GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
6,772 advisories
Filter by severity
The console in IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2...
Moderate
Unreviewed
CVE-2013-0481
was published
May 5, 2022
IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote...
Moderate
Unreviewed
CVE-2013-0463
was published
May 5, 2022
Django Data leakage via admin history log
Moderate
CVE-2013-0305
was published
for
Django
(pip)
May 5, 2022
OpenStack Glance logs user name and password in cleartext
Moderate
CVE-2013-0212
was published
for
glance
(pip)
May 5, 2022
The external node classifier (ENC) API in Foreman before 1.1 allows remote attackers to obtain...
Moderate
Unreviewed
CVE-2013-0174
was published
May 5, 2022
Outlook in Microsoft Office for Mac 2008 before 12.3.6 and Office for Mac 2011 before 14.3.2...
Moderate
Unreviewed
CVE-2013-0095
was published
May 5, 2022
Microsoft Internet Explorer 6 through 9 does not properly perform auto-selection of the Shift JIS...
Moderate
Unreviewed
CVE-2013-0015
was published
May 5, 2022
The Windows Forms (aka WinForms) component in Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2,...
Moderate
Unreviewed
CVE-2013-0001
was published
May 5, 2022
Kernel/Modules/AgentTicketWatcher.pm in Open Ticket Request System (OTRS) 3.0.x before 3.0.21, 3...
Moderate
Unreviewed
CVE-2013-4088
was published
May 5, 2022
The HTTPS protocol, as used in unspecified web applications, can encrypt compressed data without...
Moderate
Unreviewed
CVE-2013-3587
was published
May 5, 2022
Kernel/Modules/AgentTicketPhone.pm in Open Ticket Request System (OTRS) 3.0.x before 3.0.20, 3.1...
Moderate
Unreviewed
CVE-2013-3551
was published
May 5, 2022
The gpg_ctx_add_recipient function in camel/camel-gpg-context.c in GNOME Evolution 3.8.4 and...
Moderate
Unreviewed
CVE-2013-4166
was published
May 5, 2022
An Information Disclosure vulnerability exists due to insufficient validation of authentication...
Moderate
Unreviewed
CVE-2013-1602
was published
May 5, 2022
An Information Disclosure vulnerability exists due to a failure to restrict access on the lums...
Moderate
Unreviewed
CVE-2013-1601
was published
May 5, 2022
Karotz API 12.07.19.00: Session Token Information Disclosure
Moderate
Unreviewed
CVE-2013-4868
was published
May 5, 2022
RHUI (Red Hat Update Infrastructure) 2.1.3 has world readable PKI entitlement certificates
Moderate
Unreviewed
CVE-2013-4518
was published
May 5, 2022
Information Exposure Through Query Strings in GET Request vulnerability in LMM API of Secomea...
Moderate
Unreviewed
CVE-2022-25787
was published
May 5, 2022
A vulnerability in Cisco SD-WAN vManage Software could allow an authenticated, local attacker to...
Moderate
Unreviewed
CVE-2022-20734
was published
May 5, 2022
The SVG Filters implementation in Mozilla Firefox before 3.6.28 and 4.x through 10.0, Firefox ESR...
Moderate
Unreviewed
CVE-2012-0456
was published
May 4, 2022
Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and SeaMonkey before 2.7 do not...
Moderate
Unreviewed
CVE-2012-0447
was published
May 4, 2022
The install-chef-suse.sh script shipped with crowbar before 2012-10-02 is creating files...
Moderate
Unreviewed
CVE-2012-0433
was published
May 4, 2022
Janetter before 3.3.0.0 (aka 3.3.0) allows remote attackers to obtain session information for...
Moderate
Unreviewed
CVE-2012-0328
was published
May 4, 2022
The Cookpad 1.5.16 and earlier and Cookpad Noseru 1.1.1 and earlier applications for Android do...
Moderate
Unreviewed
CVE-2012-0316
was published
May 4, 2022
monitor/index.php in op5 Monitor and op5 Appliance before 5.5.1 allows remote authenticated users...
Moderate
Unreviewed
CVE-2012-0263
was published
May 4, 2022
Advantech/BroadWin WebAccess 7.0 and earlier allows remote attackers to obtain sensitive...
Moderate
Unreviewed
CVE-2012-0236
was published
May 4, 2022
ProTip!
Advisories are also available from the
GraphQL API