GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,299
Erlang
31
GitHub Actions
21
Go
2,064
Maven
5,000+
npm
3,744
NuGet
668
pip
3,424
Pub
12
RubyGems
892
Rust
877
Swift
36
Unreviewed advisories
All unreviewed
5,000+
285 advisories
Filter by severity
IBM Security Privileged Identity Manager Virtual Appliance version 2.0.2 uses an inadequate...
Critical
Unreviewed
CVE-2016-5964
was published
May 17, 2022
Vulnerability in the Oracle One-to-One Fulfillment component of Oracle E-Business Suite ...
Critical
Unreviewed
CVE-2016-8325
was published
May 17, 2022
Salt allows deleted minions to read or write to minions with the same id
Critical
CVE-2016-9639
was published
for
salt
(pip)
May 17, 2022
IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 uses an inadequate account lockout setting that...
Critical
Unreviewed
CVE-2016-6095
was published
May 17, 2022
MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allow attackers to...
Critical
Unreviewed
CVE-2016-9412
was published
May 17, 2022
Vivint Sky Control Panel 1.1.1.9926 allows remote attackers to enable and disable the alarm...
Critical
Unreviewed
CVE-2014-8362
was published
May 17, 2022
sociomantic-tsunami git-hub before 0.10.3 allows remote attackers to execute arbitrary code via a...
Critical
Unreviewed
CVE-2016-7794
was published
May 17, 2022
The REPL server (--listen) in GNU Guile 2.0.12 allows an attacker to execute arbitrary code via...
Critical
Unreviewed
CVE-2016-8606
was published
May 17, 2022
include/functions_installer.inc.php in Serendipity through 2.0.5 is vulnerable to File Inclusion...
Critical
Unreviewed
CVE-2016-10082
was published
May 17, 2022
The following SIEMENS branded IP Camera Models CCMW3025, CVMW3025-IR, CFMW3025 prior to version 1...
Critical
Unreviewed
CVE-2016-9155
was published
May 17, 2022
The file scanning mechanism of JFilterInput::isFileSafe() in Joomla! CMS before 3.6.5 does not...
Critical
Unreviewed
CVE-2016-9836
was published
May 17, 2022
The server in HP Release Control 9.13, 9.20, and 9.21 allows remote attackers to execute...
Critical
Unreviewed
CVE-2016-1999
was published
May 17, 2022
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006...
Critical
Unreviewed
CVE-2016-1117
was published
May 17, 2022
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006...
Critical
Unreviewed
CVE-2016-1062
was published
May 17, 2022
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006...
Critical
Unreviewed
CVE-2016-1042
was published
May 17, 2022
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006...
Critical
Unreviewed
CVE-2016-1044
was published
May 17, 2022
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006...
Critical
Unreviewed
CVE-2016-1040
was published
May 17, 2022
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006...
Critical
Unreviewed
CVE-2016-1039
was published
May 17, 2022
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006...
Critical
Unreviewed
CVE-2016-1041
was published
May 17, 2022
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006...
Critical
Unreviewed
CVE-2016-1038
was published
May 17, 2022
The management-services protocol implementation in Veritas NetBackup 7.x through 7.5.0.7, 7.6.0.x...
Critical
Unreviewed
CVE-2015-6552
was published
May 17, 2022
bpcd in Veritas NetBackup 7.x through 7.5.0.7, 7.6.0.x through 7.6.0.4, 7.6.1.x through 7.6.1.2,...
Critical
Unreviewed
CVE-2015-6550
was published
May 17, 2022
A remote code execution vulnerability in the Qualcomm crypto driver in Android before 2016-11-05...
Critical
Unreviewed
CVE-2016-6725
was published
May 17, 2022
The multi-tenant database container feature in SAP HANA does not properly encrypt communications,...
Critical
Unreviewed
CVE-2016-6150
was published
May 17, 2022
SAP TREX 7.10 Revision 63 allows remote attackers to write to arbitrary files via vectors related...
Critical
Unreviewed
CVE-2016-6140
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API