GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,122
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,020
Swift
39
Unreviewed advisories
All unreviewed
5,000+
12,428 advisories
Filter by severity
A flaw was found in PackageKit in the way some of the methods exposed by the Transaction...
Low
Unreviewed
CVE-2022-0987
was published
Jun 29, 2022
An issue was discovered in certain Apple products. iOS before 10.3.3 is affected. The issue...
Low
Unreviewed
CVE-2017-7058
was published
May 17, 2022
Improper input validation in Contacts Storage prior to SMR Jul-2022 Release 1 allows attacker to...
Low
Unreviewed
CVE-2022-33690
was published
Jul 13, 2022
Exposure of Sensitive Information in getDsaSimImsi in TelephonyUI prior to SMR Jul-2022 Release 1...
Low
Unreviewed
CVE-2022-33699
was published
Jul 13, 2022
An issue has been discovered in GitLab EE affecting all versions starting from 12.2 prior to 14...
Low
Unreviewed
CVE-2022-1981
was published
Jul 2, 2022
IBM Cognos Analytics 10.1 and 10.2 could allow a local user to craft a URL which could confirm...
Low
Unreviewed
CVE-2017-1125
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the Cakifo theme 1.x before 1.6.2 for WordPress...
Low
Unreviewed
CVE-2014-3903
was published
May 17, 2022
Check Point Endpoint Security Client E83 through E86 before E86.50 does not protect against a...
Low
Unreviewed
CVE-2022-23744
was published
Jul 8, 2022
The UDF filesystem implementation in the Linux kernel before 3.18.2 does not ensure that space is...
Low
Unreviewed
CVE-2014-9731
was published
May 17, 2022
An issue was discovered in certain Apple products. iCloud before 6.2 on Windows is affected....
Low
Unreviewed
CVE-2017-2383
was published
May 17, 2022
IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 allows web pages to be stored locally...
Low
Unreviewed
CVE-2021-20551
was published
Jun 25, 2022
In finishDrawingWindow of WindowManagerService.java, there is a possible tapjacking due to...
Low
Unreviewed
CVE-2022-20226
was published
Jul 14, 2022
An issue was discovered in Bentley MicroStation before 10.17.0.x and Bentley View before 10.17.0...
Low
Unreviewed
CVE-2022-35901
was published
Jul 16, 2022
An issue was discovered in Bentley MicroStation before 10.17.0.x and Bentley View before 10.17.0...
Low
Unreviewed
CVE-2022-35906
was published
Jul 16, 2022
An issue was discovered in Bentley MicroStation before 10.17.0.x and Bentley View before 10.17.0...
Low
Unreviewed
CVE-2022-35904
was published
Jul 16, 2022
Windows Media Player in Microsoft Windows 8.1; Windows Server 2012 R2; Windows RT 8.1; Windows 7...
Low
Unreviewed
CVE-2017-0042
was published
May 17, 2022
NetIQ Access Manager 4.2 before SP3 HF1 and 4.3 before SP1 HF1, when configured as a SAML 2.0...
Low
Unreviewed
CVE-2017-5190
was published
May 17, 2022
Exposure of Sensitive Information in telephony-common.jar prior to SMR Jul-2022 Release 1 allows...
Low
Unreviewed
CVE-2022-33687
was published
Jul 13, 2022
Exposure of Sensitive Information in CSC application prior to SMR Jul-2022 Release 1 allows local...
Low
Unreviewed
CVE-2022-33694
was published
Jul 13, 2022
Improper use of a unique device ID in unprotected SecSoterService prior to SMR Jul-2022 Release 1...
Low
Unreviewed
CVE-2022-30753
was published
Jul 13, 2022
Sensitive information exposure vulnerability in EventType in SecTelephonyProvider prior to SMR...
Low
Unreviewed
CVE-2022-33688
was published
Jul 13, 2022
Vulnerability in the Solaris Cluster component of Oracle Sun Systems Products Suite (subcomponent...
Low
Unreviewed
CVE-2016-5551
was published
May 17, 2022
pt_chown in GNU C Library (aka glibc or libc6) before 2.18 does not properly check permissions...
Low
Unreviewed
CVE-2013-2207
was published
May 17, 2022
Cloudera Navigator 2.2.x before 2.2.4 and 2.3.x before 2.3.3 include support for SSLv3 when...
Low
Unreviewed
CVE-2015-4078
was published
May 17, 2022
This vulnerability allows remote attackers to disclose sensitive information on affected...
Low
Unreviewed
CVE-2022-34874
was published
Jul 19, 2022
ProTip!
Advisories are also available from the
GraphQL API