GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,094 advisories
Filter by severity
A uncontrolled resource consumption in Fortinet FortiWeb version 6.4.0, version 6.3.15 and below,...
High
Unreviewed
CVE-2021-36187
was published
May 24, 2022
Potential security vulnerabilities have been discovered on a certain HP LaserJet Pro printer that...
High
Unreviewed
CVE-2021-3704
was published
May 24, 2022
Clustered Data ONTAP versions 9.6 and higher prior to 9.6P16, 9.7P16, 9.8P7 and 9.9.1P3 are...
High
Unreviewed
CVE-2021-27005
was published
May 24, 2022
A resource exhaustion issue was addressed with improved input validation. This issue is fixed in...
Moderate
Unreviewed
CVE-2020-10005
was published
May 24, 2022
Cloud Controller versions prior to 1.118.0 are vulnerable to unauthenticated denial of Service...
High
Unreviewed
CVE-2021-22101
was published
May 24, 2022
A vulnerability in the memory management of Cisco Adaptive Security Appliance (ASA) Software and...
High
Unreviewed
CVE-2021-34792
was published
May 24, 2022
A vulnerability in SSL/TLS message handler for Cisco Adaptive Security Appliance (ASA) Software...
High
Unreviewed
CVE-2021-40117
was published
May 24, 2022
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) implementation of Cisco Adaptive...
Moderate
Unreviewed
CVE-2021-40125
was published
May 24, 2022
The affected product does not properly control the allocation of resources. A user may be able to...
High
Unreviewed
CVE-2021-38463
was published
May 24, 2022
The webinstaller is a Golang web server executable that enables the generation of an Auvesy image...
Moderate
Unreviewed
CVE-2021-38465
was published
May 24, 2022
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE ...
Moderate
Unreviewed
CVE-2021-35559
was published
May 24, 2022
An Uncontrolled Resource Consumption vulnerability in the kernel of Juniper Networks JUNOS OS...
High
Unreviewed
CVE-2021-31368
was published
May 24, 2022
An Uncontrolled Resource Consumption vulnerability in Juniper Networks Junos OS on EX2300, EX3400...
Moderate
Unreviewed
CVE-2021-31365
was published
May 24, 2022
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.14.1), RUGGEDCOM...
High
Unreviewed
CVE-2021-41546
was published
May 24, 2022
SAP NetWeaver AS ABAP and ABAP Platform - versions 700, 701, 702, 730, 731, 740, 750, 751, 752,...
High
Unreviewed
CVE-2021-38181
was published
May 24, 2022
Uncontrolled resource consumption in MELSEC iQ-R series C Controller Module R12CCPU-V all...
Moderate
Unreviewed
CVE-2021-20600
was published
May 24, 2022
Wowza Streaming Engine through 4.8.11+5 could allow an authenticated, remote attacker to exhaust...
Moderate
Unreviewed
CVE-2021-35492
was published
May 24, 2022
A vulnerability was discovered in GitLab starting with version 12.2 that allows an attacker to...
Moderate
Unreviewed
CVE-2021-39877
was published
May 24, 2022
A vulnerability in Ethernet over GRE (EoGRE) packet processing of Cisco IOS XE Wireless...
High
Unreviewed
CVE-2021-1611
was published
May 24, 2022
A vulnerability in the packet processing functionality of Cisco Embedded Wireless Controller (EWC...
High
Unreviewed
CVE-2021-1615
was published
May 24, 2022
A vulnerability in the Simple Network Management Protocol (SNMP) punt handling function of Cisco...
High
Unreviewed
CVE-2021-1623
was published
May 24, 2022
A vulnerability in the Rate Limiting Network Address Translation (NAT) feature of Cisco IOS XE...
High
Unreviewed
CVE-2021-1624
was published
May 24, 2022
A vulnerability in the Layer 2 punt code of Cisco IOS XE Software could allow an unauthenticated,...
High
Unreviewed
CVE-2021-1621
was published
May 24, 2022
The vCenter Server contains multiple denial-of-service vulnerabilities in VAPI (vCenter API)...
High
Unreviewed
CVE-2021-22009
was published
May 24, 2022
The vCenter Server contains a denial-of-service vulnerability in VPXD service. A malicious actor...
High
Unreviewed
CVE-2021-22010
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API