GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
11,563 advisories
Filter by severity
RPM before 4.9.1.3 does not properly validate region tags, which allows remote attackers to cause...
Moderate
Unreviewed
CVE-2012-0060
was published
May 4, 2022
wiretap/iptrace.c in Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 allows remote attackers...
Moderate
Unreviewed
CVE-2012-0067
was published
May 4, 2022
Red Hat JBoss Operations Network (JON) before 2.4.2 and 3.0.x before 3.0.1 does not check the JON...
Moderate
Unreviewed
CVE-2012-0052
was published
May 4, 2022
The dissect_packet function in epan/packet.c in Wireshark 1.4.x before 1.4.11 and 1.6.x before 1...
Moderate
Unreviewed
CVE-2012-0041
was published
May 4, 2022
The log_cookie function in mod_log_config.c in the mod_log_config module in the Apache HTTP...
Low
Unreviewed
CVE-2012-0021
was published
May 4, 2022
Microsoft Visio Viewer 2010 Gold and SP1 does not properly validate attributes in Visio files,...
High
Unreviewed
CVE-2012-0018
was published
May 4, 2022
A vulnerability in the remote access SSL VPN features of Cisco Adaptive Security Appliance (ASA)...
High
Unreviewed
CVE-2022-20715
was published
May 4, 2022
A vulnerability in the web services interface for remote access VPN features of Cisco Adaptive...
High
Unreviewed
CVE-2022-20745
was published
May 4, 2022
A vulnerability in the input protection mechanisms of Cisco Firepower Management Center (FMC)...
Moderate
Unreviewed
CVE-2022-20744
was published
May 4, 2022
Improper input validation in Settings prior to SMR-May-2022 Release 1 allows attackers to launch...
High
Unreviewed
CVE-2022-28781
was published
May 4, 2022
Improper validation of removing package name in Galaxy Themes prior to SMR May-2022 Release 1...
High
Unreviewed
CVE-2022-28783
was published
May 4, 2022
Improper input validation vulnerability in InstallAgent in Galaxy Store prior to version 4.5.41.8...
Moderate
Unreviewed
CVE-2022-28791
was published
May 4, 2022
Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, does not...
Moderate
Unreviewed
CVE-2011-0051
was published
May 3, 2022
The server in Microsoft Active Directory on Windows Server 2003 SP2 does not properly handle an...
Moderate
Unreviewed
CVE-2011-0040
was published
May 3, 2022
SBE.dll in the Stream Buffer Engine in Windows Media Player and Windows Media Center in Microsoft...
High
Unreviewed
CVE-2011-0042
was published
May 3, 2022
The OpenType Compact Font Format (CFF) driver in Microsoft Windows XP SP2 and SP3, Windows Server...
High
Unreviewed
CVE-2011-0033
was published
May 3, 2022
Microsoft Malware Protection Engine before 1.1.6603.0, as used in Microsoft Malicious Software...
High
Unreviewed
CVE-2011-0037
was published
May 3, 2022
IcedTea 1.7 before 1.7.8, 1.8 before 1.8.5, and 1.9 before 1.9.5 does not properly verify...
Moderate
Unreviewed
CVE-2011-0025
was published
May 3, 2022
Microsoft Data Access Components (MDAC) 2.8 SP1 and SP2, and Windows Data Access Components (WDAC...
High
Unreviewed
CVE-2011-0027
was published
May 3, 2022
Tor before 0.2.1.29 and 0.2.2.x before 0.2.2.21-alpha does not properly check the amount of...
Moderate
Unreviewed
CVE-2011-0015
was published
May 3, 2022
The email function in manage_sql.c in OpenVAS Manager 1.0.x through 1.0.3 and 2.0.x through 2...
High
Unreviewed
CVE-2011-0018
was published
May 3, 2022
slapd (aka ns-slapd) in 389 Directory Server 1.2.7.5 (aka Red Hat Directory Server 8.2.x or...
High
Unreviewed
CVE-2011-0019
was published
May 3, 2022
MediaWiki before 1.16.1, when user or site JavaScript or CSS is enabled, allows remote attackers...
Moderate
Unreviewed
CVE-2011-0003
was published
May 3, 2022
ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and...
Moderate
Unreviewed
CVE-2010-0097
was published
May 3, 2022
The Common Code Infrastructure component in IBM DB2 9.5 before FP5 and 9.7 before FP1 does not...
Moderate
Unreviewed
CVE-2009-4327
was published
May 3, 2022
ProTip!
Advisories are also available from the
GraphQL API