GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,122
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,020
Swift
39
Unreviewed advisories
All unreviewed
5,000+
111,572 advisories
Filter by severity
The ViewPoint web application in Dell SonicWALL Global Management System (GMS) before 7.2 SP2,...
High
Unreviewed
CVE-2014-8420
was published
May 14, 2022
The Calendar Base (cal) extension before 1.5.9 and 1.6.x before 1.6.1 for TYPO3 allows remote...
High
Unreviewed
CVE-2014-8325
was published
May 17, 2022
Stack-based buffer overflow in the date_from_ISO8601 function in ext/xmlrpc/libxmlrpc/xmlrpc.c in...
High
Unreviewed
CVE-2014-8626
was published
May 17, 2022
Multiple unspecified vulnerabilities in Google Chrome before 39.0.2171.65 allow attackers to...
High
Unreviewed
CVE-2014-7910
was published
May 17, 2022
Adobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on Windows and OS X and...
High
Unreviewed
CVE-2014-8440
was published
May 14, 2022
Buffer overflow in login.cgi in MiniHttpd in Belkin N750 Router with firmware before F9K1103_WW_1...
High
Unreviewed
CVE-2014-1635
was published
May 17, 2022
Multiple SQL injection vulnerabilities in Banana Dance B.2.6 and earlier allow remote attackers...
High
Unreviewed
CVE-2012-5244
was published
May 17, 2022
Schannel in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2...
High
Unreviewed
CVE-2014-6321
was published
May 13, 2022
Use-after-free vulnerability in the socket manager of Impress Remote in LibreOffice 4.x before 4...
High
Unreviewed
CVE-2014-3693
was published
May 14, 2022
server/sv_main.c in Quake3 Arena, as used in ioquake3 before r1762, OpenArena, Tremulous, and...
High
Unreviewed
CVE-2010-5077
was published
May 17, 2022
Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or...
High
Unreviewed
CVE-2014-4141
was published
May 14, 2022
Integer overflow in Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on...
High
Unreviewed
CVE-2014-0569
was published
May 13, 2022
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a...
High
Unreviewed
CVE-2014-4138
was published
May 14, 2022
The actionSendErrorReport method in protected/controllers/SiteController.php in X2Engine 2.8...
High
Unreviewed
CVE-2014-5297
was published
May 14, 2022
The file comment feature in Rejetto HTTP File Server (hfs) 2.3c and earlier allows remote...
High
Unreviewed
CVE-2014-7226
was published
May 17, 2022
gpExec in GoPro HERO 3+ allows remote attackers to execute arbitrary commands via a the (1) a1 or...
High
Unreviewed
CVE-2014-6434
was published
May 17, 2022
gpExec in GoPro HERO 3+ allows remote attackers to execute arbitrary files via a the (1) a1 or (2...
High
Unreviewed
CVE-2014-6433
was published
May 17, 2022
htdocs_ari/includes/login.php in the ARI Framework module/Asterisk Recording Interface (ARI) in...
High
Unreviewed
CVE-2014-7235
was published
May 13, 2022
The chrome_pdf::CopyImage function in pdf/draw_utils.cc in the PDFium component in Google Chrome...
High
Unreviewed
CVE-2014-3189
was published
May 17, 2022
The SessionService::GetLastSession function in browser/sessions/session_service.cc in Google...
High
Unreviewed
CVE-2014-3193
was published
May 17, 2022
The posix_spawn_file_actions_addopen function in glibc before 2.20 does not copy its path...
High
Unreviewed
CVE-2014-4043
was published
May 14, 2022
SQL injection vulnerability in content-audit-schedule.php in the Content Audit plugin before 1.6...
High
Unreviewed
CVE-2014-5389
was published
May 17, 2022
SQL injection vulnerability in the Statistics (ke_stats) extension before 1.1.2 for TYPO3 allows...
High
Unreviewed
CVE-2014-6293
was published
May 17, 2022
Unrestricted file upload vulnerability in the mm_forum extension before 1.9.3 for TYPO3 allows...
High
Unreviewed
CVE-2014-6298
was published
May 17, 2022
The News (tt_news) extension before 3.5.2 for TYPO3 allows remote attackers to have unspecified...
High
Unreviewed
CVE-2014-6290
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API