GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
11,628 advisories
Filter by severity
IBM Lotus Notes Traveler before 8.5.1.2 allows remote authenticated users to cause a denial of...
Low
Unreviewed
CVE-2010-4548
was published
May 17, 2022
IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before 6.2.0.2 uses an incomplete SAML 1.x...
Moderate
Unreviewed
CVE-2008-7299
was published
May 17, 2022
acpid.c in acpid before 2.0.9 does not properly handle a situation in which a process has...
Low
Unreviewed
CVE-2011-1159
was published
May 17, 2022
opielogin.c in opielogin in OPIE 2.4.1-test1 and earlier does not check the return value of the...
High
Unreviewed
CVE-2011-2490
was published
May 17, 2022
Open redirect vulnerability in HP Proliant Support Pack (PSP) before 8.7 allows remote...
Moderate
Unreviewed
CVE-2011-1538
was published
May 17, 2022
Mono, when Moonlight before 2.3.0.1 or 2.99.x before 2.99.0.10 is used, does not properly...
High
Unreviewed
CVE-2010-4254
was published
May 17, 2022
IBM WebSphere Application Server (WAS) 6.1.0.9, when the JAAS Login functionality is enabled,...
Moderate
Unreviewed
CVE-2008-7274
was published
May 17, 2022
Adobe Shockwave Player before 11.5.9.620 does not properly validate unspecified input data, which...
High
Unreviewed
CVE-2010-4193
was published
May 17, 2022
pysmb.py in system-config-printer 0.6.x and 0.7.x, as used in foomatic-gui and possibly other...
Moderate
Unreviewed
CVE-2011-2899
was published
May 17, 2022
The AgentTicketForward feature in Open Ticket Request System (OTRS) before 2.4.7 does not...
Moderate
Unreviewed
CVE-2010-4766
was published
May 17, 2022
The i386_set_ldt system call in the kernel in Apple Mac OS X before 10.6.7 does not properly...
High
Unreviewed
CVE-2011-0182
was published
May 17, 2022
WebKit, as used in Apple Safari before 5.0.4 and iOS before 4.3, does not properly handle...
Moderate
Unreviewed
CVE-2011-0160
was published
May 17, 2022
The shred_file function in logrotate.c in logrotate 3.7.9 and earlier might allow context...
Moderate
Unreviewed
CVE-2011-1154
was published
May 17, 2022
Multiple open redirect vulnerabilities in One Click Orgs before 1.2.3 allow (1) remote attackers...
Moderate
Unreviewed
CVE-2011-4553
was published
May 17, 2022
service.exe in Measuresoft ScadaPro 4.0.0 and earlier allows remote attackers to execute...
High
Unreviewed
CVE-2011-3496
was published
May 17, 2022
One Click Orgs before 1.2.3 allows remote authenticated users to trigger crafted SMTP traffic via...
Moderate
Unreviewed
CVE-2011-4554
was published
May 17, 2022
Siemens Automation License Manager (ALM) 4.0 through 5.1+SP1+Upd1 allows remote attackers to...
Moderate
Unreviewed
CVE-2011-4531
was published
May 17, 2022
Array index error in the PK font parser in the dvi-backend component in Evince 2.32 and earlier...
High
Unreviewed
CVE-2010-2640
was published
May 17, 2022
The DKIM implementation in Exim 4.7x before 4.76 permits matching for DKIM identities to apply to...
High
Unreviewed
CVE-2011-1407
was published
May 17, 2022
https50.ocx in IP*Works! SSL in the server in Unitronics UniOPC before 2.0.0 does not properly...
Moderate
Unreviewed
CVE-2011-5086
was published
May 17, 2022
The server in Bcfg2 1.1.2 and earlier, and 1.2 prerelease, allows remote attackers to execute...
High
Unreviewed
CVE-2011-3211
was published
May 17, 2022
ImageIO in Apple Safari before 5.0.6 on Windows does not properly address re-entrancy issues,...
High
Unreviewed
CVE-2011-0215
was published
May 17, 2022
The MallocLite implementation in Cisco IOS 12.0, 12.2, 15.0, 15.1, and 15.2 allows remote...
Moderate
Unreviewed
CVE-2012-1367
was published
May 17, 2022
Rekonq 0.7.0 and earlier does not use a certain font when rendering certificate fields in a...
Moderate
Unreviewed
CVE-2011-3366
was published
May 17, 2022
The VPN downloader implementation in the WebLaunch feature in Cisco AnyConnect Secure Mobility...
Moderate
Unreviewed
CVE-2012-2494
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API