GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
9,975 advisories
Filter by severity
Pebble Smartwatch devices through 4.3 mishandle UUID storage, which allows attackers to read an...
Moderate
Unreviewed
CVE-2016-10702
was published
May 17, 2022
This vulnerability allows remote attackers to disclose sensitive information on vulnerable...
Moderate
Unreviewed
CVE-2017-16573
was published
May 13, 2022
This vulnerability allows remote attackers to disclose sensitive on vulnerable installations of...
Moderate
Unreviewed
CVE-2017-14818
was published
May 13, 2022
This vulnerability allows remote attackers to disclose sensitive information on vulnerable...
Moderate
Unreviewed
CVE-2017-14820
was published
May 13, 2022
This vulnerability allows remote attackers to disclose sensitive information on vulnerable...
Moderate
Unreviewed
CVE-2017-10956
was published
May 13, 2022
A vulnerability in the TLS protocol implementation of legacy Cisco ASA 5500 Series (ASA 5505,...
Moderate
Unreviewed
CVE-2017-12373
was published
May 13, 2022
INSERT ... ON CONFLICT DO UPDATE commands in PostgreSQL 10.x before 10.1, 9.6.x before 9.6.6, and...
Moderate
Unreviewed
CVE-2017-15099
was published
May 14, 2022
Invalid json_populate_recordset or jsonb_populate_recordset function calls in PostgreSQL 10.x...
High
Unreviewed
CVE-2017-15098
was published
May 14, 2022
Information disclosure through directory listing on the Cohu 3960HD allows an attacker to view...
Moderate
Unreviewed
CVE-2017-8860
was published
May 17, 2022
The user self-service tools of SAP HANA extended application services, classic user self-service,...
Moderate
Unreviewed
CVE-2017-16687
was published
May 14, 2022
BOOK WALKER for Windows Ver.1.2.9 and earlier, BOOK WALKER for Mac Ver.1.2.5 and earlier allow an...
Moderate
Unreviewed
CVE-2017-10888
was published
May 13, 2022
AltaVault OST Plug-in versions prior to 1.2.2 may allow attackers to obtain sensitive information...
Moderate
Unreviewed
CVE-2017-15517
was published
May 17, 2022
The __netlink_deliver_tap_skb function in net/netlink/af_netlink.c in the Linux kernel through 4...
Moderate
Unreviewed
CVE-2017-17449
was published
May 14, 2022
Windows kernel in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1,...
Moderate
Unreviewed
CVE-2017-11831
was published
May 17, 2022
Password file exposure in firmware in iSmartAlarm CubeOne version 2.2.4.8 and earlier allows...
Critical
Unreviewed
CVE-2017-13664
was published
May 17, 2022
NetApp Clustered Data ONTAP before 8.3.2P8 and 9.0 before P2 allow remote authenticated users to...
Moderate
Unreviewed
CVE-2017-5201
was published
May 17, 2022
There is a carry propagating bug in the x86_64 Montgomery squaring procedure in OpenSSL before 1...
Moderate
Unreviewed
CVE-2017-3736
was published
May 14, 2022
Tor Browser before 7.0.9 on macOS and Linux allows remote attackers to bypass the intended...
Moderate
Unreviewed
CVE-2017-16541
was published
May 13, 2022
This vulnerability allows remote attackers to disclose sensitive information on vulnerable...
Moderate
Unreviewed
CVE-2017-10942
was published
May 13, 2022
This vulnerability allows remote attackers to disclose sensitive information on vulnerable...
Moderate
Unreviewed
CVE-2017-10943
was published
May 13, 2022
This vulnerability allows remote attackers to disclose sensitive information on vulnerable...
Moderate
Unreviewed
CVE-2017-10944
was published
May 13, 2022
Information disclosure of .esp source code on the Cohu 3960 allows an attacker to view sensitive...
High
Unreviewed
CVE-2017-8863
was published
May 17, 2022
An issue was discovered on MOXA EDS-G512E 5.1 build 16072215 devices. Cookies can be stolen,...
Moderate
Unreviewed
CVE-2017-13702
was published
May 17, 2022
Failure to take advantage of available mitigations in credit card autofill in Google Chrome prior...
Moderate
Unreviewed
CVE-2017-5082
was published
May 14, 2022
Stop User Enumeration 1.3.8 allows user enumeration via the REST API
Moderate
Unreviewed
CVE-2017-1000226
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API