GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
11,575 advisories
Filter by severity
IBM WebSphere Application Server (WAS) 6.1.0.9, when the JAAS Login functionality is enabled,...
Moderate
Unreviewed
CVE-2008-7274
was published
May 17, 2022
Adobe Shockwave Player before 11.5.9.620 does not properly validate unspecified input data, which...
High
Unreviewed
CVE-2010-4193
was published
May 17, 2022
pysmb.py in system-config-printer 0.6.x and 0.7.x, as used in foomatic-gui and possibly other...
Moderate
Unreviewed
CVE-2011-2899
was published
May 17, 2022
The AgentTicketForward feature in Open Ticket Request System (OTRS) before 2.4.7 does not...
Moderate
Unreviewed
CVE-2010-4766
was published
May 17, 2022
WebKit, as used in Apple Safari before 5.0.4 and iOS before 4.3, does not properly handle...
Moderate
Unreviewed
CVE-2011-0160
was published
May 17, 2022
The i386_set_ldt system call in the kernel in Apple Mac OS X before 10.6.7 does not properly...
High
Unreviewed
CVE-2011-0182
was published
May 17, 2022
The shred_file function in logrotate.c in logrotate 3.7.9 and earlier might allow context...
Moderate
Unreviewed
CVE-2011-1154
was published
May 17, 2022
One Click Orgs before 1.2.3 allows remote authenticated users to trigger crafted SMTP traffic via...
Moderate
Unreviewed
CVE-2011-4554
was published
May 17, 2022
Multiple open redirect vulnerabilities in One Click Orgs before 1.2.3 allow (1) remote attackers...
Moderate
Unreviewed
CVE-2011-4553
was published
May 17, 2022
service.exe in Measuresoft ScadaPro 4.0.0 and earlier allows remote attackers to execute...
High
Unreviewed
CVE-2011-3496
was published
May 17, 2022
Siemens Automation License Manager (ALM) 4.0 through 5.1+SP1+Upd1 allows remote attackers to...
Moderate
Unreviewed
CVE-2011-4531
was published
May 17, 2022
Array index error in the PK font parser in the dvi-backend component in Evince 2.32 and earlier...
High
Unreviewed
CVE-2010-2640
was published
May 17, 2022
The DKIM implementation in Exim 4.7x before 4.76 permits matching for DKIM identities to apply to...
High
Unreviewed
CVE-2011-1407
was published
May 17, 2022
The server in Bcfg2 1.1.2 and earlier, and 1.2 prerelease, allows remote attackers to execute...
High
Unreviewed
CVE-2011-3211
was published
May 17, 2022
https50.ocx in IP*Works! SSL in the server in Unitronics UniOPC before 2.0.0 does not properly...
Moderate
Unreviewed
CVE-2011-5086
was published
May 17, 2022
ImageIO in Apple Safari before 5.0.6 on Windows does not properly address re-entrancy issues,...
High
Unreviewed
CVE-2011-0215
was published
May 17, 2022
The MallocLite implementation in Cisco IOS 12.0, 12.2, 15.0, 15.1, and 15.2 allows remote...
Moderate
Unreviewed
CVE-2012-1367
was published
May 17, 2022
Rekonq 0.7.0 and earlier does not use a certain font when rendering certificate fields in a...
Moderate
Unreviewed
CVE-2011-3366
was published
May 17, 2022
Cisco IOS XR before 4.2.1 on ASR 9000 series devices and CRS series devices allows remote...
High
Unreviewed
CVE-2012-2488
was published
May 17, 2022
The VPN downloader implementation in the WebLaunch feature in Cisco AnyConnect Secure Mobility...
Moderate
Unreviewed
CVE-2012-2494
was published
May 17, 2022
The GLX extension in X.Org xserver 1.7.7 allows remote authenticated users to cause a denial of...
High
Unreviewed
CVE-2010-4818
was published
May 17, 2022
The resolver in dnscache in Daniel J. Bernstein djbdns 1.05 overwrites cached server names and...
Moderate
Unreviewed
CVE-2012-1191
was published
May 17, 2022
The VPN downloader implementation in the WebLaunch feature in Cisco AnyConnect Secure Mobility...
High
Unreviewed
CVE-2012-2493
was published
May 17, 2022
WebKit in Apple Safari before 6.0 does not properly handle Cascading Style Sheets (CSS) property...
Moderate
Unreviewed
CVE-2012-3691
was published
May 17, 2022
Cisco IP Communicator 8.6 allows man-in-the-middle attackers to modify the Certificate Trust List...
Moderate
Unreviewed
CVE-2012-2490
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API