GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,091 advisories
Filter by severity
In all Qualcomm products with Android releases from CAF using the Linux kernel, if there is more...
High
Unreviewed
CVE-2017-8247
was published
May 13, 2022
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service due to...
Moderate
Unreviewed
CVE-2017-7521
was published
May 13, 2022
** DISPUTED ** BackBox Linux 4.6 allows remote attackers to cause a denial of service (ksoftirqd...
High
Unreviewed
CVE-2017-7397
was published
May 13, 2022
An issue was discovered in certain Apple products. iOS before 11 is affected. macOS before 10.13...
High
Unreviewed
CVE-2017-7086
was published
May 13, 2022
An issue was discovered in certain Apple products. iOS before 10.3.3 is affected. watchOS before...
High
Unreviewed
CVE-2017-7063
was published
May 13, 2022
Livebox 3 Sagemcom SG30_sip-fr-5.15.8.1 devices have an insufficiently large default value for...
High
Unreviewed
CVE-2017-6552
was published
May 13, 2022
Features in F5 BIG-IP 13.0.0-13.1.0.3, 12.1.0-12.1.3.1, 11.6.1-11.6.3.1, 11.5.1-11.5.5, or 11.2.1...
Moderate
Unreviewed
CVE-2017-6153
was published
May 13, 2022
ownCloud Server before 8.1.11, 8.2.x before 8.2.9, 9.0.x before 9.0.7, and 9.1.x before 9.1.3...
Moderate
Unreviewed
CVE-2017-5867
was published
May 13, 2022
A vulnerability in the detection engine reassembly of Secure Sockets Layer (SSL) packets for...
High
Unreviewed
CVE-2017-3885
was published
May 13, 2022
A vulnerability in the web user interface of Cisco IOS XE 3.1 through 3.17 could allow an...
High
Unreviewed
CVE-2017-3856
was published
May 13, 2022
A vulnerability in the TCP normalizer of Cisco Adaptive Security Appliance (ASA) Software (8.0...
Moderate
Unreviewed
CVE-2017-3793
was published
May 13, 2022
SoftCo with software V200R003C20,eSpace U1910 with software V200R003C00, V200R003C20 and...
Moderate
Unreviewed
CVE-2017-2690
was published
May 13, 2022
A persistent denial of service vulnerability in Juniper Networks NorthStar Controller Application...
Moderate
Unreviewed
CVE-2017-2333
was published
May 13, 2022
A denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to...
Moderate
Unreviewed
CVE-2017-2327
was published
May 13, 2022
A denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to...
Moderate
Unreviewed
CVE-2017-2322
was published
May 13, 2022
Improper translation table consolidation logic leads to resource exhaustion and QSEE error in...
Moderate
Unreviewed
CVE-2017-18299
was published
May 13, 2022
The Light Directory Access Protocol (LDAP) clients of Huawei TE60 with software V600R006C00,...
High
Unreviewed
CVE-2017-17290
was published
May 13, 2022
libgedit.a in GNOME gedit through 3.22.1 allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-2017-14108
was published
May 13, 2022
Pre-authorization Start Remote Process vulnerabilities in Trend Micro OfficeScan 11.0 and XG may...
High
Unreviewed
CVE-2017-14086
was published
May 13, 2022
The bio_map_user_iov and bio_unmap_user functions in block/bio.c in the Linux kernel before 4.13...
Moderate
Unreviewed
CVE-2017-12190
was published
May 13, 2022
The ReadJPEGImage function in coders/jpeg.c in GraphicsMagick 1.3.26 creates a pixel cache before...
High
Unreviewed
CVE-2017-11140
was published
May 13, 2022
The NetBSD qsort() function is recursive, and not randomized, an attacker can construct a...
Critical
Unreviewed
CVE-2017-1000378
was published
May 13, 2022
Denial of Service attack when the switch rejects to receive packets from the controller....
High
Unreviewed
CVE-2017-1000357
was published
May 13, 2022
Java out of memory error and significant increase in resource consumption. Component:...
Moderate
Unreviewed
CVE-2017-1000359
was published
May 13, 2022
A denial of service vulnerability in the Android media framework. Product: Android. Versions: 4.4...
Moderate
Unreviewed
CVE-2017-0690
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API