GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,122
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,020
Swift
39
Unreviewed advisories
All unreviewed
5,000+
5,154 advisories
Filter by severity
IBM BigFix Remote Control before 9.1.3 allows remote attackers to obtain sensitive information or...
Moderate
Unreviewed
CVE-2016-2937
was published
May 17, 2022
In Wireshark 2.2.0 to 2.2.1 and 2.0.0 to 2.0.7, the DTN dissector could go into an infinite loop,...
Moderate
Unreviewed
CVE-2016-9375
was published
May 17, 2022
All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode...
Moderate
Unreviewed
CVE-2016-8820
was published
May 17, 2022
In Wireshark 2.2.0 to 2.2.1, the Profinet I/O dissector could loop excessively, triggered by...
Moderate
Unreviewed
CVE-2016-9372
was published
May 17, 2022
os_unix.c in SQLite before 3.13.0 improperly implements the temporary directory search algorithm,...
Moderate
Unreviewed
CVE-2016-6153
was published
May 14, 2022
epan/dissectors/packet-ldss.c in the LDSS dissector in Wireshark 1.12.x before 1.12.13 and 2.x...
Moderate
Unreviewed
CVE-2016-6509
was published
May 17, 2022
The CORBA IDL dissectors in Wireshark 2.x before 2.0.5 on 64-bit Windows platforms do not...
Moderate
Unreviewed
CVE-2016-6503
was published
May 17, 2022
epan/dissectors/packet-wap.c in Wireshark 2.x before 2.0.5 omits an overflow check in the...
Moderate
Unreviewed
CVE-2016-6512
was published
May 17, 2022
ISC BIND 9.x before 9.9.9-P2, 9.10.x before 9.10.4-P2, and 9.11.x before 9.11.0b2, when lwresd or...
Moderate
Unreviewed
CVE-2016-2775
was published
May 13, 2022
Citrix iOS Receiver before 7.0 allows attackers to cause TLS certificates to be incorrectly...
Moderate
Unreviewed
CVE-2016-5433
was published
May 17, 2022
The license-certificate upload functionality on Cisco 8800 phones with software 11.0(1) allows...
Moderate
Unreviewed
CVE-2016-1434
was published
May 17, 2022
PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 does not ensure that pathnames...
Moderate
Unreviewed
CVE-2015-3411
was published
May 14, 2022
Panasonic FPWIN Pro 5.x through 7.x before 7.130 accesses an uninitialized pointer, which allows...
Moderate
Unreviewed
CVE-2016-4498
was published
May 17, 2022
Panasonic FPWIN Pro 5.x through 7.x before 7.130 allows local users to cause a denial of service...
Moderate
Unreviewed
CVE-2016-4497
was published
May 17, 2022
Stack-based buffer overflow in epan/dissectors/packet-ncp2222.inc in the NCP dissector in...
Moderate
Unreviewed
CVE-2016-4085
was published
May 17, 2022
epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before 2.0.3 does not...
Moderate
Unreviewed
CVE-2016-4083
was published
May 17, 2022
The IEEE 802.11 dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not...
Moderate
Unreviewed
CVE-2016-4078
was published
May 17, 2022
epan/dissectors/packet-http2.c in the HTTP/2 dissector in Wireshark 2.0.x before 2.0.2 does not...
Moderate
Unreviewed
CVE-2016-2525
was published
May 17, 2022
The dissect_nhdr_extopt function in epan/dissectors/packet-lbmc.c in the LBMC dissector in...
Moderate
Unreviewed
CVE-2016-2528
was published
May 17, 2022
epan/dissectors/packet-hiqnet.c in the HiQnet dissector in Wireshark 2.0.x before 2.0.2 does not...
Moderate
Unreviewed
CVE-2016-2526
was published
May 17, 2022
epan/dissectors/packet-x509af.c in the X.509AF dissector in Wireshark 2.0.x before 2.0.2...
Moderate
Unreviewed
CVE-2016-2524
was published
May 17, 2022
wiretap/nettrace_3gpp_32_423.c in the 3GPP TS 32.423 Trace file parser in Wireshark 2.0.x before...
Moderate
Unreviewed
CVE-2016-2527
was published
May 17, 2022
NetApp Clustered Data ONTAP 8.3.1 does not properly verify X.509 certificates from TLS servers,...
Moderate
Unreviewed
CVE-2016-1563
was published
May 17, 2022
The generate_dialback function in the mod_dialback module in Prosody before 0.9.10 does not...
Moderate
Unreviewed
CVE-2016-0756
was published
May 17, 2022
FireBird 2.5.5 allows remote authenticated users to cause a denial of service (daemon crash) by...
Moderate
Unreviewed
CVE-2016-1569
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API