GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,662
Maven
5,000+
npm
4,289
NuGet
760
pip
4,069
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,725 advisories
Filter by severity
EMC Documentum WebTop 6.8 before Patch 13 and 6.8.1 before Patch 02, Documentum Administrator 7.x...
Moderate
Unreviewed
CVE-2016-0914
was published
May 17, 2022
A write protection and execution bypass vulnerability in McAfee (now Intel Security) Change...
Moderate
Unreviewed
CVE-2013-7461
was published
May 17, 2022
The Posture module for Cisco Identity Services Engine (ISE), as distributed in Cisco AnyConnect...
Moderate
Unreviewed
CVE-2015-0755
was published
May 17, 2022
MediaWiki before 1.23.12, 1.24.x before 1.24.5, 1.25.x before 1.25.4, and 1.26.x before 1.26.1 do...
Moderate
Unreviewed
CVE-2015-8627
was published
May 17, 2022
Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services...
Moderate
Unreviewed
CVE-2016-8316
was published
May 17, 2022
Cybozu Garoon before 4.2.2 does not properly restrict access.
Moderate
Unreviewed
CVE-2016-1220
was published
May 17, 2022
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel...
Moderate
Unreviewed
CVE-2016-8330
was published
May 17, 2022
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services...
Moderate
Unreviewed
CVE-2016-8304
was published
May 17, 2022
Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services...
Moderate
Unreviewed
CVE-2016-8319
was published
May 17, 2022
IBM Tivoli Security Directory Server 6.0 before iFix 75, 6.1 before iFix 68, 6.2 before iFix 44,...
Moderate
Unreviewed
CVE-2015-1959
was published
May 17, 2022
IBM WebSphere MQ 8.0 could allow an authenticated user with access to the queue manager to bring...
Moderate
Unreviewed
CVE-2016-8986
was published
May 17, 2022
Unauthorized execution of binary vulnerability in McAfee (now Intel Security) McAfee Application...
Moderate
Unreviewed
CVE-2014-9920
was published
May 17, 2022
Vulnerability in the Oracle FLEXCUBE Enterprise Limits and Collateral Management component of...
Moderate
Unreviewed
CVE-2016-8320
was published
May 17, 2022
Vulnerability in the Oracle FLEXCUBE Core Banking component of Oracle Financial Services...
Moderate
Unreviewed
CVE-2016-8324
was published
May 17, 2022
IBM Tivoli Storage Manager Operations Center could allow an authenticated attacker to enable or...
Moderate
Unreviewed
CVE-2016-6044
was published
May 17, 2022
Authentication bypass vulnerability in McAfee Host Intrusion Prevention Services (HIPS) 8.0 Patch...
Moderate
Unreviewed
CVE-2016-8007
was published
May 17, 2022
WebKit in Apple iOS before 9 does not properly select the cases in which a Cascading Style Sheets...
Moderate
Unreviewed
CVE-2015-5826
was published
May 17, 2022
The Telephony component in Apple iOS before 8.3 allows attackers to bypass a sandbox protection...
Moderate
Unreviewed
CVE-2015-1115
was published
May 17, 2022
The structured-clone implementation in Mozilla Firefox before 34.0 and SeaMonkey before 2.31 does...
Moderate
Unreviewed
CVE-2014-8632
was published
May 17, 2022
A write protection and execution bypass vulnerability in McAfee (now Intel Security) Application...
Moderate
Unreviewed
CVE-2013-7460
was published
May 17, 2022
Zoho NetFlow Analyzer build 10250 and earlier does not have an off autocomplete attribute for a...
Moderate
Unreviewed
CVE-2015-4418
was published
May 17, 2022
IBM WebSphere MQ 8.0 could allow an authenticated user with access to the queue manager and queue...
Moderate
Unreviewed
CVE-2016-8915
was published
May 17, 2022
The web interface in Cisco FireSIGHT Management Center 5.3.1.4 allows remote attackers to delete...
Moderate
Unreviewed
CVE-2015-4302
was published
May 17, 2022
IBM Cognos Disclosure Management 10.2 could allow a malicious attacker to execute commands as a...
Moderate
Unreviewed
CVE-2016-6077
was published
May 17, 2022
Cisco Identity Services Engine (ISE) before 2.0 allows remote authenticated users to bypass...
Moderate
Unreviewed
CVE-2015-6317
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API