GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,371 advisories
Filter by severity
A Deserialization of Untrusted Data vulnerability in Hewlett Packard Enterprise Intelligent...
High
Unreviewed
CVE-2017-8967
was published
May 14, 2022
A Deserialization of Untrusted Data vulnerability in Hewlett Packard Enterprise Intelligent...
High
Unreviewed
CVE-2017-8962
was published
May 14, 2022
A Deserialization of Untrusted Data vulnerability in Hewlett Packard Enterprise Intelligent...
High
Unreviewed
CVE-2017-8965
was published
May 14, 2022
A Deserialization of Untrusted Data vulnerability in Hewlett Packard Enterprise Intelligent...
High
Unreviewed
CVE-2017-8966
was published
May 14, 2022
A Deserialization of Untrusted Data vulnerability in Hewlett Packard Enterprise Intelligent...
High
Unreviewed
CVE-2017-8963
was published
May 14, 2022
A Deserialization of Untrusted Data vulnerability in Hewlett Packard Enterprise Intelligent...
High
Unreviewed
CVE-2017-8964
was published
May 14, 2022
VMware Realize Automation (7.3 and 7.2) and vSphere Integrated Containers (1.x before 1.3)...
Critical
Unreviewed
CVE-2017-4947
was published
May 14, 2022
NASA RtRetrievalFramework version v1.0 contains a CWE-502 vulnerability in Data retrieval...
High
Unreviewed
CVE-2018-1000048
was published
May 14, 2022
NASA Kodiak version v1.0 contains a CWE-502 vulnerability in Kodiak library's data processing...
High
Unreviewed
CVE-2018-1000047
was published
May 14, 2022
NASA Singledop version v1.0 contains a CWE-502 vulnerability in NASA Singledop library (Weather...
High
Unreviewed
CVE-2018-1000045
was published
May 14, 2022
NASA Pyblock version v1.0 - v1.3 contains a CWE-502 vulnerability in Radar data parsing library...
High
Unreviewed
CVE-2018-1000046
was published
May 14, 2022
A remote code execution vulnerability in HPE Operations Orchestration Community edition and...
Critical
Unreviewed
CVE-2016-8519
was published
May 14, 2022
A Remote Code Execution vulnerability in HPE intelligent Management Center (iMC) PLAT version IMC...
Critical
Unreviewed
CVE-2017-12556
was published
May 14, 2022
A Remote Code Execution vulnerability in HPE intelligent Management Center (iMC) PLAT version IMC...
Critical
Unreviewed
CVE-2017-12558
was published
May 14, 2022
A remote deserialization of untrusted data vulnerability in HPE Intelligent Management Center ...
Critical
Unreviewed
CVE-2017-5790
was published
May 14, 2022
A Remote Code Execution vulnerability in HPE Network Automation using RPCServlet and Java...
Critical
Unreviewed
CVE-2016-8511
was published
May 14, 2022
The MyScript SDK before 1.3 for Android might allow attackers to execute arbitrary code by...
Critical
Unreviewed
CVE-2015-2020
was published
May 14, 2022
In Jboss Application Server as shipped with Red Hat Enterprise Application Platform 5.2, it was...
Critical
Unreviewed
CVE-2017-12149
was published
May 14, 2022
Versions of Puppet prior to 4.10.1 will deserialize data off the wire (from the agent to the...
High
Unreviewed
CVE-2017-2295
was published
May 14, 2022
The Milestone XProtect Video Management Software (Corporate, Expert, Professional+, Express+,...
High
Unreviewed
CVE-2018-7891
was published
May 14, 2022
There is a Hazelcast Library Java Deserialization Vulnerability in Citrix XenMobile Server 10.8...
High
Unreviewed
CVE-2018-10654
was published
May 14, 2022
IBM Data Server Driver for JDBC and SQLJ (IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5,...
High
Unreviewed
CVE-2017-1677
was published
May 14, 2022
An issue was discovered in phpMyAdmin. Some data is passed to the PHP unserialize() function...
Critical
Unreviewed
CVE-2016-6620
was published
May 14, 2022
A remote code execution vulnerability exists in "Microsoft COM for Windows" when it fails to...
High
Unreviewed
CVE-2018-8349
was published
May 14, 2022
All versions prior to V5.09.02.02T4 of the ZTE ZXIPTV-EPG product use the Java RMI service in...
Critical
Unreviewed
CVE-2017-10934
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API