GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,094
Maven
5,000+
npm
3,759
NuGet
678
pip
3,445
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
263,611 advisories
Filter by severity
SQL injection vulnerability in the My quiz and poll (myquizpoll) extension before 0.1.4 for TYPO3...
High
Unreviewed
CVE-2008-6462
was published
May 17, 2022
IBM QRadar SIEM 7.3.0 to 7.3.3 Patch 8 and 7.4.0 to 7.4.3 GA uses weaker than expected...
High
Unreviewed
CVE-2021-20337
was published
May 24, 2022
The Java keystore in all versions and editions of Rapid7 Nexpose prior to 6.4.50 is encrypted...
High
Unreviewed
CVE-2017-5230
was published
May 17, 2022
SLiMS 8 Akasia through 8.3.1 has SQL injection in admin/AJAX_lookup_handler.php (tableName and...
High
Unreviewed
CVE-2017-12585
was published
May 17, 2022
Nortel Communication Server 1000 4.50.x allows remote attackers to obtain Web application...
Moderate
Unreviewed
CVE-2008-6579
was published
May 17, 2022
PHP remote file inclusion vulnerability in connexion.php in PHPGKit 0.9 allows remote attackers...
High
Unreviewed
CVE-2008-6491
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in DCD GoogleMap (dcdgooglemap) 1.1.0 and earlier...
Moderate
Unreviewed
CVE-2008-6687
was published
May 17, 2022
libclamav/pe.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (crash)...
Moderate
Unreviewed
CVE-2008-6680
was published
May 17, 2022
An out-of-bounds read flaw related to the assess_packet function in eapmd5pass.c:211 was found in...
High
Unreviewed
CVE-2017-11669
was published
May 17, 2022
Windows Hyper-V in Windows 10 1607, 1703, and Windows Server 2016 allows a denial of service...
Moderate
Unreviewed
CVE-2017-8623
was published
May 17, 2022
Multiple unspecified vulnerabilities in ClanSphere before 2008.2.1 allow remote attackers to...
Moderate
Unreviewed
CVE-2008-6470
was published
May 17, 2022
SQL injection vulnerability in CoolURI (cooluri) 1.0.11 and earlier extension for TYPO3 allows...
High
Unreviewed
CVE-2008-6686
was published
May 17, 2022
Multiple cross-site request forgery (CSRF) vulnerabilities in the update feature in Drupal 5.x...
Moderate
Unreviewed
CVE-2008-6532
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in CodeToad ASP Shopping Cart Script allows remote...
Moderate
Unreviewed
CVE-2008-6500
was published
May 17, 2022
PHP remote file inclusion vulnerability in news/include/createdb.php in Web Server Creator Web...
High
Unreviewed
CVE-2008-6545
was published
May 17, 2022
Cross-Site Request Forgery (CSRF) exists on Linksys EA4500 devices with Firmware Version before 2...
High
Unreviewed
CVE-2017-10677
was published
May 17, 2022
The ieee_archive_p function in bfd/ieee.c in the Binary File Descriptor (BFD) library (aka libbfd...
High
Unreviewed
CVE-2017-9747
was published
May 17, 2022
A memory corruption issue was addressed with improved validation. This issue is fixed in Security...
High
Unreviewed
CVE-2021-1809
was published
May 24, 2022
Viewing restrictions bypass vulnerability in Address of Cybozu Garoon 4.0.0 to 5.0.2 allows a...
Moderate
Unreviewed
CVE-2021-20756
was published
May 24, 2022
An issue was discovered in HCC embedded InterNiche 4.0.1. This vulnerability allows the attacker...
High
Unreviewed
CVE-2021-31228
was published
May 24, 2022
Viewing restrictions bypass vulnerability in Portal of Cybozu Garoon 4.0.0 to 5.0.2 allows a...
Moderate
Unreviewed
CVE-2021-20755
was published
May 24, 2022
An access issue was addressed with improved memory management. This issue is fixed in iOS 14.5...
High
Unreviewed
CVE-2021-30656
was published
May 24, 2022
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.3, iOS 14...
High
Unreviewed
CVE-2021-30653
was published
May 24, 2022
Possible out of bounds read due to incorrect validation of incoming buffer length in Snapdragon...
High
Unreviewed
CVE-2021-1930
was published
May 24, 2022
Operational restrictions bypass vulnerability in Bulletin of Cybozu Garoon 4.6.0 to 5.0.2 allows...
Moderate
Unreviewed
CVE-2021-20759
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API