GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,819
Erlang
36
GitHub Actions
32
Go
2,410
Maven
5,000+
npm
4,046
NuGet
723
pip
3,842
Pub
12
RubyGems
933
Rust
1,003
Swift
38
Unreviewed advisories
All unreviewed
5,000+
134,726 advisories
Filter by severity
Unspecified vulnerability in the Oracle Access Manager component in Oracle Fusion Middleware 11.1...
Moderate
Unreviewed
CVE-2014-6553
was published
May 17, 2022
Unrestricted file upload vulnerability in Infinite Automation Mango Automation 2.5.x and 2.6.x...
Moderate
Unreviewed
CVE-2015-7904
was published
May 17, 2022
The Echo extension for MediWiki does not properly implement the hideuser functionality, which...
Moderate
Unreviewed
CVE-2015-8007
was published
May 17, 2022
The Mobility Pack before 1.2 in Novell Data Synchronizer 1.x through 1.1.2 build 428 does not...
Moderate
Unreviewed
CVE-2011-2224
was published
May 17, 2022
Unspecified vulnerability in the SQLJ component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11...
Moderate
Unreviewed
CVE-2014-6454
was published
May 17, 2022
The parse function in Email::Address module before 1.905 for Perl uses an inefficient regular...
Moderate
Unreviewed
CVE-2014-0477
was published
May 17, 2022
The Cybozu Live application before 2.0.1 for Android allows remote attackers to execute arbitrary...
Moderate
Unreviewed
CVE-2013-3646
was published
May 17, 2022
Infinite Automation Mango Automation 2.5.x and 2.6.x before 2.6.0 build 430 provides different...
Moderate
Unreviewed
CVE-2015-7902
was published
May 17, 2022
Unspecified vulnerability in the Oracle Applications Technology component in Oracle E-Business...
Moderate
Unreviewed
CVE-2014-6479
was published
May 17, 2022
The default AFSecurityPolicy.validatesDomainName configuration for AFSSLPinningModeNone in the...
Moderate
Unreviewed
CVE-2015-3996
was published
May 17, 2022
Unspecified vulnerability in the Application Performance Management component in Oracle...
Moderate
Unreviewed
CVE-2014-6557
was published
May 17, 2022
The WebView class in the Cybozu Live application before 2.0.1 for Android allows attackers to...
Moderate
Unreviewed
CVE-2013-3647
was published
May 17, 2022
A certain Qualcomm Innovation Center (QuIC) patch to the NativeDaemonConnector class in services...
Moderate
Unreviewed
CVE-2013-2599
was published
May 17, 2022
Unspecified vulnerability in the SQLJ component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11...
Moderate
Unreviewed
CVE-2014-4299
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in nds/search/data in iMonitor in Novell eDirectory...
Moderate
Unreviewed
CVE-2014-5212
was published
May 17, 2022
The virtual filesystem in ownCloud Server before 6.0.9, 7.0.x before 7.0.7, and 8.0.x before 8.0...
Moderate
Unreviewed
CVE-2015-5954
was published
May 17, 2022
Unspecified vulnerability in the SQLJ component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11...
Moderate
Unreviewed
CVE-2014-4300
was published
May 17, 2022
3S-Smart CODESYS Gateway Server before 2.3.9.48 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2015-6484
was published
May 17, 2022
Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business...
Moderate
Unreviewed
CVE-2014-4281
was published
May 17, 2022
The Trading 212 FOREX (aka com.avuscapital.trading212) application before 2.0.9 for Android does...
Moderate
Unreviewed
CVE-2014-5578
was published
May 17, 2022
SAP HANA DB 1.00.73.00.389160 (NewDB100_REL) allows remote authenticated users to cause a denial...
Moderate
Unreviewed
CVE-2015-7992
was published
May 17, 2022
The chunked upload API (ApiUpload) in MediaWiki before 1.23.11, 1.24.x before 1.24.4, and 1.25.x...
Moderate
Unreviewed
CVE-2015-8002
was published
May 17, 2022
Unspecified vulnerability in the Oracle Access Manager component in Oracle Fusion Middleware 11.1...
Moderate
Unreviewed
CVE-2014-6462
was published
May 17, 2022
Graphics Driver in Apple OS X before 10.9.4 does not properly restrict read operations during...
Moderate
Unreviewed
CVE-2014-1372
was published
May 17, 2022
mediaserver in Android 5.x before 5.1.1 LMY48T and 6.0 before 2015-10-01 allows attackers to...
Moderate
Unreviewed
CVE-2015-7718
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API