GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,790
Erlang
36
GitHub Actions
29
Go
2,370
Maven
5,000+
npm
3,994
NuGet
720
pip
3,783
Pub
12
RubyGems
927
Rust
982
Swift
38
Unreviewed advisories
All unreviewed
5,000+
4,946 advisories
Filter by severity
Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker...
High
Unreviewed
CVE-2021-1279
was published
May 24, 2022
An issue was discovered in CubeCoders AMP before 2.1.1.8. A lack of validation of the Java...
High
Unreviewed
CVE-2021-34539
was published
May 24, 2022
Incomplete List of Disallowed Inputs in ManageEngine ServiceDesk Plus before version 11205 allows...
High
Unreviewed
CVE-2021-20081
was published
May 24, 2022
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote...
High
Unreviewed
CVE-2021-1137
was published
May 24, 2022
A vulnerability in the email parsing module in Clam AntiVirus (ClamAV) Software version 0.103.0...
High
Unreviewed
CVE-2021-1404
was published
May 24, 2022
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker...
High
Unreviewed
CVE-2021-1514
was published
May 24, 2022
In sqlite3_str_vappendf of sqlite3.c, there is a possible out of bounds write due to improper...
High
Unreviewed
CVE-2021-0646
was published
May 24, 2022
Cscape (All Versions prior to 9.90 SP5) lacks proper validation of user-supplied data when...
High
Unreviewed
CVE-2021-32995
was published
May 24, 2022
A memory corruption issue was addressed with improved validation. This issue is fixed in macOS...
High
Unreviewed
CVE-2021-1840
was published
May 24, 2022
There is an Unauthorized file access vulnerability in Huawei Smartphone due to unstandardized...
High
Unreviewed
CVE-2021-36991
was published
May 24, 2022
Winny 2.0b7.1 and earlier does not properly process BBS information, which has unspecified impact...
High
Unreviewed
CVE-2010-2361
was published
May 17, 2022
Unrestricted file upload vulnerability in form_upload.php in PHPG Upload 1.0 allows remote...
High
Unreviewed
CVE-2008-6207
was published
May 17, 2022
The Zone Controller service in the Zoom On-Premise Meeting Connector Controller before version 4...
High
Unreviewed
CVE-2021-34415
was published
May 24, 2022
In onCreate of ConfirmConnectActivity, there is a possible remote bypass of user consent due to...
High
Unreviewed
CVE-2021-0594
was published
May 24, 2022
A vulnerability in the Excel XLM macro parsing module in Clam AntiVirus (ClamAV) Software...
High
Unreviewed
CVE-2021-1252
was published
May 24, 2022
The web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1...
High
Unreviewed
CVE-2016-1472
was published
May 17, 2022
A vulnerability in the software-based SSL/TLS message handler of Cisco Firepower Threat Defense ...
High
Unreviewed
CVE-2021-1402
was published
May 24, 2022
A CWE-20: Improper Input Validation vulnerability exists that could cause potential remote code...
High
Unreviewed
CVE-2022-30232
was published
Jun 3, 2022
Due to improper input sanitization, an authenticated user with certain specific privileges can...
High
Unreviewed
CVE-2021-38176
was published
May 24, 2022
A vulnerability in the web-based management interface of certain Cisco Small Business RV Series...
High
Unreviewed
CVE-2021-40120
was published
May 24, 2022
Insufficient input validation in PSP firmware for discrete TPM commands could allow a potential...
High
Unreviewed
CVE-2020-12946
was published
May 24, 2022
Cisco IP Phone 8800 devices with software 11.0(1) allow remote attackers to cause a denial of...
High
Unreviewed
CVE-2016-1479
was published
May 17, 2022
The Grapevine update process in Cisco Application Policy Infrastructure Controller Enterprise...
High
Unreviewed
CVE-2016-1365
was published
May 17, 2022
The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in Cisco IOS XE 2.1 through...
High
Unreviewed
CVE-2016-1409
was published
May 17, 2022
Windows Hyper-V in Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold,...
High
Unreviewed
CVE-2017-8664
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API