GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,304 advisories
Filter by severity
In SAP Solution Manager 7.20, the role SAP_BPO_CONFIG gives the Business Process Operations (BPO)...
High
Unreviewed
CVE-2018-2361
was published
May 13, 2022
In Webgalamb through 7.0, system/ajax.php functionality is supposed to be available only to the...
Critical
Unreviewed
CVE-2018-19515
was published
May 13, 2022
The REST API component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports...
Critical
Unreviewed
CVE-2018-18815
was published
May 13, 2022
An issue was discovered in Joomla! before 3.8.13. Inadequate checks on the tags search fields can...
Moderate
Unreviewed
CVE-2018-17857
was published
May 13, 2022
Incorrect enforcement of authorization checks in eDirectory prior to 9.1 SP2
High
Unreviewed
CVE-2018-17950
was published
May 13, 2022
An issue was discovered in the Linux kernel before 4.8. Incorrect access checking in overlayfs...
Moderate
Unreviewed
CVE-2018-16597
was published
May 13, 2022
The Dell OpenManage Network Manager virtual appliance versions prior to 6.5.3 contain an improper...
High
Unreviewed
CVE-2018-15767
was published
May 13, 2022
Inova Partner 5.0.5-RELEASE, Build 0510-0906 and earlier allows authenticated users authorization...
Moderate
Unreviewed
CVE-2018-15693
was published
May 13, 2022
Inova Partner 5.0.5-RELEASE, Build 0510-0906 and earlier allows authenticated users authorization...
Moderate
Unreviewed
CVE-2018-15692
was published
May 13, 2022
An issue was discovered in Xen through 4.11.x. The DEBUGCTL MSR contains several debugging...
Moderate
Unreviewed
CVE-2018-15468
was published
May 13, 2022
Improper Authorization vulnerability in QTS 4.3.5 build 20181013, QTS 4.3.4 build 20181008, QTS 4...
High
Unreviewed
CVE-2018-14748
was published
May 13, 2022
Incorrect access control on ajaxdata.php in TerraMaster TOS version 3.1.03 allows attackers to...
High
Unreviewed
CVE-2018-13356
was published
May 13, 2022
Incorrect access control in nasapi in Buffalo TS5600D1206 version 3.61-0.10 allows attackers to...
Critical
Unreviewed
CVE-2018-13324
was published
May 13, 2022
All ADB broadband gateways / routers based on the Epicentro platform are affected by an...
High
Unreviewed
CVE-2018-13109
was published
May 13, 2022
Apps Manager included in Pivotal Application Service, versions 1.12.x prior to 1.12.22, 2.0.x...
Moderate
Unreviewed
CVE-2018-1278
was published
May 13, 2022
WebExtensions bundled with embedded experiments were not correctly checked for proper...
Critical
Unreviewed
CVE-2018-12369
was published
May 13, 2022
An issue was discovered on D-Link DIR-890L with firmware 1.21B02beta01 and earlier, DIR-885L/R...
Moderate
Unreviewed
CVE-2018-12103
was published
May 13, 2022
The 'systemui/settings_network.php' and 'systemui/settings_patching.php' scripts in the Quest...
Moderate
Unreviewed
CVE-2018-11142
was published
May 13, 2022
An issue was discovered in Vaultize Enterprise File Sharing 17.05.31. There is improper...
Moderate
Unreviewed
CVE-2018-10212
was published
May 13, 2022
OpenFlow version 1.0 onwards contains a Denial of Service and Improper authorization...
Critical
Unreviewed
CVE-2018-1000155
was published
May 13, 2022
** DISPUTED ** An issue was discovered in SMA Solar Technology products. A secondary...
Critical
Unreviewed
CVE-2017-9855
was published
May 13, 2022
An Improper Authorization issue was discovered in OSIsoft PI Integrator for Business Analytics...
Critical
Unreviewed
CVE-2017-9653
was published
May 13, 2022
BigTree CMS through 4.2.18 does not prevent a user from deleting their own account. This could...
Moderate
Unreviewed
CVE-2017-9378
was published
May 13, 2022
Atlassian Bamboo 5.x before 5.15.7 and 6.x before 6.0.1 did not correctly check if a user...
High
Unreviewed
CVE-2017-8907
was published
May 13, 2022
Windows Error Reporting (WER) in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1,...
High
Unreviewed
CVE-2017-8633
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API