GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
2,000
Maven
5,000+
npm
3,711
NuGet
661
pip
3,383
Pub
11
RubyGems
885
Rust
849
Swift
36
Unreviewed advisories
All unreviewed
5,000+
172 advisories
Filter by severity
Perdition before 2.2 may have weak security when handling outbound connections, caused by an...
Moderate
Unreviewed
CVE-2013-4584
was published
May 5, 2022
A vulnerability in the detection engine of Cisco Firepower Threat Defense Software could allow an...
Moderate
Unreviewed
CVE-2019-1691
was published
May 13, 2022
A vulnerability in SonicWall SonicOS and SonicOSv, allow authenticated read-only admin to leave...
Moderate
Unreviewed
CVE-2019-7474
was published
May 13, 2022
A vulnerability in the netconf interface of Cisco IOS XR Software could allow an unauthenticated,...
Moderate
Unreviewed
CVE-2018-0286
was published
May 13, 2022
Cloud Foundry Loggregator, versions 89.x prior to 89.5 or 96.x prior to 96.1 or 99.x prior to 99...
Moderate
Unreviewed
CVE-2018-1269
was published
May 13, 2022
IBM DataPower Gateways 7.1, 7.2, 7.5, 7.5.1, 7.5.2, 7.6, and 7.7 and IBM MQ Appliance are...
Moderate
Unreviewed
CVE-2018-1677
was published
May 13, 2022
A vulnerability in the Secure Sockets Layer (SSL) Engine of Cisco Firepower System Software could...
Moderate
Unreviewed
CVE-2018-0272
was published
May 13, 2022
Under specific 802.11 network conditions, a partial re-association of the Philips IntelliVue MX40...
Moderate
Unreviewed
CVE-2017-9657
was published
May 13, 2022
Certain 802.11 network management messages have been determined to invoke wireless access point...
Moderate
Unreviewed
CVE-2017-9658
was published
May 13, 2022
A vulnerability in the detection engine that handles Secure Sockets Layer (SSL) packets for Cisco...
Moderate
Unreviewed
CVE-2017-3887
was published
May 13, 2022
A vulnerability in SMART-SSL Accelerator functionality for Cisco Wide Area Application Services ...
Moderate
Unreviewed
CVE-2017-6628
was published
May 13, 2022
Bento4 v1.6.0.0 was discovered to contain a segmentation fault via the component /x86_64...
Moderate
Unreviewed
CVE-2022-29017
was published
May 17, 2022
Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2014-1943
was published
May 17, 2022
A vulnerability has been identified in SIMATIC PCS 7 V8.0 and earlier (All versions), SIMATIC PCS...
Moderate
Unreviewed
CVE-2019-10917
was published
May 24, 2022
Zcashd in Zcash before 2.0.7-3 allows discovery of the IP address of a full node that owns a...
Moderate
Unreviewed
CVE-2019-16930
was published
May 24, 2022
A vulnerability in the Secure Sockets Layer (SSL) VPN feature of Cisco Adaptive Security...
Moderate
Unreviewed
CVE-2019-12677
was published
May 24, 2022
SSL-Proxy feature on SRX devices fails to handle a hardware resource limitation which can be...
Moderate
Unreviewed
CVE-2019-0051
was published
May 24, 2022
A CWE-248: Uncaught Exception vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA...
Moderate
Unreviewed
CVE-2019-6844
was published
May 24, 2022
A CWE-248: Uncaught Exception vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA...
Moderate
Unreviewed
CVE-2019-6843
was published
May 24, 2022
A CWE-248: Uncaught Exception vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA...
Moderate
Unreviewed
CVE-2019-6841
was published
May 24, 2022
A CWE-248: Uncaught Exception vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA...
Moderate
Unreviewed
CVE-2019-6847
was published
May 24, 2022
A CWE-248: Uncaught Exception vulnerability exists in Modicon M580, Modicon M340, Modicon BMxCRA...
Moderate
Unreviewed
CVE-2019-6842
was published
May 24, 2022
An issue was discovered in the Currency Switcher addon before 2.11.2 for WooCommerce if a user...
Moderate
Unreviewed
CVE-2019-18668
was published
May 24, 2022
A flaw was found in the Ceph RGW configuration with Beast as the front end handling client...
Moderate
Unreviewed
CVE-2019-10222
was published
May 24, 2022
Unhandled exception in firmware for Intel(R) Ethernet 700 Series Controllers before version 7.0...
Moderate
Unreviewed
CVE-2019-0144
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API