GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,701
Maven
5,000+
npm
4,328
NuGet
761
pip
4,103
Pub
12
RubyGems
958
Rust
1,064
Swift
45
Unreviewed advisories
All unreviewed
5,000+
11,624 advisories
Filter by severity
BarnOwl before 1.6.2 does not check the return code of calls to the (1) ZPending and (2)...
High
Unreviewed
CVE-2010-2725
was published
May 17, 2022
Improper input validation vulnerability in HANDY Groupware’s ActiveX moudle allows attackers to...
Critical
Unreviewed
CVE-2021-26630
was published
May 20, 2022
Microsoft Windows Media Player (WMP) 9.0 through 11 allows user-assisted attackers to cause a...
Moderate
Unreviewed
CVE-2008-4927
was published
May 17, 2022
The DRDA Services component in IBM DB2 UDB 9.5 before FP6a allows remote authenticated users to...
Low
Unreviewed
CVE-2010-3732
was published
May 17, 2022
Untrusted search path vulnerability in (1) hvdisp and (2) rcvm in ReliantHA 1.1.4 in SCO UnixWare...
High
Unreviewed
CVE-2008-6558
was published
May 17, 2022
Improper Input Validation in GitHub repository jgraph/drawio prior to 18.0.6.
High
Unreviewed
CVE-2022-1727
was published
May 19, 2022
Syslserve 1.058 and earlier, and probably 1.059, allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2008-6058
was published
May 17, 2022
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm...
Moderate
Unreviewed
CVE-2022-28190
was published
May 18, 2022
manager.c in the Manager Interface in Asterisk Open Source 1.4.x before 1.4.40.1, 1.6.1.x before...
High
Unreviewed
CVE-2011-1599
was published
May 17, 2022
IBM WebSphere Application Server Liberty 17.0.0.3 through 22.0.0.5 and Open Liberty are...
Moderate
Unreviewed
CVE-2022-22475
was published
May 18, 2022
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm...
Moderate
Unreviewed
CVE-2022-28186
was published
May 18, 2022
Commands.pm in Mojolicious before 0.999928 does not properly perform CGI environment detection,...
High
Unreviewed
CVE-2010-4802
was published
May 17, 2022
micro_httpd on the RCA DCM425 cable modem allows remote attackers to cause a denial of service ...
Moderate
Unreviewed
CVE-2010-1544
was published
May 17, 2022
sandra.sys 15.18.1.1 and earlier in the Sandra Device Driver in SiSoftware Sandra 16.10.2010.1...
Moderate
Unreviewed
CVE-2010-1592
was published
May 17, 2022
MediaCAST 8 and earlier allows remote attackers to have an unspecified impact via a (1)...
High
Unreviewed
CVE-2011-2079
was published
May 17, 2022
CFNetwork in Apple Mac OS X 10.6.x before 10.6.5 does not properly validate the domains of...
Moderate
Unreviewed
CVE-2010-1834
was published
May 17, 2022
SolarWinds TFTP Server 10.4.0.10 allows remote attackers to cause a denial of service (no new...
Moderate
Unreviewed
CVE-2010-2115
was published
May 17, 2022
The FLV ASSET Xtra component in Adobe Shockwave Player before 11.6.0.626 allows attackers to...
High
Unreviewed
CVE-2011-2118
was published
May 17, 2022
A vulnerability exists in Sphider Search Engine prior to 1.3.6 due to exec calls in admin...
High
Unreviewed
CVE-2014-5087
was published
May 17, 2022
Disk Images in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute...
High
Unreviewed
CVE-2010-1841
was published
May 17, 2022
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality...
Moderate
Unreviewed
CVE-2021-44418
was published
Jan 29, 2022
Cisco IOS 15.1(2)T allows remote attackers to cause a denial of service (resource consumption and...
High
Unreviewed
CVE-2010-2827
was published
May 17, 2022
Client.cpp in ZNC 0.092 allows remote attackers to cause a denial of service (exception and...
Moderate
Unreviewed
CVE-2010-2812
was published
May 17, 2022
JBoss Enterprise Service Bus (ESB) before 4.7 CP02 in JBoss Enterprise SOA Platform before 5.0.2...
Low
Unreviewed
CVE-2010-2474
was published
May 17, 2022
LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script,...
Critical
Unreviewed
CVE-2019-9851
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API