GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,102 advisories
Filter by severity
The CGI component in Cybozu Garoon 3.1.0 through 3.7 SP3 allows remote attackers to execute...
High
Unreviewed
CVE-2014-1987
was published
May 17, 2022
Neo4J vulnerable to Cross-Site Request Forgery
High
CVE-2013-7259
was published
for
org.neo4j:neo4j
(Maven)
May 17, 2022
The management console on the Brocade Vyatta 5400 vRouter 6.4R(x), 6.6R(x), and 6.7R1 allows...
High
Unreviewed
CVE-2014-4868
was published
May 17, 2022
The Sophos Cyberoam appliances with CyberoamOS before 10.6.1 GA allows remote authenticated users...
High
Unreviewed
CVE-2014-5502
was published
May 17, 2022
gpExec in GoPro HERO 3+ allows remote attackers to execute arbitrary commands via a the (1) a1 or...
High
Unreviewed
CVE-2014-6434
was published
May 17, 2022
FUJITSU F-12C, ARROWS Tab LTE F-01D, ARROWS Kiss F-03D, and REGZA Phone T-01D for Android allows...
High
Unreviewed
CVE-2014-7253
was published
May 17, 2022
ASUS JAPAN RT-AC87U routers with firmware 3.0.0.4.378.3754 and earlier, RT-AC68U routers with...
Moderate
Unreviewed
CVE-2014-7269
was published
May 17, 2022
Network Vision IntraVue before 2.3.0a14 on Windows allows remote attackers to execute arbitrary...
High
Unreviewed
CVE-2015-0977
was published
May 17, 2022
The "RAP console" feature in ArubaOS 5.x through 6.2.x, 6.3.x before 6.3.1.15, and 6.4.x before 6...
High
Unreviewed
CVE-2015-1388
was published
May 17, 2022
The Buffalo WHR-1166DHP 1.60 and earlier, WSR-600DHP 1.60 and earlier, WHR-600D 1.60 and earlier,...
High
Unreviewed
CVE-2014-9284
was published
May 17, 2022
Webservice-DIC yoyaku_v41 allows remote attackers to execute arbitrary OS commands via...
High
Unreviewed
CVE-2015-2979
was published
May 17, 2022
The Yodobashi application 1.2.1.0 and earlier for Android allows remote attackers to execute...
Moderate
Unreviewed
CVE-2015-2980
was published
May 17, 2022
The NetWorker command processor in rrobotd.exe in the Device Manager in EMC AlphaStor 4.0 before...
High
Unreviewed
CVE-2013-0928
was published
May 17, 2022
The external SMB storage driver in ownCloud Server before 6.0.8, 7.0.x before 7.0.6, and 8.0.x...
High
Unreviewed
CVE-2015-4718
was published
May 17, 2022
icewind1991 SMB before 1.0.3 allows remote authenticated users to execute arbitrary SMB commands...
High
Unreviewed
CVE-2015-7698
was published
May 17, 2022
eventapp/lib/gcloud.rb in the ISUCON5 qualifier portal (aka eventapp) web application before 2015...
Moderate
Unreviewed
CVE-2015-5673
was published
May 17, 2022
The Web Console in Commvault Edge Server 10 R2 allows remote attackers to execute arbitrary OS...
High
Unreviewed
CVE-2015-7253
was published
May 17, 2022
TYPE-MOON Fate/stay night, Fate/hollow ataraxia, Witch on the Holy Night, and Fate/stay night +...
High
Unreviewed
CVE-2015-5672
was published
May 17, 2022
PC-EGG pWebManager before 3.3.10, and before 2.2.2 for PHP 4.x, allows remote authenticated users...
Moderate
Unreviewed
CVE-2015-7774
was published
May 17, 2022
The Management I/O (MIO) component in Cisco Firepower Extensible Operating System 1.1(1.160) on...
High
Unreviewed
CVE-2015-6370
was published
May 17, 2022
An unspecified script in the web interface in Cisco Firepower Extensible Operating System 1.1(1...
Moderate
Unreviewed
CVE-2015-6380
was published
May 17, 2022
The Data Protection extension in the VMware GUI in IBM Tivoli Storage Manager for Virtual...
Critical
Unreviewed
CVE-2015-7426
was published
May 17, 2022
KDDI HOME SPOT CUBE devices before 2 allow remote authenticated users to execute arbitrary OS...
Moderate
Unreviewed
CVE-2016-1141
was published
May 17, 2022
The Web UI in IBM Security QRadar SIEM 7.1.x before 7.1 MR2 Patch 12 allows remote authenticated...
High
Unreviewed
CVE-2015-4956
was published
May 17, 2022
baserCMS 3.0.2 through 3.0.8 allows remote authenticated users to execute arbitrary OS commands...
Moderate
Unreviewed
CVE-2015-7769
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API