GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,873 advisories
Filter by severity
An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4...
High
Unreviewed
CVE-2017-12163
was published
May 13, 2022
A vulnerability in the web-based user interface of Cisco SocialMiner could allow an...
High
Unreviewed
CVE-2017-12216
was published
May 13, 2022
It was discovered that the fix for CVE-2017-12163 was not properly shipped in erratum RHSA-2017...
High
Unreviewed
CVE-2017-15087
was published
May 13, 2022
This vulnerability allows remote attackers to disclose sensitive information on vulnerable...
High
Unreviewed
CVE-2017-16607
was published
May 13, 2022
An Information Exposure issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2...
High
Unreviewed
CVE-2017-16715
was published
May 13, 2022
This vulnerability allows remote attackers to disclose sensitive information on vulnerable...
High
Unreviewed
CVE-2017-16609
was published
May 13, 2022
IBM Sterling B2B Integrator Standard Edition (IBM Sterling File Gateway 2.2.0 through 2.2.6)...
High
Unreviewed
CVE-2017-1544
was published
May 13, 2022
It was found that xorg-x11-server before 1.19.0 including uses memcmp() to check the received MIT...
High
Unreviewed
CVE-2017-2624
was published
May 13, 2022
Siemens SINUMERIK Integrate Operate Clients between 2.0.3.00.016 (including) and 2.0.6 (excluding...
High
Unreviewed
CVE-2017-2685
was published
May 13, 2022
Pandora iOS app prior to version 8.3.2 fails to properly validate SSL certificates provided by...
High
Unreviewed
CVE-2017-3194
was published
May 13, 2022
In versions 4.3.2-R4 and prior of Cambium Networks cnPilot firmware, the SNMP read-only (RO)...
High
Unreviewed
CVE-2017-5262
was published
May 13, 2022
The bs_worker code in open build service before 20170320 followed relative symlinks, allowing...
High
Unreviewed
CVE-2017-5188
was published
May 13, 2022
An Insufficiently Protected Credentials issue was discovered in Sierra Wireless AirLink Raven XE,...
High
Unreviewed
CVE-2017-6046
was published
May 13, 2022
An Information Exposure issue was discovered in Trihedral VTScada Versions prior to 11.2.26. Some...
High
Unreviewed
CVE-2017-6045
was published
May 13, 2022
A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) 9.3(3) and 9...
High
Unreviewed
CVE-2017-6752
was published
May 13, 2022
X-Pack 5.1.1 did not properly apply document and field level security to multi-search and multi...
High
Unreviewed
CVE-2017-8450
was published
May 13, 2022
Some NetIQ Identity Manager Applications before Identity Manager 4.5.6.1 included the session...
High
Unreviewed
CVE-2017-9280
was published
May 13, 2022
IDM 4.6 Identity Applications prior to 4.6.2.1 may expose sensitive information.
High
Unreviewed
CVE-2017-9284
was published
May 13, 2022
Medtronic 2090 CareLink Programmer all versions The affected product uses a virtual private...
High
Unreviewed
CVE-2018-10596
was published
May 13, 2022
The UNIX pipe which sudo uses to contact SSSD and read the available sudo rules from SSSD has too...
High
Unreviewed
CVE-2018-10852
was published
May 13, 2022
git-annex is vulnerable to an Information Exposure when decrypting files. A malicious server for...
High
Unreviewed
CVE-2018-10859
was published
May 13, 2022
git-annex is vulnerable to a private data exposure and exfiltration attack. It could expose the...
High
Unreviewed
CVE-2018-10857
was published
May 13, 2022
NetComm Wireless G LTE Light Industrial M2M Router (NWL-25) with firmware 2.0.29.11 and prior....
High
Unreviewed
CVE-2018-14785
was published
May 13, 2022
A vulnerability in Cisco Meeting Server could allow an unauthenticated, remote attacker to gain...
High
Unreviewed
CVE-2018-15446
was published
May 13, 2022
Open Dental before version 18.4 transmits the entire user database over the network when a remote...
High
Unreviewed
CVE-2018-15718
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API