GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
11,577 advisories
Filter by severity
Citrix XenMobile Server 10.12 through RP11, 10.13 through RP6, and 10.14 through RP4 allows...
High
Unreviewed
CVE-2022-26151
was published
Apr 14, 2022
Multiple denial of service vulnerabilities exist in the cgiserver.cgi JSON command parser...
High
Unreviewed
CVE-2021-44375
was published
Apr 15, 2022
Multiple denial of service vulnerabilities exist in the cgiserver.cgi JSON command parser...
High
Unreviewed
CVE-2021-44394
was published
Apr 15, 2022
Multiple denial of service vulnerabilities exist in the cgiserver.cgi JSON command parser...
High
Unreviewed
CVE-2021-44357
was published
Apr 15, 2022
Multiple denial of service vulnerabilities exist in the cgiserver.cgi JSON command parser...
High
Unreviewed
CVE-2021-44366
was published
Apr 15, 2022
Multiple denial of service vulnerabilities exist in the cgiserver.cgi JSON command parser...
High
Unreviewed
CVE-2021-44356
was published
Apr 15, 2022
Multiple denial of service vulnerabilities exist in the cgiserver.cgi JSON command parser...
High
Unreviewed
CVE-2021-44354
was published
Apr 15, 2022
Multiple denial of service vulnerabilities exist in the cgiserver.cgi JSON command parser...
High
Unreviewed
CVE-2021-44355
was published
Apr 15, 2022
Notable before 1.9.0-beta.8 doesn't effectively prevent the opening of executable files when...
High
Unreviewed
CVE-2022-29281
was published
Apr 16, 2022
An issue was discovered in YottaDB through r1.32 and V7.0-000. A lack of input validation in...
High
Unreviewed
CVE-2021-44483
was published
Apr 16, 2022
An issue was discovered in YottaDB through r1.32 and V7.0-000. A lack of parameter validation in...
High
Unreviewed
CVE-2021-44481
was published
Apr 16, 2022
An issue was discovered in YottaDB through r1.32 and V7.0-000. A lack of input validation in...
High
Unreviewed
CVE-2021-44482
was published
Apr 16, 2022
A vulnerability in the integrated wireless access point (AP) packet processing of the Cisco 1000...
Moderate
Unreviewed
CVE-2022-20761
was published
Apr 16, 2022
A vulnerability in the IPSec decryption routine of Cisco IOS XE Software could allow an...
High
Unreviewed
CVE-2022-20679
was published
Apr 16, 2022
A vulnerability in Simple Network Management Protocol (SNMP) trap generation for wireless clients...
Moderate
Unreviewed
CVE-2022-20684
was published
Apr 16, 2022
A vulnerability in the Tool Command Language (Tcl) interpreter of Cisco IOS XE Software could...
High
Unreviewed
CVE-2022-20676
was published
Apr 16, 2022
Improper input validation vulnerability in XPLATFORM's execBrowser method can cause execute...
High
Unreviewed
CVE-2021-26626
was published
Apr 20, 2022
Snoopy 2.0.0-1 has a security hole in exec cURL
Critical
Unreviewed
CVE-2002-2444
was published
Apr 21, 2022
There is a possible tty hijacking in shadow 4.x before 4.1.5 and sudo 1.x before 1.7.4 via "su -...
High
Unreviewed
CVE-2005-4890
was published
Apr 21, 2022
SAS Drug Development (SDD) before 32DRG02 mishandles logout actions, which allows a user (who was...
High
Unreviewed
CVE-2007-6763
was published
Apr 21, 2022
The google-analyticator plugin before 5.2.1 for WordPress has insufficient HTML sanitization for...
Moderate
Unreviewed
CVE-2009-5158
was published
Apr 21, 2022
mailscanner can allow local users to prevent virus signatures from being updated
Moderate
Unreviewed
CVE-2010-3293
was published
Apr 21, 2022
Tiki Wiki CMS Groupware 5.2 has Local File Inclusion
Critical
Unreviewed
CVE-2010-4239
was published
Apr 21, 2022
qtparted has insecure library loading which may allow arbitrary code execution
Critical
Unreviewed
CVE-2010-3375
was published
Apr 21, 2022
paxtest handles temporary files insecurely
Moderate
Unreviewed
CVE-2010-3373
was published
Apr 21, 2022
ProTip!
Advisories are also available from the
GraphQL API