GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,122
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,020
Swift
39
Unreviewed advisories
All unreviewed
5,000+
900 advisories
Filter by severity
xorg-x11-server before 1.19.5 was missing length validation in XFree86 VidModeExtension allowing...
Critical
Unreviewed
CVE-2017-12180
was published
May 13, 2022
xorg-x11-server before 1.19.5 was missing length validation in XFree86 DGA extension allowing...
Critical
Unreviewed
CVE-2017-12181
was published
May 13, 2022
xorg-x11-server before 1.19.5 had wrong extra length check in ProcXIChangeHierarchy function...
Critical
Unreviewed
CVE-2017-12178
was published
May 13, 2022
xorg-x11-server before 1.19.5 was missing extra length validation in ProcEstablishConnection...
Critical
Unreviewed
CVE-2017-12176
was published
May 13, 2022
xorg-x11-server before 1.19.5 was missing length validation in XINERAMA extension allowing...
Critical
Unreviewed
CVE-2017-12184
was published
May 13, 2022
xorg-x11-server before 1.19.5 was missing length validation in X-Resource extension allowing...
Critical
Unreviewed
CVE-2017-12186
was published
May 13, 2022
xorg-x11-server before 1.19.5 was missing length validation in MIT-SCREEN-SAVER extension...
Critical
Unreviewed
CVE-2017-12185
was published
May 13, 2022
xorg-x11-server before 1.19.5 was missing length validation in XFIXES extension allowing...
Critical
Unreviewed
CVE-2017-12183
was published
May 13, 2022
xorg-x11-server before 1.19.5 was missing length validation in XFree86 DRI extension allowing...
Critical
Unreviewed
CVE-2017-12182
was published
May 13, 2022
xorg-x11-server before 1.19.5 was missing length validation in RENDER extension allowing...
Critical
Unreviewed
CVE-2017-12187
was published
May 13, 2022
A "Cisco WebEx Network Recording Player Denial of Service Vulnerability" exists in Cisco WebEx...
Critical
Unreviewed
CVE-2017-12367
was published
May 13, 2022
On Junos OS devices with SNMP enabled, a network based attacker with unfiltered access to the RE...
Critical
Unreviewed
CVE-2017-2345
was published
May 13, 2022
D-Link DIR-130 firmware version 1.23 and DIR-330 firmware version 1.12 are vulnerable to...
Critical
Unreviewed
CVE-2017-3191
was published
May 13, 2022
GIGABYTE BRIX UEFI firmware for the GB-BSi7H-6500 (version F6) and GB-BXi7-5775 (version F2)...
Critical
Unreviewed
CVE-2017-3197
was published
May 13, 2022
In cryptctl before version 2.0 a malicious server could send RPC requests that could overwrite...
Critical
Unreviewed
CVE-2017-9270
was published
May 13, 2022
In libzypp before August 2018 GPG keys attached to YUM repositories were not correctly pinned,...
Critical
Unreviewed
CVE-2017-9269
was published
May 13, 2022
Junos OS routing protocol daemon (RPD) process may crash and restart or may lead to remote code...
Critical
Unreviewed
CVE-2018-0037
was published
May 13, 2022
A vulnerability in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files...
Critical
Unreviewed
CVE-2018-0104
was published
May 13, 2022
A vulnerability in Cisco WebEx Business Suite clients, Cisco WebEx Meetings, and Cisco WebEx...
Critical
Unreviewed
CVE-2018-0112
was published
May 13, 2022
A vulnerability in the web interface of the Cisco RV132W ADSL2+ Wireless-N VPN and RV134W VDSL2...
Critical
Unreviewed
CVE-2018-0125
was published
May 13, 2022
A vulnerability in the ACS Report component of Cisco Secure Access Control System (ACS) could...
Critical
Unreviewed
CVE-2018-0253
was published
May 13, 2022
A vulnerability in the Cisco WebEx Network Recording Player for Advanced Recording Format (ARF)...
Critical
Unreviewed
CVE-2018-0264
was published
May 13, 2022
redhat-certification does not properly sanitize paths in rhcertStore.py:__saveResultsFile. A...
Critical
Unreviewed
CVE-2018-10870
was published
May 13, 2022
Improper input validation in obs-service-tar_scm of Open Build Service allows remote attackers to...
Critical
Unreviewed
CVE-2018-12474
was published
May 13, 2022
Entes EMG12 versions 2.57 and prior The application uses a web interface where it is possible for...
Critical
Unreviewed
CVE-2018-14826
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API