GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,091 advisories
Filter by severity
qtum through 0.16 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of service...
High
Unreviewed
CVE-2018-19151
was published
May 24, 2022
A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol...
Moderate
Unreviewed
CVE-2019-15264
was published
May 24, 2022
A vulnerability has been identified in Development/Evaluation Kits for PROFINET IO: DK Standard...
Moderate
Unreviewed
CVE-2019-10936
was published
May 24, 2022
A vulnerability has been identified in CP1604 (All versions < V2.8), CP1616 (All versions < V2.8)...
Moderate
Unreviewed
CVE-2019-10923
was published
May 24, 2022
Upon receiving each incoming request header data, Envoy will iterate over existing request...
High
Unreviewed
CVE-2019-15226
was published
May 24, 2022
A vulnerability in the Internet Key Exchange version 1 (IKEv1) feature of Cisco Adaptive Security...
High
Unreviewed
CVE-2019-15256
was published
May 24, 2022
A vulnerability in the web-based management interface of Cisco IC3000 Industrial Compute Gateway...
Moderate
Unreviewed
CVE-2019-12714
was published
May 24, 2022
A vulnerability in the configuration of the Pluggable Authentication Module (PAM) used in Cisco...
Moderate
Unreviewed
CVE-2019-12700
was published
May 24, 2022
A vulnerability in the WebVPN feature of Cisco Adaptive Security Appliance (ASA) Software and...
High
Unreviewed
CVE-2019-12698
was published
May 24, 2022
In libstagefright, there is a possible resource exhaustion due to improper input validation. This...
High
Unreviewed
CVE-2019-9349
was published
May 24, 2022
IBM Cognos Analytics 11.0, and 11.1 is vulnerable to a denial of service attack that could allow...
High
Unreviewed
CVE-2019-4183
was published
May 24, 2022
An issue was discovered in xfs_setattr_nonsize in fs/xfs/xfs_iops.c in the Linux kernel through 5...
High
Unreviewed
CVE-2019-15538
was published
May 24, 2022
IBM MQ 9.1.0.0, 9.1.0.1, 9.1.1, and 9.1.0.2 is vulnerable to a denial of service due to a local...
Moderate
Unreviewed
CVE-2019-4049
was published
May 24, 2022
Some HTTP/2 implementations are vulnerable to unconstrained interal data buffering, potentially...
High
Unreviewed
CVE-2019-9517
was published
May 24, 2022
Some HTTP/2 implementations are vulnerable to a flood of empty frames, potentially leading to a...
High
Unreviewed
CVE-2019-9518
was published
May 24, 2022
Some HTTP/2 implementations are vulnerable to a settings flood, potentially leading to a denial...
High
Unreviewed
CVE-2019-9515
was published
May 24, 2022
Some HTTP/2 implementations are vulnerable to a header leak, potentially leading to a denial of...
Moderate
Unreviewed
CVE-2019-9516
was published
May 24, 2022
Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of...
High
Unreviewed
CVE-2019-9513
was published
May 24, 2022
Some HTTP/2 implementations are vulnerable to window size manipulation and stream prioritization...
High
Unreviewed
CVE-2019-9511
was published
May 24, 2022
A vulnerability has been identified in SCALANCE X-200 (All versions), SCALANCE X-200IRT (All...
High
Unreviewed
CVE-2019-10942
was published
May 24, 2022
Imgix through 2019-06-19 allows remote attackers to cause a denial of service (resource...
Moderate
Unreviewed
CVE-2019-13655
was published
May 24, 2022
Jsish 2.4.84 2.0484 is affected by: Uncontrolled Resource Consumption. The impact is: denial of...
High
Unreviewed
CVE-2019-1010172
was published
May 24, 2022
A vulnerability in the pfe-chassisd Chassis Manager (CMLC) daemon of Juniper Networks Junos OS...
Moderate
Unreviewed
CVE-2019-0046
was published
May 24, 2022
DoS in EdgeMAX EdgeSwitch prior to 1.8.2 allow an Admin user to Crash the SSH CLI interface by...
Moderate
Unreviewed
CVE-2019-5445
was published
May 24, 2022
Info-ZIP UnZip 6.0 mishandles the overlapping of files inside a ZIP container, leading to denial...
Low
Unreviewed
CVE-2019-13232
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API