GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,238
Erlang
31
GitHub Actions
21
Go
2,005
Maven
5,000+
npm
3,716
NuGet
661
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
888 advisories
Filter by severity
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE)...
Moderate
Unreviewed
CVE-2022-20782
was published
Apr 7, 2022
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability....
Moderate
Unreviewed
CVE-2021-36293
was published
Apr 9, 2022
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability....
Moderate
Unreviewed
CVE-2021-36290
was published
Apr 9, 2022
Dell PowerScale OneFS, versions 8.2.0-9.3.0, contains an Improper Handling of Insufficient...
Moderate
Unreviewed
CVE-2022-23160
was published
Apr 13, 2022
A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex...
Moderate
Unreviewed
CVE-2022-23702
was published
Apr 13, 2022
Improper Privilege Management in Mattermost
Moderate
CVE-2022-1332
was published
for
github.com/mattermost/mattermost-server/v5
(Go)
Apr 14, 2022
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to priviledge escalation where a...
Moderate
Unreviewed
CVE-2021-29824
was published
Apr 23, 2022
IBM InfoSphere Information Server 11.7 could allow an authenticated user to view information of...
Moderate
Unreviewed
CVE-2022-22441
was published
Apr 29, 2022
Microsoft Exchange Server 2000 System Attendant gives "Everyone" group privileges to the WinReg...
Moderate
Unreviewed
CVE-2002-0049
was published
Apr 30, 2022
Improper privilege management in pyftpdlib
Moderate
CVE-2007-6741
was published
for
pyftpdlib
(pip)
May 1, 2022
The Site Documentation Drupal module 5.x before 5.x-1.8 and 6.x before 6.x-1.1 allows remote...
Moderate
Unreviewed
CVE-2008-2271
was published
May 1, 2022
The ThreadPool class in Windows Vista Gold and SP1, and Server 2008, does not properly implement...
Moderate
Unreviewed
CVE-2009-0080
was published
May 2, 2022
The execve function in the Linux kernel, possibly 2.6.30-rc6 and earlier, does not properly clear...
Moderate
Unreviewed
CVE-2009-2848
was published
May 2, 2022
Privilege escalation for users with create/update permissions in Global Roles in Rancher
Moderate
CVE-2021-36784
was published
for
github.com/rancher/rancher
(Go)
May 2, 2022
Improper Handling of Insufficient Privileges vulnerability in Web UI of Secomea GateManager...
Moderate
Unreviewed
CVE-2022-25782
was published
May 5, 2022
Electronic Arts Karotz Smart Rabbit 12.07.19.00 allows Python module hijacking
Moderate
Unreviewed
CVE-2013-4867
was published
May 5, 2022
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, and 14.1.x...
Moderate
Unreviewed
CVE-2022-27659
was published
May 6, 2022
In getAvailabilityStatus of PrivateDnsPreferenceController.java, there is a possible way for a...
Moderate
Unreviewed
CVE-2022-20112
was published
May 11, 2022
Several administrative resources in Atlassian Jira before version 7.6.9, from version 7.7.0...
Moderate
Unreviewed
CVE-2018-13400
was published
May 13, 2022
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to 250 and CAPI...
Moderate
Unreviewed
CVE-2016-8219
was published
May 13, 2022
It was discovered systemd does not correctly check the content of PIDFile files before using it...
Moderate
Unreviewed
CVE-2018-16888
was published
May 13, 2022
In previous versions of Puppet Agent it was possible for the agent to retrieve facts from an...
Moderate
Unreviewed
CVE-2017-10690
was published
May 13, 2022
PostgreSQL PL/Java before 1.5.0 allows remote authenticated users to alter type mappings for...
Moderate
Unreviewed
CVE-2016-2192
was published
May 13, 2022
PostgreSQL PL/Java Improper Privilege Management
Moderate
CVE-2016-0767
was published
for
postgresql:pljava-public
(Maven)
May 13, 2022
Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader...
Moderate
Unreviewed
CVE-2015-5106
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API