GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,150
NuGet
736
pip
3,952
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,534 advisories
Filter by severity
The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection...
High
Unreviewed
CVE-2017-8135
was published
May 14, 2022
The generate_local_queue function in utils/cups-browsed.c in cups-browsed in cups-filters before...
Moderate
Unreviewed
CVE-2014-4336
was published
May 14, 2022
sapi/cgi/cgi_main.c in PHP before 5.3.12 and 5.4.x before 5.4.2, when configured as a CGI script ...
High
Unreviewed
CVE-2012-1823
was published
May 14, 2022
IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.0 before 7.0.1-ISS...
High
Unreviewed
CVE-2016-0324
was published
May 14, 2022
IBM Notes 8.5 and 9.0 could allow a local attacker to execute arbitrary commands by carefully...
Moderate
Unreviewed
CVE-2017-1720
was published
May 14, 2022
A Remote Arbitrary Code Execution vulnerability in HPE Smart Storage Administrator version before...
High
Unreviewed
CVE-2016-8523
was published
May 14, 2022
The GMS ViewPoint (GMSVP) web application in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8...
Critical
Unreviewed
CVE-2016-2396
was published
May 14, 2022
The cliserver implementation in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1...
Critical
Unreviewed
CVE-2016-2397
was published
May 14, 2022
The installPackage function in the installerHelper subcomponent in Libmacgpg in GPG Suite before...
High
Unreviewed
CVE-2014-4677
was published
May 14, 2022
IBM Rational AppScan Source 8.0 through 8.0.0.2 and 8.5 through 8.5.0.1 and Security AppScan...
Critical
Unreviewed
CVE-2014-6120
was published
May 14, 2022
The EZPZ One Click Backup (ezpz-one-click-backup) plugin 12.03.10 and earlier for WordPress...
Critical
Unreviewed
CVE-2014-3114
was published
May 14, 2022
The WordPress Flash Uploader plugin before 3.1.3 for WordPress allows remote attackers to execute...
Critical
Unreviewed
CVE-2014-5014
was published
May 14, 2022
The web administrative portal in Zhone zNID GPON 2426A before S3.0.501 allows remote attackers to...
High
Unreviewed
CVE-2014-9118
was published
May 14, 2022
Technicolor Router TD5130 with firmware 2.05.C29GV allows remote attackers to execute arbitrary...
High
Unreviewed
CVE-2014-9144
was published
May 14, 2022
The help window in Epicor CRS Retail Store before 3.2.03.01.008 allows local users to execute...
High
Unreviewed
CVE-2015-2210
was published
May 14, 2022
The network diagnostics tool (CommandLineServlet) in the Appliance Manager command line utility ...
Moderate
Unreviewed
CVE-2015-2746
was published
May 14, 2022
ping.cgi in NetCommWireless HSPA 3G10WVE wireless routers with firmware before 3G10WVE-L101...
Critical
Unreviewed
CVE-2015-6024
was published
May 14, 2022
Synology Video Station before 1.5-0763 allows remote attackers to execute arbitrary shell...
High
Unreviewed
CVE-2015-6912
was published
May 14, 2022
xymond in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 allow remote authenticated users to execute...
High
Unreviewed
CVE-2016-2056
was published
May 14, 2022
The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to two Remote...
Critical
Unreviewed
CVE-2016-9682
was published
May 14, 2022
The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to a Remote...
Critical
Unreviewed
CVE-2016-9684
was published
May 14, 2022
The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to a Remote...
Critical
Unreviewed
CVE-2016-9683
was published
May 14, 2022
osc before 0.151.0 allows remote attackers to execute arbitrary commands via shell metacharacters...
High
Unreviewed
CVE-2015-0778
was published
May 14, 2022
An issue was discovered in Amanda 3.3.1. A user with backup privileges can trivially compromise a...
High
Unreviewed
CVE-2016-10729
was published
May 14, 2022
Bluetooth in Android before 5.1.1 LMY48X and 6.0 before 2015-11-01 allows attackers to send...
Moderate
Unreviewed
CVE-2015-6613
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API