GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
9,971 advisories
Filter by severity
Unspecified vulnerability in the Oracle Agile Product Lifecycle Management for Process component...
Moderate
Unreviewed
CVE-2016-5504
was published
May 13, 2022
An issue was discovered in CIRCONTROL CirCarLife before 4.3. Due to the storage of multiple...
Moderate
Unreviewed
CVE-2018-16672
was published
May 13, 2022
CirCarLife Scada before 4.3 allows remote attackers to obtain sensitive information via a direct...
Critical
Unreviewed
CVE-2018-12634
was published
May 13, 2022
Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2.5, does not include the...
Moderate
Unreviewed
CVE-2014-0174
was published
May 13, 2022
kernel/auditsc.c in the Linux kernel through 3.14.5, when CONFIG_AUDITSYSCALL is enabled with...
Low
Unreviewed
CVE-2014-3917
was published
May 13, 2022
The mmc_ioctl_cdrom_read_data function in drivers/cdrom/cdrom.c in the Linux kernel through 3.10...
Low
Unreviewed
CVE-2013-2164
was published
May 13, 2022
concrete5 before 5.6.3 allows remote attackers to obtain the installation path via a direct...
Moderate
Unreviewed
CVE-2014-5107
was published
May 13, 2022
PHP Scripts Mall Rental Bike Script 2.0.3 has directory traversal via a direct request for a...
Moderate
Unreviewed
CVE-2019-7434
was published
May 13, 2022
PHP Scripts Mall Property Rental Software 2.1.4 has directory traversal via a direct request for...
Moderate
Unreviewed
CVE-2019-7429
was published
May 13, 2022
PHP Scripts Mall Image Sharing Script 1.3.4 has directory traversal via a direct request for a...
Moderate
Unreviewed
CVE-2019-7431
was published
May 13, 2022
PHP Scripts Mall Opensource Classified Ads Script 3.2.2 has directory traversal via a direct...
Moderate
Unreviewed
CVE-2019-7436
was published
May 13, 2022
Microsoft Internet Explorer 6 and 7 does not properly restrict script access to content from a (1...
Moderate
Unreviewed
CVE-2011-1245
was published
May 13, 2022
The intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in...
Low
Unreviewed
CVE-2012-2420
was published
May 13, 2022
The intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in...
Low
Unreviewed
CVE-2012-2423
was published
May 13, 2022
Microsoft Internet Explorer, when the Invisible Hand extension is enabled, uses cookies during...
Moderate
Unreviewed
CVE-2010-1852
was published
May 13, 2022
Microsoft msxml.dll, as used in Internet Explorer 8 on Windows 7, allows remote attackers to...
Moderate
Unreviewed
CVE-2011-1713
was published
May 13, 2022
Microsoft Internet Explorer 6 through 8 does not properly restrict script access to content from...
Moderate
Unreviewed
CVE-2010-3330
was published
May 13, 2022
Microsoft Internet Explorer 6 through 8 does not properly handle unspecified special characters...
Moderate
Unreviewed
CVE-2010-3325
was published
May 13, 2022
The implementation of HTML content creation in Microsoft Internet Explorer 6 through 8 does not...
Moderate
Unreviewed
CVE-2010-3327
was published
May 13, 2022
Microsoft Internet Explorer 7 through 9 does not properly create and initialize string data,...
Moderate
Unreviewed
CVE-2012-1873
was published
May 13, 2022
Microsoft Internet Explorer 6 through 9 does not block cross-domain scrolling events, which...
Moderate
Unreviewed
CVE-2012-1882
was published
May 13, 2022
The toStaticHTML API (aka the SafeHTML component) in Microsoft Internet Explorer 8 and 9,...
Moderate
Unreviewed
CVE-2012-1858
was published
May 13, 2022
A vulnerability was found in openstack-cinder releases up to and including Queens, allowing newly...
High
Unreviewed
CVE-2017-15139
was published
May 13, 2022
Ansible sensitive information disclosure
High
CVE-2018-16876
was published
for
ansible
(pip)
May 13, 2022
The image build process for the overcloud images in Red Hat OpenStack Platform 8.0 (Liberty)...
High
Unreviewed
CVE-2016-4474
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API