was possible to interrupt the processing of a RegExp bailout and run additional JavaScript,...
Moderate
Unreviewed
CVE-2025-1934
was published
Mar 4, 2025
A vulnerability in chat messaging features of Cisco Enterprise Chat and Email (ECE) could allow...
High
Unreviewed
CVE-2025-20139
was published
Apr 2, 2025
ProTip!
Advisories are also available from the
GraphQL API