GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,122
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,020
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,300 advisories
Filter by severity
Because of insufficient authorization checks it is possible for any authenticated user to change...
Moderate
Unreviewed
CVE-2017-17708
was published
May 13, 2022
A vulnerability in the role-based resource checking functionality of Cisco Unified Computing...
Moderate
Unreviewed
CVE-2017-3817
was published
May 13, 2022
An issue was discovered in network-manager-applet (aka network-manager-gnome) in Ubuntu 12.04 LTS...
Moderate
Unreviewed
CVE-2017-6590
was published
May 13, 2022
In WordPress before 4.7.3 (wp-admin/plugins.php), unintended files can be deleted by...
Moderate
Unreviewed
CVE-2017-6816
was published
May 13, 2022
FusionSphere V100R006C00SPC102(NFV) has an incorrect authorization vulnerability. An...
Moderate
Unreviewed
CVE-2017-8196
was published
May 13, 2022
BigTree CMS through 4.2.18 does not prevent a user from deleting their own account. This could...
Moderate
Unreviewed
CVE-2017-9378
was published
May 13, 2022
Incorrect Authorization in Jenkins Gerrit Trigger Plugin
Moderate
CVE-2018-1000106
was published
for
com.sonyericsson.hudson.plugins.gerrit:gerrit-trigger
(Maven)
May 13, 2022
Incorrect Authorization in Jenkins Gerrit Trigger Plugin
Moderate
CVE-2018-1000105
was published
for
com.sonyericsson.hudson.plugins.gerrit:gerrit-trigger
(Maven)
May 13, 2022
Incorrect Authorization in Jenkins Git Plugin
Moderate
CVE-2018-1000110
was published
for
org.jenkins-ci.plugins:git
(Maven)
May 13, 2022
Jenkins Google Play Android Publisher Plugin allows attacker to obtain credential IDs
Moderate
CVE-2018-1000109
was published
for
org.jenkins-ci.plugins:google-play-android-publisher
(Maven)
May 13, 2022
Jenkins Promoted Builds Plugin allowed unauthorized users to run some promotion processes
Moderate
CVE-2018-1000114
was published
for
org.jenkins-ci.plugins:promoted-builds
(Maven)
May 13, 2022
Incorrect Authorization in Jenkins Mercurial Plugin
Moderate
CVE-2018-1000112
was published
for
org.jenkins-ci.plugins:mercurial
(Maven)
May 13, 2022
Jenkins Subversion Plugin Incorrect Authorization vulnerability
Moderate
CVE-2018-1000111
was published
for
org.jenkins-ci.plugins:subversion
(Maven)
May 13, 2022
Jenkins vSphere Plugin incorrect authorization vulnerability
Moderate
CVE-2018-1000152
was published
for
org.jenkins-ci.plugins:vsphere-cloud
(Maven)
May 13, 2022
Improper authorization vulnerability in Jenkins Mesos Plugin
Moderate
CVE-2018-1000420
was published
for
org.jenkins-ci.plugins:mesos
(Maven)
May 13, 2022
An issue was discovered in Vaultize Enterprise File Sharing 17.05.31. There is improper...
Moderate
Unreviewed
CVE-2018-10212
was published
May 13, 2022
The 'systemui/settings_network.php' and 'systemui/settings_patching.php' scripts in the Quest...
Moderate
Unreviewed
CVE-2018-11142
was published
May 13, 2022
An issue was discovered on D-Link DIR-890L with firmware 1.21B02beta01 and earlier, DIR-885L/R...
Moderate
Unreviewed
CVE-2018-12103
was published
May 13, 2022
Apps Manager included in Pivotal Application Service, versions 1.12.x prior to 1.12.22, 2.0.x...
Moderate
Unreviewed
CVE-2018-1278
was published
May 13, 2022
An issue was discovered in Xen through 4.11.x. The DEBUGCTL MSR contains several debugging...
Moderate
Unreviewed
CVE-2018-15468
was published
May 13, 2022
Inova Partner 5.0.5-RELEASE, Build 0510-0906 and earlier allows authenticated users authorization...
Moderate
Unreviewed
CVE-2018-15693
was published
May 13, 2022
Inova Partner 5.0.5-RELEASE, Build 0510-0906 and earlier allows authenticated users authorization...
Moderate
Unreviewed
CVE-2018-15692
was published
May 13, 2022
An issue was discovered in the Linux kernel before 4.8. Incorrect access checking in overlayfs...
Moderate
Unreviewed
CVE-2018-16597
was published
May 13, 2022
An issue was discovered in Joomla! before 3.8.13. Inadequate checks on the tags search fields can...
Moderate
Unreviewed
CVE-2018-17857
was published
May 13, 2022
Incorrect Authorization in Jenkins
Moderate
CVE-2018-1999047
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API