GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,093 advisories
Filter by severity
A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco...
High
Unreviewed
CVE-2020-3533
was published
May 24, 2022
A vulnerability in the OSPF Version 2 (OSPFv2) implementation of Cisco Adaptive Security...
High
Unreviewed
CVE-2020-3528
was published
May 24, 2022
A vulnerability in the licensing service of Cisco Firepower Management Center (FMC) Software...
High
Unreviewed
CVE-2020-3499
was published
May 24, 2022
A vulnerability in the web interface of Cisco Adaptive Security Appliance (ASA) Software and...
High
Unreviewed
CVE-2020-3304
was published
May 24, 2022
A vulnerability in the IP fragment-handling implementation of Cisco Adaptive Security Appliance ...
High
Unreviewed
CVE-2020-3373
was published
May 24, 2022
On Juniper Networks EX4300-MP Series, EX4600 Series and QFX5K Series deployed in a Virtual...
Moderate
Unreviewed
CVE-2020-1689
was published
May 24, 2022
On Juniper Networks EX4300-MP Series, EX4600 Series and QFX5K Series deployed in (Ethernet VPN)...
Moderate
Unreviewed
CVE-2020-1687
was published
May 24, 2022
On Juniper Networks SRX Series configured with application identification inspection enabled,...
High
Unreviewed
CVE-2020-1684
was published
May 24, 2022
On Juniper Networks EX2300 Series, receipt of a stream of specific multicast packets by the...
Moderate
Unreviewed
CVE-2020-1668
was published
May 24, 2022
On Juniper Networks EX4300 Series, receipt of a stream of specific IPv4 packets can cause Routing...
Moderate
Unreviewed
CVE-2020-1670
was published
May 24, 2022
A denial of service vulnerability in B&R GateManager 4260 and 9250 versions <9.0.20262 and...
Moderate
Unreviewed
CVE-2020-11645
was published
May 24, 2022
In kdeconnect-kde (aka KDE Connect) before 20.08.2, an attacker on the local network could send...
Moderate
Unreviewed
CVE-2020-26164
was published
May 24, 2022
An issue has been discovered in GitLab affecting versions prior to 13.2.10, 13.3.7 and 13.4.2:...
Moderate
Unreviewed
CVE-2020-13342
was published
May 24, 2022
A potential DOS vulnerability was discovered in GitLab versions 13.1, 13.2 and 13.3. The api to...
Moderate
Unreviewed
CVE-2020-13333
was published
May 24, 2022
A vulnerability in Cisco Aironet Access Point (AP) Software could allow an unauthenticated,...
High
Unreviewed
CVE-2020-3559
was published
May 24, 2022
A vulnerability in the IP Address Resolution Protocol (ARP) feature of Cisco IOS XE Software for...
High
Unreviewed
CVE-2020-3508
was published
May 24, 2022
A vulnerability in the implementation of Multiprotocol Border Gateway Protocol (MP-BGP) for the...
High
Unreviewed
CVE-2020-3479
was published
May 24, 2022
A vulnerability in the WLAN Local Profiling feature of Cisco IOS XE Wireless Controller Software...
Moderate
Unreviewed
CVE-2020-3428
was published
May 24, 2022
A vulnerability in the PROFINET feature of Cisco IOS Software and Cisco IOS XE Software could...
High
Unreviewed
CVE-2020-3409
was published
May 24, 2022
A vulnerability in the packet processing of Cisco IOS XE Software for Cisco 4461 Integrated...
High
Unreviewed
CVE-2020-3414
was published
May 24, 2022
A vulnerability in the Split DNS feature of Cisco IOS Software and Cisco IOS XE Software could...
High
Unreviewed
CVE-2020-3408
was published
May 24, 2022
An issue was discovered in Xen through 4.14.x. There is a lack of preemption in evtchn_reset() /...
Moderate
Unreviewed
CVE-2020-25601
was published
May 24, 2022
Multiple vulnerabilities in the Distance Vector Multicast Routing Protocol (DVMRP) feature of...
High
Unreviewed
CVE-2020-3569
was published
May 24, 2022
Node.js < 14.11.0 is vulnerable to HTTP denial of service (DoS) attacks based on delayed requests...
High
Unreviewed
CVE-2020-8251
was published
May 24, 2022
In libmkvextractor, there is a possible resource exhaustion due to a missing bounds check. This...
Moderate
Unreviewed
CVE-2020-0287
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API