GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
9,975 advisories
Filter by severity
The ".encfs6.xml" configuration file in encfs before 1.7.5 allows remote attackers to access...
High
Unreviewed
CVE-2014-3462
was published
May 13, 2022
The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before...
Low
Unreviewed
CVE-2014-4027
was published
May 13, 2022
The raw_cmd_copyout function in drivers/block/floppy.c in the Linux kernel through 3.14.3 does...
Low
Unreviewed
CVE-2014-1738
was published
May 13, 2022
Mozilla Firefox before 26.0 and SeaMonkey before 2.23 on Linux allow user-assisted remote...
Moderate
Unreviewed
CVE-2013-6672
was published
May 13, 2022
An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before...
Moderate
Unreviewed
CVE-2019-9225
was published
May 13, 2022
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. There is an information disclosure...
High
Unreviewed
CVE-2019-9126
was published
May 13, 2022
An issue was discovered in /bin/goahead on D-Link DIR-823G devices with firmware 1.02B03. There...
High
Unreviewed
CVE-2019-7388
was published
May 13, 2022
An issue existed with autofill resuming after it was canceled. The issue was addressed with...
Critical
Unreviewed
CVE-2019-6206
was published
May 13, 2022
IBM BigFix Platform 9.2 and 9.5 could allow an attacker to query the relay remotely and gather...
Moderate
Unreviewed
CVE-2019-4061
was published
May 13, 2022
Data Leakage Attacks vulnerability in the web interface in McAfee Database Security prior to the...
Moderate
Unreviewed
CVE-2019-3615
was published
May 13, 2022
In macOS High Sierra before 10.13.5, a privacy issue in the handling of Open Directory records...
High
Unreviewed
CVE-2018-4217
was published
May 13, 2022
set_file_metadata in xattr.c in GNU Wget before 1.20.1 stores a file's origin URL in the user.xdg...
High
Unreviewed
CVE-2018-20483
was published
May 13, 2022
PhotoRange Photo Vault 1.2 appends the password to the URI for authorization, which makes it...
Critical
Unreviewed
CVE-2018-20371
was published
May 13, 2022
In Vignette Content Management version 6, it is possible to gain remote access to administrator...
Critical
Unreviewed
CVE-2018-18941
was published
May 13, 2022
An issue was discovered in Daniel Gultsch Conversations 2.3.4. It is possible to spoof a custom...
High
Unreviewed
CVE-2018-18467
was published
May 13, 2022
Information disclosure in the SNMP settings page in ASUSTOR ADM version 3.1.1 allows attackers to...
High
Unreviewed
CVE-2018-12318
was published
May 13, 2022
The nfs_can_extend_write function in fs/nfs/write.c in the Linux kernel before 3.13.3 relies on a...
Low
Unreviewed
CVE-2014-2038
was published
May 13, 2022
The drm_ioctl function in drivers/gpu/drm/drm_drv.c in the Direct Rendering Manager (DRM)...
Low
Unreviewed
CVE-2010-2803
was published
May 13, 2022
Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, and SeaMonkey before 2.12 do not...
Moderate
Unreviewed
CVE-2012-3976
was published
May 13, 2022
The help function in net/netfilter/nf_nat_irc.c in the Linux kernel before 3.12.8 allows remote...
Low
Unreviewed
CVE-2014-1690
was published
May 13, 2022
saned in sane-backends 1.0.25 allows remote attackers to obtain sensitive memory information via...
High
Unreviewed
CVE-2017-6318
was published
May 13, 2022
Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14...
Moderate
Unreviewed
CVE-2018-15962
was published
May 13, 2022
Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14...
High
Unreviewed
CVE-2018-15964
was published
May 13, 2022
A vulnerability in the management console of Cisco Firepower System Software could allow an...
Moderate
Unreviewed
CVE-2018-0278
was published
May 13, 2022
A vulnerability in Cisco WebEx Recording Format (WRF) Player could allow an unauthenticated,...
Moderate
Unreviewed
CVE-2018-0288
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API