GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
6,776 advisories
Filter by severity
Google Chrome before 10.0.648.127 allows remote attackers to bypass the Same Origin Policy via...
Moderate
Unreviewed
CVE-2011-1187
was published
May 13, 2022
IBM SAN Volume Controller, IBM Storwize, IBM Spectrum Virtualize and IBM FlashSystem products ( 6...
Moderate
Unreviewed
CVE-2018-1465
was published
May 13, 2022
The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in...
Moderate
Unreviewed
CVE-2011-1202
was published
May 13, 2022
The FromDocToPDF extension before 13.611.13.2303 for Chrome allows remote attackers to discover...
Moderate
Unreviewed
CVE-2018-10178
was published
May 13, 2022
Yandex Browser for iOS before 16.10.0.2357 does not properly restrict processing of facetime://...
Moderate
Unreviewed
CVE-2016-8507
was published
May 13, 2022
An information disclosure vulnerability exists where certain modes of the search function in...
Moderate
Unreviewed
CVE-2018-8580
was published
May 13, 2022
Pulse Secure Virtual Traffic Manager 9.9 versions prior to 9.9r2 and 10.4r1 allow a remote...
Moderate
Unreviewed
CVE-2018-20307
was published
May 13, 2022
Liferay Portal Community Edition (CE) 6.x before 6.0.6 GA, when Apache Tomcat is used, allows...
Moderate
Unreviewed
CVE-2011-1502
was published
May 13, 2022
net/packet/af_packet.c in the Linux kernel before 2.6.39.3 does not properly restrict user-space...
Moderate
Unreviewed
CVE-2011-2898
was published
May 13, 2022
The econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.39 on the...
Moderate
Unreviewed
CVE-2011-1173
was published
May 13, 2022
Google Chrome before 6.0.472.59 does not prompt the user before granting access to the extension...
Moderate
Unreviewed
CVE-2010-3417
was published
May 13, 2022
Wekan version 1.04.0 contains a Email / Username Enumeration vulnerability in Register' and ...
Moderate
Unreviewed
CVE-2018-1000549
was published
May 13, 2022
The autosuggest feature in the Omnibox implementation in Google Chrome before 5.0.375.127 does...
Moderate
Unreviewed
CVE-2010-3118
was published
May 13, 2022
The XBL.__proto__.toString implementation in Mozilla Firefox before 18.0, Firefox ESR 10.x before...
Moderate
Unreviewed
CVE-2013-0748
was published
May 13, 2022
WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 6.0.472...
Moderate
Unreviewed
CVE-2010-3259
was published
May 13, 2022
The ptrace_setxregs function in arch/xtensa/kernel/ptrace.c in the Linux kernel before 3.1 does...
Moderate
Unreviewed
CVE-2011-2707
was published
May 13, 2022
The xfs_ioc_fsgetxattr function in fs/xfs/linux-2.6/xfs_ioctl.c in the Linux kernel before 2.6.36...
Moderate
Unreviewed
CVE-2010-3078
was published
May 13, 2022
The proc filesystem implementation in the Linux kernel 2.6.37 and earlier does not restrict...
Moderate
Unreviewed
CVE-2011-1020
was published
May 13, 2022
The XrayWrapper implementation in Mozilla Firefox before 17.0, Thunderbird before 17.0, and...
Moderate
Unreviewed
CVE-2012-4208
was published
May 13, 2022
Integer overflow in the btrfs_ioctl_clone function in fs/btrfs/ioctl.c in the Linux kernel before...
Moderate
Unreviewed
CVE-2010-2538
was published
May 13, 2022
IBM SAN Volume Controller, IBM Storwize, IBM Spectrum Virtualize and IBM FlashSystem products ( 6...
Moderate
Unreviewed
CVE-2018-1464
was published
May 13, 2022
Mozilla Firefox before 26.0 and SeaMonkey before 2.23 on Linux allow user-assisted remote...
Moderate
Unreviewed
CVE-2013-6672
was published
May 13, 2022
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before...
Moderate
Unreviewed
CVE-2019-9225
was published
May 13, 2022
IBM BigFix Platform 9.2 and 9.5 could allow an attacker to query the relay remotely and gather...
Moderate
Unreviewed
CVE-2019-4061
was published
May 13, 2022
Data Leakage Attacks vulnerability in the web interface in McAfee Database Security prior to the...
Moderate
Unreviewed
CVE-2019-3615
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API