GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
4,250 advisories
Filter by severity
Improper Input Validation vulnerability in header parsing of Apache Traffic Server allows an...
High
Unreviewed
CVE-2021-37150
was published
Aug 11, 2022
Improper Input Validation vulnerability in HTTP/1.1 header parsing of Apache Traffic Server...
High
Unreviewed
CVE-2022-28129
was published
Aug 11, 2022
The icmp6_send function in net/ipv6/icmp.c in the Linux kernel through 4.8.12 omits a certain...
High
Unreviewed
CVE-2016-9919
was published
May 17, 2022
In serviceConnection of ControlsProviderLifecycleManager.kt, there is a possible way to keep...
High
Unreviewed
CVE-2021-39701
was published
Mar 17, 2022
xrdb.c in xrdb before 1.0.9 in X.Org X11R7.6 and earlier allows remote attackers to execute...
High
Unreviewed
CVE-2011-0465
was published
May 17, 2022
Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.2(3) do not...
High
Unreviewed
CVE-2010-4679
was published
May 17, 2022
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.4 and...
High
Unreviewed
CVE-2022-22653
was published
Mar 19, 2022
SolarWinds received a report of a vulnerability related to an input that was not sanitized in...
High
Unreviewed
CVE-2021-35254
was published
Mar 26, 2022
Improper Input Validation vulnerability in request line parsing of Apache Traffic Server allows...
High
Unreviewed
CVE-2021-44040
was published
Mar 24, 2022
The lack of validation of a key-value field in the Splunk-to-Splunk protocol results in a denial...
High
Unreviewed
CVE-2021-3422
was published
Mar 26, 2022
This vulnerability can be exploited by parsing maliciously crafted project files with Horner...
High
Unreviewed
CVE-2021-44462
was published
Mar 26, 2022
The (1) ActiveMatrix Runtime and (2) ActiveMatrix Administrator components in TIBCO ActiveMatrix...
High
Unreviewed
CVE-2010-3491
was published
May 17, 2022
In Settings, there is a possible way to make the user enable WiFi due to improper input...
High
Unreviewed
CVE-2021-39763
was published
Mar 31, 2022
Improper input validation vulnerability in pfSense CE and pfSense Plus (pfSense CE software...
High
Unreviewed
CVE-2022-24299
was published
Apr 1, 2022
In Settings, there is a possible way to misrepresent which app wants to add a wifi network due to...
High
Unreviewed
CVE-2021-39771
was published
Mar 31, 2022
In Audio Aurisys HAL, there is a possible permission bypass due to a missing permission check....
High
Unreviewed
CVE-2021-0673
was published
Dec 18, 2021
In Settings, there is a possible way to display an incorrect app name due to improper input...
High
Unreviewed
CVE-2021-39764
was published
Mar 31, 2022
Improper Input Validation vulnerability in ABB 800xA, Control Software for AC 800M, Control...
High
Unreviewed
CVE-2021-22277
was published
Apr 3, 2022
Improper input validation in all versions of GitLab CE/EE using sendmail to send emails allowed...
High
Unreviewed
CVE-2022-0741
was published
Apr 3, 2022
Data can be copied without validation in the built-in web server in Moxa NPort IAW5000A-I/O...
High
Unreviewed
CVE-2021-32970
was published
Apr 3, 2022
An local privilege escalation vulnerability due to a "runasroot" command in eScan Anti-Virus....
High
Unreviewed
CVE-2021-26624
was published
Apr 3, 2022
IBM WebSphere Application Server (WAS) 7.x before 7.0.0.13, and WebSphere Application Server...
High
Unreviewed
CVE-2010-3186
was published
May 17, 2022
Improper validation vulnerability in MediaMonitorDimension prior to SMR Apr-2022 Release 1 allows...
High
Unreviewed
CVE-2022-27827
was published
Apr 12, 2022
Improper validation vulnerability in MediaMonitorEvent prior to SMR Apr-2022 Release 1 allows...
High
Unreviewed
CVE-2022-27828
was published
Apr 12, 2022
Improper validation vulnerability in VerifyCredentialResponse prior to SMR Apr-2022 Release 1...
High
Unreviewed
CVE-2022-27829
was published
Apr 12, 2022
ProTip!
Advisories are also available from the
GraphQL API