GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,997 advisories
Filter by severity
IBM WebSphere Commerce 6.x through 6.0.0.11, 7.x through 7.0.0.9, and 8.x before 8.0.0.3 allows...
Moderate
Unreviewed
CVE-2016-0208
was published
May 13, 2022
A vulnerability has been identified in IEC 61850 system configurator (All versions < V5.80),...
High
Unreviewed
CVE-2018-4858
was published
May 13, 2022
** DISPUTED ** An issue was discovered in SMA Solar Technology products. A secondary...
Critical
Unreviewed
CVE-2017-9855
was published
May 13, 2022
HP Operations Manager i Management Pack 1.x before 1.01 for SAP allows local users to execute OS...
Moderate
Unreviewed
CVE-2015-2107
was published
May 13, 2022
A captured MAC/device ID of an iTrack Easy can be registered under multiple user accounts...
Moderate
Unreviewed
CVE-2016-6543
was published
May 13, 2022
OSIsoft PI System software (Applications using PI Asset Framework (AF) Client versions prior to...
Moderate
Unreviewed
CVE-2016-8365
was published
May 13, 2022
Nextcloud Server before 9.0.52 & ownCloud Server before 9.0.4 are not properly verifying edit...
Moderate
Unreviewed
CVE-2016-9461
was published
May 13, 2022
An issue was discovered in Eaton xComfort Ethernet Communication Interface (ECI) Versions 1.07...
High
Unreviewed
CVE-2016-9368
was published
May 13, 2022
Nextcloud Server before 9.0.54 and 10.0.1 & ownCloud Server before 9.0.6 and 9.1.2 suffer from...
Moderate
Unreviewed
CVE-2016-9467
was published
May 13, 2022
Nextcloud Server before 9.0.54 and 10.0.1 & ownCloud Server before 9.0.6 and 9.1.2 suffer from...
Moderate
Unreviewed
CVE-2016-9468
was published
May 13, 2022
Nextcloud Server before 9.0.52 & ownCloud Server before 9.0.4 are not properly verifying restore...
Moderate
Unreviewed
CVE-2016-9462
was published
May 13, 2022
A regression was found in the Red Hat Enterprise Linux 6.9 version of httpd 2.2.15-60, causing...
Moderate
Unreviewed
CVE-2017-12171
was published
May 13, 2022
A flaw was found in the CloudForms account configuration when using VMware. By default, a shared...
High
Unreviewed
CVE-2017-12191
was published
May 13, 2022
The dialog for creating cloud volumes (cinder provider) in CloudForms does not filter cloud...
Moderate
Unreviewed
CVE-2017-7497
was published
May 13, 2022
A vulnerability in Cisco Webex Teams, formerly Cisco Spark, could allow an authenticated, remote...
High
Unreviewed
CVE-2018-0436
was published
May 13, 2022
Medtronic N'Vision Clinician Programmer 8840 N'Vision Clinician Programmer, all versions, and...
Moderate
Unreviewed
CVE-2018-10631
was published
May 13, 2022
A vulnerability in the per-user-override feature of Cisco Adaptive Security Appliance (ASA)...
Moderate
Unreviewed
CVE-2018-15398
was published
May 13, 2022
WebAccess Versions 8.3.2 and prior. During installation, the application installer disables user...
High
Unreviewed
CVE-2018-17908
was published
May 13, 2022
If an attacker has physical access to the VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662. Prior...
High
Unreviewed
CVE-2018-17931
was published
May 13, 2022
This vulnerability allows local attackers to escalate privileges on vulnerable installations of...
High
Unreviewed
CVE-2018-1168
was published
May 13, 2022
All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by improper access control...
High
Unreviewed
CVE-2018-7362
was published
May 13, 2022
All versions up to ZXINOS-RESV1.01.43 of the ZTE ZXIN10 product European region are impacted by...
Critical
Unreviewed
CVE-2018-7364
was published
May 13, 2022
Improper access control vulnerability in Synology Drive before 1.0.2-10275 allows remote...
Moderate
Unreviewed
CVE-2018-8922
was published
May 13, 2022
A vulnerability in the Cisco SD-WAN Solution could allow an authenticated, adjacent attacker to...
High
Unreviewed
CVE-2019-1647
was published
May 13, 2022
Heap-based buffer overflow in the KeyView PDF filter in IBM Domino 8.5.x before 8.5.3 FP6 IF13...
High
Unreviewed
CVE-2016-0279
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API