GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,652
Erlang
34
GitHub Actions
26
Go
2,257
Maven
5,000+
npm
3,909
NuGet
704
pip
3,680
Pub
12
RubyGems
915
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
11,123 advisories
Filter by severity
The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 12.2, 12.4, 15.0, 15.2,...
High
Unreviewed
CVE-2015-0636
was published
May 17, 2022
Xen, possibly before 4.0.2, allows local 64-bit PV guests to cause a denial of service (host...
Moderate
Unreviewed
CVE-2011-1166
was published
May 17, 2022
The SNMPv2 implementation in Cisco IOS XR allows remote authenticated users to cause a denial of...
Moderate
Unreviewed
CVE-2015-0661
was published
May 17, 2022
The SQL interface in SAP HANA DB 1.00.73.00.389160 (NewDB100_REL) allows remote attackers to...
High
Unreviewed
CVE-2015-7994
was published
May 17, 2022
Huawei USG5500, USG2100, USG2200, and USG5100 unified security gateways with software before...
High
Unreviewed
CVE-2015-8084
was published
May 17, 2022
WebKit in Apple Safari before 6.1.5 and 7.x before 7.0.5 allows user-assisted remote attackers to...
Moderate
Unreviewed
CVE-2014-1369
was published
May 17, 2022
The web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000...
Moderate
Unreviewed
CVE-2015-6374
was published
May 17, 2022
SAP HANA Database 1.00 SPS10 and earlier do not require authentication, which allows remote...
High
Unreviewed
CVE-2015-7828
was published
May 17, 2022
A .desktop file in the Debian openjdk-7 package 7u79-2.5.5-1~deb8u1 includes a MIME type...
High
Unreviewed
CVE-2014-8873
was published
May 17, 2022
Springboard in Apple iOS before 8.1.3 does not properly validate signatures when determining...
Moderate
Unreviewed
CVE-2014-4494
was published
May 17, 2022
The TACACS+ command-authorization implementation in Cisco NX-OS allows local users to cause a...
Moderate
Unreviewed
CVE-2014-8013
was published
May 17, 2022
Dolibarr ERP/CRM 3.3.1 does not properly validate user input in viewimage.php and barcode.lib.php...
Critical
Unreviewed
CVE-2013-2093
was published
May 5, 2022
The Extended Application Services (aka XS or XS Engine) in SAP HANA DB 1.00.73.00.389160 ...
High
Unreviewed
CVE-2015-7993
was published
May 17, 2022
The ping functionality in cgi-bin/diagnostic.cgi on Seowon Intech SWC-9100 routers allows remote...
High
Unreviewed
CVE-2013-7179
was published
May 17, 2022
The exception handling mechanism in the CLI Module in Huawei eSpace U1910, U1911, U1930, U1960,...
Moderate
Unreviewed
CVE-2015-7845
was published
May 17, 2022
The USB driver in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000...
Moderate
Unreviewed
CVE-2015-6369
was published
May 17, 2022
ASUS Japan WL-330NUL devices with firmware before 3.0.0.42 allow remote attackers to cause a...
Moderate
Unreviewed
CVE-2015-7789
was published
May 17, 2022
WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, does not properly interpret...
Moderate
Unreviewed
CVE-2014-1346
was published
May 17, 2022
The image-upgrade implementation on Cisco Desktop Collaboration Experience (aka Collaboration...
High
Unreviewed
CVE-2015-0584
was published
May 17, 2022
The administrative web interface on Cisco DPC3939 (XB3) devices with firmware 121109aCMCST allows...
Moderate
Unreviewed
CVE-2015-6361
was published
May 17, 2022
AFP Workbench Viewer in IBM i Access 7.1 on Windows allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2015-7416
was published
May 17, 2022
The Joint Photographic Experts Group Processing Unit (JPU) driver in Huawei ALE smartphones with...
High
Unreviewed
CVE-2015-8225
was published
May 17, 2022
The Joint Photographic Experts Group Processing Unit (JPU) driver in Huawei ALE smartphones with...
High
Unreviewed
CVE-2015-8226
was published
May 17, 2022
Juniper ScreenOS before 6.3.0r21, when ssh-pka is configured and enabled, allows remote attackers...
High
Unreviewed
CVE-2015-7754
was published
May 17, 2022
The web GUI on Cisco Small Business 500 devices 1.2.0.92 allows remote attackers to cause a...
High
Unreviewed
CVE-2016-1303
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API