GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
915 advisories
Filter by severity
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and...
Critical
Unreviewed
CVE-2016-10492
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and...
Critical
Unreviewed
CVE-2016-10456
was published
May 14, 2022
ext/spl/spl_array.c in PHP before 5.6.26 and 7.x before 7.0.11 proceeds with SplArray...
Critical
Unreviewed
CVE-2016-7417
was published
May 14, 2022
An issue was discovered in certain Apple products. macOS before 10.13.4 is affected. The issue...
Critical
Unreviewed
CVE-2018-4105
was published
May 14, 2022
An issue was discovered in certain Apple products. macOS before 10.13.4 is affected. The issue...
Critical
Unreviewed
CVE-2018-4108
was published
May 14, 2022
In config_set_string of config.cc, it is possible to pair a second BT keyboard without user...
Critical
Unreviewed
CVE-2017-13284
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and...
Critical
Unreviewed
CVE-2015-9208
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile...
Critical
Unreviewed
CVE-2015-9151
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile...
Critical
Unreviewed
CVE-2015-9146
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile...
Critical
Unreviewed
CVE-2015-9147
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile...
Critical
Unreviewed
CVE-2015-9115
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile...
Critical
Unreviewed
CVE-2015-9116
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile...
Critical
Unreviewed
CVE-2015-9110
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile...
Critical
Unreviewed
CVE-2015-9108
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and...
Critical
Unreviewed
CVE-2014-10051
was published
May 14, 2022
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and...
Critical
Unreviewed
CVE-2015-9139
was published
May 14, 2022
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile and Snapdragon...
Critical
Unreviewed
CVE-2017-18074
was published
May 14, 2022
CA Workload Control Center before r11.4 SP6 allows remote attackers to execute arbitrary code via...
Critical
Unreviewed
CVE-2018-8954
was published
May 14, 2022
ASUS RT-AC51U, RT-AC58U, RT-AC66U, RT-AC1750, RT-ACRH13, and RT-N12 D1 routers with firmware...
Critical
Unreviewed
CVE-2018-8826
was published
May 14, 2022
A vulnerability exists in the HTTP request parser in Schneider Electric's Modicon M340, Modicon...
Critical
Unreviewed
CVE-2018-7761
was published
May 14, 2022
An issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9...
Critical
Unreviewed
CVE-2018-10578
was published
May 14, 2022
NetApp OnCommand Unified Manager for Linux versions 7.2 through 7.3 ship with the Java Management...
Critical
Unreviewed
CVE-2018-5487
was published
May 14, 2022
The (1) t1_parse_font_matrix function in type1/t1load.c, (2) cid_parse_font_matrix function in...
Critical
Unreviewed
CVE-2014-9746
was published
May 14, 2022
plugins/box/users/users.plugin.php in Monstra CMS 3.0.4 allows Login Rate Limiting Bypass via...
Critical
Unreviewed
CVE-2018-11678
was published
May 14, 2022
A Local File Inclusion vulnerability in /system/WCore/WHelper.php in Creatiwity wityCMS 0.6.2...
Critical
Unreviewed
CVE-2018-12065
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API