GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,652
Erlang
34
GitHub Actions
26
Go
2,257
Maven
5,000+
npm
3,909
NuGet
704
pip
3,680
Pub
12
RubyGems
915
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
11,123 advisories
Filter by severity
The Session Description Protocol (SDP) implementation in Cisco TelePresence Video Communication...
High
Unreviewed
CVE-2015-0652
was published
May 17, 2022
The IPsec SA establishment process on Innominate mGuard devices with firmware 8.x before 8.1.7...
Moderate
Unreviewed
CVE-2015-3966
was published
May 17, 2022
The OSF module 7.x-3.x before 7.x-3.1 for Drupal, when the OSF Ontology and OSF Import modules...
Moderate
Unreviewed
CVE-2015-7234
was published
May 17, 2022
Schneider Electric InduSoft Web Studio before 8.0 allows remote attackers to execute arbitrary...
High
Unreviewed
CVE-2015-7375
was published
May 17, 2022
Hypervisor in Apple OS X before 10.10.3 allows local users to cause a denial of service via...
Moderate
Unreviewed
CVE-2015-1138
was published
May 17, 2022
Check_MK before 1.2.2p3 and 1.2.3x before 1.2.3i5 allows remote authenticated users to delete...
Moderate
Unreviewed
CVE-2014-2332
was published
May 17, 2022
The Common Flow Table (CFT) feature in Cisco IOS XE 3.6 and 3.7 before 3.7.1S, 3.8 before 3.8.0S,...
High
Unreviewed
CVE-2015-0639
was published
May 17, 2022
The DHCP implementation in the PowerOn Auto Provisioning (POAP) feature in Cisco NX-OS does not...
High
Unreviewed
CVE-2015-0658
was published
May 17, 2022
The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 12.2, 12.4, 15.0, 15.2,...
High
Unreviewed
CVE-2015-0637
was published
May 17, 2022
The virtualization layer in Cisco ASA FirePOWER Software before 5.3.1.2 and 5.4.x before 5.4.0.1...
High
Unreviewed
CVE-2015-0678
was published
May 17, 2022
Cisco IOS XE before 3.7.5S on ASR 1000 devices does not properly handle route adjacencies, which...
High
Unreviewed
CVE-2015-0685
was published
May 17, 2022
Securifi Almond devices with firmware before AL1-R201EXP10-L304-W34 and Almond-2015 devices with...
Moderate
Unreviewed
CVE-2015-2917
was published
May 17, 2022
The files_external app in ownCloud Server before 7.0.9, 8.0.x before 8.0.7, and 8.1.x before 8.1...
High
Unreviewed
CVE-2015-7699
was published
May 17, 2022
The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 15.4S and 15.4(3)S...
Moderate
Unreviewed
CVE-2015-0669
was published
May 17, 2022
WebKit, as used in Apple iOS before 8.3 and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x...
Moderate
Unreviewed
CVE-2015-1126
was published
May 17, 2022
The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 12.2, 12.4, 15.0, 15.2,...
High
Unreviewed
CVE-2015-0635
was published
May 17, 2022
Cisco IOS XR allows remote attackers to cause a denial of service (RSVP process reload) via a...
Moderate
Unreviewed
CVE-2015-0657
was published
May 17, 2022
The Juniper SRX Series devices with Junos 11.4 before 11.4R12-S4, 12.1X44 before 12.1X44-D40, 12...
Moderate
Unreviewed
CVE-2014-3825
was published
May 17, 2022
The File Bookmark component in Apple OS X before 10.11.1 allows local users to cause a denial of...
Low
Unreviewed
CVE-2015-6987
was published
May 17, 2022
Simple Streams (simplestreams) does not properly verify the GPG signatures of disk image files,...
Moderate
Unreviewed
CVE-2015-1337
was published
May 17, 2022
ProcessFileUpload.jsp in SolarWinds Storage Manager before 6.2 allows remote attackers to upload...
High
Unreviewed
CVE-2015-7838
was published
May 17, 2022
libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code...
High
Unreviewed
CVE-2015-6598
was published
May 17, 2022
IBM Cognos Disclosure Management (CDM) 10.1.x and 10.2.x before 10.2.4 IF10 allows man-in-the...
High
Unreviewed
CVE-2015-5014
was published
May 17, 2022
The OpenSSLX509Certificate class in org/conscrypt/OpenSSLX509Certificate.java in Android before 5...
High
Unreviewed
CVE-2015-3837
was published
May 17, 2022
The Flow Collector in IBM Security QRadar QFLOW 7.1.x before 7.1 MR2 Patch 11 IF3 and 7.2.x...
Low
Unreviewed
CVE-2015-5044
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API