GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,303
Erlang
31
GitHub Actions
21
Go
2,072
Maven
5,000+
npm
3,744
NuGet
669
pip
3,430
Pub
12
RubyGems
892
Rust
880
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
271 advisories
Filter by severity
An exploitable code execution vulnerability exists in the Web-Based Management (WBM)...
High
Unreviewed
CVE-2020-6090
was published
May 24, 2022
A vulnerability in the hardware crypto driver of Cisco IOS XE Software for Cisco 4300 Series...
High
Unreviewed
CVE-2020-3220
was published
May 24, 2022
A flaw was found in the Linux kernels SELinux LSM hook implementation before version 5.7, where...
Low
Unreviewed
CVE-2020-10751
was published
May 24, 2022
An exploitable code execution vulnerability exists in the PLC_Task functionality of 3S-Smart...
Moderate
Unreviewed
CVE-2020-6081
was published
May 24, 2022
** DISPUTED ** A certain Postfix 2.10.1-7 package could allow an attacker to send an email from...
Moderate
Unreviewed
CVE-2020-12063
was published
May 24, 2022
A CWE-345: Insufficient Verification of Data Authenticity vulnerability exists which could allow...
High
Unreviewed
CVE-2020-7487
was published
May 24, 2022
An issue was discovered on Tata Sonata Smart SF Rush 1.12 devices. It has been identified that...
Moderate
Unreviewed
CVE-2020-11539
was published
May 24, 2022
Insufficient data validation in developer tools in Google Chrome prior to 81.0.4044.92 allowed a...
Moderate
Unreviewed
CVE-2020-6443
was published
May 24, 2022
An issue was discovered in OpenWrt 18.06.0 to 18.06.6 and 19.07.0, and LEDE 17.01.0 to 17.01.7. A...
Moderate
Unreviewed
CVE-2020-7982
was published
May 24, 2022
A bug in Nextcloud Server 17.0.1 causes the workflow rules to depend their behaviour on the file...
Moderate
Unreviewed
CVE-2019-15613
was published
May 24, 2022
com.proxyman.NSProxy.HelperTool in Privileged Helper Tool in Proxyman for macOS 1.11.0 and...
Moderate
Unreviewed
CVE-2019-20057
was published
May 24, 2022
RouterOS versions 6.45.6 Stable, 6.44.5 Long-term, and below are vulnerable to a DNS unrelated...
High
Unreviewed
CVE-2019-3979
was published
May 24, 2022
Mirror zones are a BIND feature allowing recursive servers to pre-cache zone data provided by...
High
Unreviewed
CVE-2019-6475
was published
May 24, 2022
In SAP NetWeaver Process Integration (AS2 Adapter), before versions 1.0 and 2.0, the attacker is...
Moderate
Unreviewed
CVE-2019-0379
was published
May 24, 2022
rpcapd/daemon.c in libpcap before 1.9.1 on non-Windows platforms provides details about why...
Moderate
Unreviewed
CVE-2019-15162
was published
May 24, 2022
If a wildcard ('*') is specified for the host in Content Security Policy (CSP) directives, any...
Moderate
Unreviewed
CVE-2019-11737
was published
May 24, 2022
A vulnerability in the statistics collection service of Cisco HyperFlex Software could allow an...
Moderate
Unreviewed
CVE-2019-12620
was published
May 24, 2022
A weakness was found in Encrypt Only boot mode in Zynq UltraScale+ devices. This could lead to an...
Moderate
Unreviewed
CVE-2019-5478
was published
May 24, 2022
Lack of root file system integrity checking in Fortinet FortiManager VM application images of all...
Critical
Unreviewed
CVE-2019-6695
was published
May 24, 2022
It was found that in icedtea-web up to and including 1.7.2 and 1.8.2 executable code could be...
High
Unreviewed
CVE-2019-10181
was published
May 24, 2022
In Hunesion i-oneNet version 3.0.7 ~ 3.0.53 and 4.0.4 ~ 4.0.16, due to the lack of update file...
Moderate
Unreviewed
CVE-2019-12804
was published
May 24, 2022
A vulnerability in Cisco Advanced Malware Protection (AMP) for Endpoints for Windows could allow...
High
Unreviewed
CVE-2019-1932
was published
May 24, 2022
Due to unencrypted and unauthenticated data communication, the wireless presenter Inateck WP2002...
High
Unreviewed
CVE-2019-12504
was published
May 24, 2022
A vulnerability in the BIOS upgrade utility of Cisco Unified Computing System (UCS) C-Series Rack...
Moderate
Unreviewed
CVE-2019-1880
was published
May 24, 2022
This vulnerability was caused by an incomplete fix to CVE-2017-0911. Twitter Kit for iOS versions...
Moderate
Unreviewed
CVE-2019-5431
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API