GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,828
Erlang
36
GitHub Actions
33
Go
2,446
Maven
5,000+
npm
4,063
NuGet
723
pip
3,866
Pub
12
RubyGems
943
Rust
1,009
Swift
39
Unreviewed advisories
All unreviewed
5,000+
135,537 advisories
Filter by severity
The KEYS subsystem in the Linux kernel before 4.10.13 allows local users to cause a denial of...
Moderate
Unreviewed
CVE-2017-7472
was published
May 13, 2022
The Windows kernel in Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows authenticated...
Moderate
Unreviewed
CVE-2017-0175
was published
May 14, 2022
The Windows kernel in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, and Windows Server 2012...
Moderate
Unreviewed
CVE-2017-0220
was published
May 17, 2022
Elastic X-Pack Security versions prior to 5.4.1 and 5.3.3 did not always correctly apply Document...
Moderate
Unreviewed
CVE-2017-8441
was published
May 13, 2022
Todd Miller's sudo version 1.8.20 and earlier is vulnerable to an input validation (embedded...
Moderate
Unreviewed
CVE-2017-1000367
was published
May 13, 2022
All versions of VAMPSET software produced by Schneider Electric, prior to V2.2.189, are...
Moderate
Unreviewed
CVE-2017-7967
was published
May 17, 2022
The read_stream function in stream.c in liblrzip.so in lrzip 0.631 allows remote attackers to...
Moderate
Unreviewed
CVE-2017-8846
was published
May 13, 2022
The lzo1x_decompress function in lzo1x_d.ch in LZO 2.08, as used in lrzip 0.631, allows remote...
Moderate
Unreviewed
CVE-2017-8845
was published
May 13, 2022
The join_pthread function in stream.c in liblrzip.so in lrzip 0.631 allows remote attackers to...
Moderate
Unreviewed
CVE-2017-8843
was published
May 13, 2022
Nextcloud Server before 11.0.3 is vulnerable to disclosure of valid share tokens for public...
Moderate
Unreviewed
CVE-2017-0894
was published
May 13, 2022
The bufRead::get() function in libzpaq/libzpaq.h in liblrzip.so in lrzip 0.631 allows remote...
Moderate
Unreviewed
CVE-2017-8847
was published
May 13, 2022
The bufRead::get() function in libzpaq/libzpaq.h in liblrzip.so in lrzip 0.631 allows remote...
Moderate
Unreviewed
CVE-2017-8842
was published
May 13, 2022
The DOT IT Banque Zitouna app 2.1 for iOS does not verify X.509 certificates from SSL servers,...
Moderate
Unreviewed
CVE-2017-5914
was published
May 13, 2022
The Dollar Bank Mobile app 2.6.3 for iOS does not verify X.509 certificates from SSL servers,...
Moderate
Unreviewed
CVE-2017-5905
was published
May 13, 2022
The Space Coast Credit Union Mobile app 2.2 for iOS and 2.1.0.1104 for Android does not verify X...
Moderate
Unreviewed
CVE-2017-3212
was published
May 13, 2022
The PayQuicker app 1.0.0 for iOS does not verify X.509 certificates from SSL servers, which...
Moderate
Unreviewed
CVE-2017-5902
was published
May 13, 2022
The 21st Century Insurance app 10.0.0 for iOS does not verify X.509 certificates from SSL servers...
Moderate
Unreviewed
CVE-2017-5919
was published
May 17, 2022
The Emirates NBD Bank P.J.S.C Emirates NBD KSA app 3.10.0 through 3.10.4 (UAE) and 2.0.1 through...
Moderate
Unreviewed
CVE-2017-5915
was published
May 17, 2022
The Great Southern Bank Great Southern Mobile Banking app before 4.0.4 for iOS does not verify X...
Moderate
Unreviewed
CVE-2017-5907
was published
May 17, 2022
The State Bank of India State Bank Anywhere app 5.1.0 for iOS does not verify X.509 certificates...
Moderate
Unreviewed
CVE-2017-5901
was published
May 17, 2022
The Think Mutual Bank Mobile Banking app 3.1.5 for iOS does not verify X.509 certificates from...
Moderate
Unreviewed
CVE-2017-3213
was published
May 17, 2022
The Everyday Health Diabetes in Check: Blood Glucose & Carb Tracker app 3.4.2 for iOS does not...
Moderate
Unreviewed
CVE-2017-5906
was published
May 17, 2022
The TradeKing Forex for iPhone app 1.2.1 for iOS does not verify X.509 certificates from SSL...
Moderate
Unreviewed
CVE-2017-5913
was published
May 17, 2022
The Banco Santander Mexico SA Supermovil app 3.5 through 3.7 for iOS does not verify X.509...
Moderate
Unreviewed
CVE-2017-5911
was published
May 17, 2022
The Electronic Funds Source (EFS) Mobile Driver Source app 2.5 for iOS does not verify X.509...
Moderate
Unreviewed
CVE-2017-5909
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API