GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
9,967 advisories
Filter by severity
Microsoft Internet Explorer 9 through 11 allow remote attackers to obtain sensitive information...
Moderate
Unreviewed
CVE-2017-0059
was published
May 17, 2022
An issue was discovered on NETGEAR R8500, R8300, R7000, R6400, R7300, R7100LG, R6300v2,...
High
Unreviewed
CVE-2017-5521
was published
May 17, 2022
The Universal Worklist Configuration in SAP NetWeaver AS JAVA 7.4 allows remote attackers to...
Moderate
Unreviewed
CVE-2016-2388
was published
May 13, 2022
The PDF reader in Mozilla Firefox before 39.0.3, Firefox ESR 38.x before 38.1.1, and Firefox OS...
Moderate
Unreviewed
CVE-2015-4495
was published
May 14, 2022
Microsoft Internet Explorer 9 through 11 allows remote attackers to determine the existence of...
Moderate
Unreviewed
CVE-2016-0162
was published
May 14, 2022
Windows Kernel Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2021-31955
was published
May 24, 2022
An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes...
Moderate
Unreviewed
CVE-2021-25369
was published
May 24, 2022
Advance configuration exposing Information Leakage vulnerability in Micro Focus Access Manager...
High
Unreviewed
CVE-2021-22506
was published
May 24, 2022
A Default Configuration vulnerability in FortiOS may allow an unauthenticated attacker on the...
Moderate
Unreviewed
CVE-2019-5591
was published
May 24, 2022
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software...
Moderate
Unreviewed
CVE-2020-3259
was published
May 24, 2022
The Spring web flows of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports...
High
Unreviewed
CVE-2018-5430
was published
May 13, 2022
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7...
Moderate
Unreviewed
CVE-2017-0147
was published
May 14, 2022
The kernel in Apple iOS before 9.3.5 allows attackers to obtain sensitive information from memory...
High
Unreviewed
CVE-2016-4655
was published
May 14, 2022
Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to obtain...
Low
Unreviewed
CVE-2016-3351
was published
May 14, 2022
Microsoft Internet Explorer 9 through 11 and the Internet Messaging API in Windows Vista SP2,...
Moderate
Unreviewed
CVE-2016-3298
was published
May 14, 2022
The server IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.6, IOS XE...
High
Unreviewed
CVE-2016-6415
was published
May 13, 2022
Mattermost Server: initial_load API exposes unnecessary information
High
CVE-2016-11066
was published
for
github.com/mattermost/mattermost-server
(Go)
May 24, 2022
The incomplete verification mechanism in the AutoBizLine com.mysecondline.app 1.2.91 allows...
High
Unreviewed
CVE-2025-61220
was published
Oct 21, 2025
An unauthenticated Local File Inclusion (LFI) vulnerability in D-Link DSR series routers allows...
Moderate
Unreviewed
CVE-2025-60344
was published
Oct 21, 2025
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an...
Moderate
Unreviewed
CVE-2025-59214
was published
Oct 14, 2025
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an...
High
Unreviewed
CVE-2025-50154
was published
Aug 12, 2025
Exposure of Sensitive Information to an Unauthorized Actor, Exposure of Sensitive System...
High
Unreviewed
CVE-2025-11151
was published
Oct 21, 2025
Zohocorp ManageEngine Applications Manager versions 176800 and below are vulnerable to...
Moderate
Unreviewed
CVE-2025-6239
was published
Oct 21, 2025
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in The Wikimedia...
Moderate
Unreviewed
CVE-2025-62699
was published
Oct 21, 2025
A flaw has been found in Das Parking Management System 停车场管理系统 6.2.0. Affected is an unknown...
Moderate
Unreviewed
CVE-2025-9843
was published
Oct 20, 2025
ProTip!
Advisories are also available from the
GraphQL API