GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
44
GitHub Actions
45
Go
3,248
Maven
5,000+
npm
5,000+
NuGet
867
pip
4,513
Pub
12
RubyGems
997
Rust
1,189
Swift
51
Unreviewed advisories
All unreviewed
5,000+
13,524 advisories
Filter by severity
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel...
Low
Unreviewed
CVE-2017-10095
was published
May 13, 2022
Vulnerability in the Oracle Hospitality Hotel Mobile component of Oracle Hospitality Applications...
Low
Unreviewed
CVE-2017-10014
was published
May 13, 2022
Unspecified vulnerability in HP Insight Software Installer for Windows before 6.1 allows local...
Low
Unreviewed
CVE-2010-1967
was published
May 13, 2022
JBossWS vulnerable to uncontrolled recursion
Low
CVE-2011-1483
was published
for
org.jboss.ws:jbossws-common
(Maven)
May 13, 2022
Unspecified vulnerability in HP Systems Insight Manager (SIM) before 7.0 allows local users to...
Low
Unreviewed
CVE-2012-1995
was published
May 13, 2022
HP OpenVMS 8.3, 8.3-1H1, and 8.4 on the Itanium platform and 7.3-2, 8.2, 8.3, and 8.4 on the...
Low
Unreviewed
CVE-2012-3276
was published
May 13, 2022
Cross-site scripting (XSS) vulnerability in HP Intelligent Management Center (iMC) and...
Low
Unreviewed
CVE-2012-5200
was published
May 13, 2022
HP SQL/MX 3.2 and earlier on NonStop servers, when SQL/MP Objects are used, allows remote...
Low
Unreviewed
CVE-2013-2322
was published
May 13, 2022
Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 7.2.1...
Low
Unreviewed
CVE-2013-2364
was published
May 13, 2022
Unspecified vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows local users...
Low
Unreviewed
CVE-2013-2362
was published
May 13, 2022
HP LaserJet M4555, M525, and M725; LaserJet flow MFP M525c; LaserJet Enterprise color flow MFP...
Low
Unreviewed
CVE-2013-4829
was published
May 13, 2022
Unspecified vulnerability in HP HP-UX Whitelisting (aka WLI) before A.01.02.02 on HP-UX B.11.31...
Low
Unreviewed
CVE-2013-6219
was published
May 13, 2022
Unspecified vulnerability in HP Array Configuration Utility, Array Diagnostics Utility, ProLiant...
Low
Unreviewed
CVE-2013-6216
was published
May 13, 2022
Unspecified vulnerability on HP 8/20q switches, SN6000 switches, and 8Gb Simple SAN Connection...
Low
Unreviewed
CVE-2014-2603
was published
May 13, 2022
A vulnerability has been identified in IBM Cloud Orchestrator 2.3, 2.3.0.1, 2.4, and 2.4.0.1 that...
Low
Unreviewed
CVE-2016-0205
was published
May 13, 2022
IBM OpenPages GRC Platform 7.1, 7.2, and 7.3 could allow a local user to obtain sensitive...
Low
Unreviewed
CVE-2016-0234
was published
May 13, 2022
The Trackr device ID is constructed of a manufacturer identifier of four zeroes followed by the...
Low
Unreviewed
CVE-2016-6539
was published
May 13, 2022
An input validation flaw was found in the way OpenShift 3 handles requests for images. A user,...
Low
Unreviewed
CVE-2016-8651
was published
May 13, 2022
Revive Adserver before 3.2.5 and 4.0.0 suffers from Special Element Injection. Usernames weren't...
Low
Unreviewed
CVE-2016-9471
was published
May 13, 2022
IBM Campaign 9.1.0, 9.1.2, 10.0, and 10.1 could allow an authenticated user with access to the...
Low
Unreviewed
CVE-2016-9749
was published
May 13, 2022
Nextcloud Server before 10.0.4 and 11.0.2 are vulnerable to disclosure of calendar and...
Low
Unreviewed
CVE-2017-0895
was published
May 13, 2022
IBM Spectrum Scale 4.1.1 and 4.2.0 - 4.2.3 could allow a local unprivileged user access to...
Low
Unreviewed
CVE-2017-1654
was published
May 13, 2022
IBM QRadar 7.3 stores potentially sensitive information in log files that could be read by a...
Low
Unreviewed
CVE-2017-1733
was published
May 13, 2022
IBM Business Process Manager 8.6 allows web pages to be stored locally which can be read by...
Low
Unreviewed
CVE-2017-1756
was published
May 13, 2022
Exposure of Sensitive Information to an Unauthorized Actor in Jenkins
Low
CVE-2017-2603
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API