GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,933
Erlang
39
GitHub Actions
38
Go
2,595
Maven
5,000+
npm
4,247
NuGet
754
pip
4,013
Pub
12
RubyGems
953
Rust
1,048
Swift
45
Unreviewed advisories
All unreviewed
5,000+
298,958 advisories
Filter by severity
x86 pv: Insufficient care with non-coherent mappings T[his CNA information record relates to...
High
Unreviewed
CVE-2022-26363
was published
Jun 10, 2022
The CP Image Store with Slideshow WordPress plugin before 1.0.68 does not sanitise and escape the...
Critical
Unreviewed
CVE-2022-1692
was published
Jun 9, 2022
The Five Minute Webshop WordPress plugin through 1.3.2 does not sanitise and escape the id...
Moderate
Unreviewed
CVE-2022-1686
was published
Jun 9, 2022
An integer overflow could occur when OpenEXR processes a crafted file on systems where size_t <...
Moderate
Unreviewed
CVE-2021-3933
was published
Mar 26, 2022
Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, does not use timeouts...
High
Unreviewed
CVE-2008-6910
was published
May 17, 2022
login.php in 3CX Phone System 6.0.806.0, when 100% disk capacity is reached, allows remote...
Moderate
Unreviewed
CVE-2008-6896
was published
May 17, 2022
NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer helper...
Moderate
Unreviewed
CVE-2017-6260
was published
May 17, 2022
If, after successful installation of MantisBT through 2.5.2 on MySQL/MariaDB, the administrator...
Moderate
Unreviewed
CVE-2017-12419
was published
May 17, 2022
The writeRandomBytes_RtlGenRandom function in xmlparse.c in libexpat in Expat 2.2.1 and 2.2.2 on...
High
Unreviewed
CVE-2017-11742
was published
May 17, 2022
Avira AntiVir Premium, Premium Security Suite, AntiVir Professional, and AntiVir Personal - FREE...
High
Unreviewed
CVE-2008-6962
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in login.php in 3CX Phone System Free Edition...
Moderate
Unreviewed
CVE-2008-6894
was published
May 17, 2022
Multiple PHP remote file inclusion vulnerabilities in V-webmail 1.6.4 allow remote attackers to...
Moderate
Unreviewed
CVE-2008-6840
was published
May 17, 2022
In EMC RSA Authentication Manager 8.2 SP1 and earlier, a malicious RSA Security Console...
Moderate
Unreviewed
CVE-2017-8000
was published
May 17, 2022
Cross-site request forgery (CSRF) vulnerability in Vivvo CMS before 4.0.4 allows remote attackers...
Moderate
Unreviewed
CVE-2008-6801
was published
May 17, 2022
SQL injection vulnerability in detailad.asp in Pre Classified Listings 1.0 allows remote...
High
Unreviewed
CVE-2008-6887
was published
May 17, 2022
Vulnerability in the Oracle Agile PLM component of Oracle Supply Chain Products Suite ...
Moderate
Unreviewed
CVE-2017-10093
was published
May 17, 2022
Reporter.exe in Acunetix 8 allows remote attackers to execute arbitrary code or cause a denial of...
Critical
Unreviewed
CVE-2017-11673
was published
May 17, 2022
A vulnerability in the web interface of the Cisco Web Security Appliance (WSA) could allow an...
High
Unreviewed
CVE-2017-6746
was published
May 17, 2022
EMC Isilon OneFS 7.1.x and 7.2.x before 7.2.1.3 and 8.0.x before 8.0.0.1, and IsilonSD Edge OneFS...
Moderate
Unreviewed
CVE-2016-0907
was published
May 17, 2022
NetApp Clustered Data ONTAP before 8.3.2P11, 9.0 before P4, and 9.1 before P5 allow attackers to...
Moderate
Unreviewed
CVE-2017-7947
was published
May 17, 2022
StorageCrypt 2.0.1 does not properly encrypt disks, which allows local users to obtain sensitive...
Moderate
Unreviewed
CVE-2008-6073
was published
May 17, 2022
hwpapp.dll in Hangul Word Processor allows remote attackers to execute arbitrary code via a...
High
Unreviewed
CVE-2015-6585
was published
May 17, 2022
Buffer overflow in drivers/soc/qcom/subsystem_restart.c in the Qualcomm subsystem driver in...
High
Unreviewed
CVE-2016-3858
was published
May 17, 2022
Potrace 1.14 has a heap-based buffer over-read in the interpolate_cubic function in mkbitmap.c.
High
Unreviewed
CVE-2017-12067
was published
May 17, 2022
NVIDIA GPU Display Driver contains a vulnerability in the kernel mode layer handler where an...
High
Unreviewed
CVE-2017-6259
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API