GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,198
Erlang
31
GitHub Actions
19
Go
1,986
Maven
5,000+
npm
3,702
NuGet
660
pip
3,328
Pub
11
RubyGems
883
Rust
843
Swift
36
Unreviewed advisories
All unreviewed
5,000+
906 advisories
Filter by severity
Philips iSite and IntelliSpace PACS, iSite PACS, all versions, and IntelliSpace PACS, all...
High
Unreviewed
CVE-2018-17906
was published
May 13, 2022
A vulnerability in the web interface of Cisco RV132W ADSL2+ Wireless-N VPN Routers and Cisco...
Critical
Unreviewed
CVE-2018-0127
was published
May 13, 2022
Missing authentication and improper input validation in KERUI Wifi Endoscope Camera (YPC99) allow...
Critical
Unreviewed
CVE-2018-13114
was published
May 13, 2022
IBM Security Key Lifecycle Manager 2.7 and 3.0 could allow an unauthenticated user to restart the...
High
Unreviewed
CVE-2018-1745
was published
May 13, 2022
IBM Security Identity Governance and Intelligence 5.2.3.2 and 5.2.4 could allow an attacker to...
Moderate
Unreviewed
CVE-2018-1757
was published
May 13, 2022
On D-Link DIR-823G 2018-09-19 devices, the GoAhead configuration allows /HNAP1 RunReboot commands...
High
Unreviewed
CVE-2018-17880
was published
May 13, 2022
An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and...
High
Unreviewed
CVE-2018-19079
was published
May 13, 2022
The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and...
Critical
Unreviewed
CVE-2018-19248
was published
May 13, 2022
An issue was discovered on Teracue ENC-400 devices with firmware 2.56 and below. While the web...
High
Unreviewed
CVE-2018-20220
was published
May 13, 2022
A missing authentication for appliance registration vulnerability in Trend Micro Email Encryption...
Critical
Unreviewed
CVE-2018-6223
was published
May 13, 2022
Under certain circumstances, SAP HANA Extended Application Services, advanced model (XS advanced)...
Critical
Unreviewed
CVE-2019-0261
was published
May 13, 2022
SAP Cloud Connector, before version 2.11.3, does not perform any authentication checks for...
Critical
Unreviewed
CVE-2019-0246
was published
May 13, 2022
The D-Link DIR-816 A2 1.11 router only checks the random token when authorizing a goform request....
Critical
Unreviewed
CVE-2019-10039
was published
May 13, 2022
The D-Link DIR-816 A2 1.11 router only checks the random token when authorizing a goform request....
Critical
Unreviewed
CVE-2019-10040
was published
May 13, 2022
The D-Link DIR-816 A2 1.11 router only checks the random token when authorizing a goform request....
Critical
Unreviewed
CVE-2019-10041
was published
May 13, 2022
The D-Link DIR-816 A2 1.11 router only checks the random token when authorizing a goform request....
High
Unreviewed
CVE-2019-10042
was published
May 13, 2022
An issue was discovered in Joomla! before 3.9.5. The "refresh list of helpsites" endpoint of...
High
Unreviewed
CVE-2019-10946
was published
May 13, 2022
Advantech WebAccess 8.3.4 allows unauthenticated, remote attackers to delete arbitrary files via...
High
Unreviewed
CVE-2019-3941
was published
May 13, 2022
An issue was discovered in /bin/goahead on D-Link DIR-823G devices with firmware 1.02B03. There...
High
Unreviewed
CVE-2019-7390
was published
May 13, 2022
An issue was discovered in /bin/goahead on D-Link DIR-823G devices with the firmware 1.02B03....
High
Unreviewed
CVE-2019-7389
was published
May 13, 2022
An issue was discovered on D-Link DIR-878 1.12B01 devices. Because strncpy is misused, there is a...
Critical
Unreviewed
CVE-2019-9125
was published
May 13, 2022
Phoenix Contact ILC 131 ETH, ILC 131 ETH/XC, ILC 151 ETH, ILC 151 ETH/XC, ILC 171 ETH 2TX, ILC...
Critical
Unreviewed
CVE-2019-9201
was published
May 13, 2022
The Glen Dimplex Deutschland GmbH implementation of the Carel pCOWeb configuration tool allows...
High
Unreviewed
CVE-2019-9484
was published
May 13, 2022
diag_tool.cgi on DASAN H660RM GPON routers with firmware 1.03-0022 lacks any authorization check,...
Critical
Unreviewed
CVE-2019-9974
was published
May 13, 2022
The DBPOWER U818A WIFI quadcopter drone provides FTP access over its own local access point, and...
High
Unreviewed
CVE-2017-3209
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API