GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,196 advisories
Filter by severity
The quarantine restoration function in Total Defense Anti-virus 11.5.2.28 is vulnerable to...
Moderate
Unreviewed
CVE-2019-18645
was published
May 24, 2022
Podman Symlink Vulnerability
Moderate
CVE-2019-18466
was published
for
github.com/containers/podman/v4
(Go)
May 24, 2022
Privilege escalation flaws were found in the Red Hat initialization scripts of PostgreSQL. An...
High
Unreviewed
CVE-2017-15097
was published
May 24, 2022
It was found that rpm did not properly handle RPM installations when a destination path was a...
High
Unreviewed
CVE-2017-7500
was published
May 24, 2022
An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly...
High
Unreviewed
CVE-2019-1339
was published
May 24, 2022
A denial of service vulnerability exists when Windows improperly handles hard links, aka ...
High
Unreviewed
CVE-2019-1317
was published
May 24, 2022
An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly...
High
Unreviewed
CVE-2019-1315
was published
May 24, 2022
A vulnerability in the filesystem of Cisco IOS XE Software could allow an authenticated, local...
High
Unreviewed
CVE-2019-12672
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Windows AppX Deployment Server improperly...
High
Unreviewed
CVE-2019-1253
was published
May 24, 2022
An issue was discovered in Avira Free Security Suite 10. The permissive access rights on the...
High
Unreviewed
CVE-2019-11396
was published
May 24, 2022
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with...
High
Unreviewed
CVE-2018-1634
was published
May 24, 2022
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with...
High
Unreviewed
CVE-2018-1633
was published
May 24, 2022
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with...
High
Unreviewed
CVE-2018-1632
was published
May 24, 2022
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with...
High
Unreviewed
CVE-2018-1630
was published
May 24, 2022
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with...
High
Unreviewed
CVE-2018-1631
was published
May 24, 2022
A remote code execution vulnerability exists in Microsoft Windows that could allow remote code...
High
Unreviewed
CVE-2019-1188
was published
May 24, 2022
Podman Path Traversal Vulnerability leads to arbitrary file read/write
High
CVE-2019-10152
was published
for
github.com/containers/podman
(Go)
May 24, 2022
UploaderService in SnagIT 2019.1.2 allows elevation of privilege by placing an invalid...
High
Unreviewed
CVE-2019-13382
was published
May 24, 2022
In Avast Antivirus before 19.4, a local administrator can trick the product into renaming...
Moderate
Unreviewed
CVE-2019-11230
was published
May 24, 2022
b3log Wide unauthenticated file access
High
CVE-2019-13915
was published
for
github.com/b3log/wide
(Go)
May 24, 2022
In GNU patch through 2.7.6, the following of symlinks is mishandled in certain cases other than...
Moderate
Unreviewed
CVE-2019-13636
was published
May 24, 2022
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC)...
High
Unreviewed
CVE-2019-1129
was published
May 24, 2022
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC)...
High
Unreviewed
CVE-2019-1130
was published
May 24, 2022
A vulnerability in the London Trust Media Private Internet Access (PIA) VPN Client v0.9.8 beta ...
High
Unreviewed
CVE-2019-12571
was published
May 24, 2022
A vulnerability in the London Trust Media Private Internet Access (PIA) VPN Client v82 for Linux...
High
Unreviewed
CVE-2019-12573
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API