GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,362
Erlang
33
GitHub Actions
22
Go
2,134
Maven
5,000+
npm
3,797
NuGet
687
pip
3,473
Pub
12
RubyGems
896
Rust
897
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,444 advisories
Filter by severity
Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices...
High
Unreviewed
CVE-2016-2286
was published
May 17, 2022
HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote...
High
Unreviewed
CVE-2016-2012
was published
May 17, 2022
Juniper ScreenOS 6.2.0r15 through 6.2.0r18, 6.3.0r12 before 6.3.0r12b, 6.3.0r13 before 6.3.0r13b,...
High
Unreviewed
CVE-2015-7755
was published
May 17, 2022
Sauter EY-WS505F0x0 moduWeb Vision before 1.6.0 allows remote attackers to bypass authentication...
High
Unreviewed
CVE-2015-7914
was published
May 17, 2022
Incorrect Access Control in Emerson Smart Wireless Gateway 1420 4.6.59 allows remote attackers to...
High
Unreviewed
CVE-2020-19419
was published
May 24, 2022
Media Origination System Suite Software 2.6 and earlier in Cisco Virtual Media Packager (VMP)...
High
Unreviewed
CVE-2016-6377
was published
May 17, 2022
The System Configuration Protocol (SCP) core messaging interface in Cisco Prime Network Registrar...
High
Unreviewed
CVE-2016-1427
was published
May 17, 2022
HP TippingPoint Security Management System (SMS) and TippingPoint Virtual Security Management...
High
Unreviewed
CVE-2015-2117
was published
May 17, 2022
SAP NetWeaver AS ABAP (Web Dynpro), versions - 731, 740, 750, 751, 752, 753, 754, 755, 782,...
High
Unreviewed
CVE-2020-26819
was published
May 24, 2022
The OAuth client Single Sign On WordPress plugin before 3.0.4 does not have authorisation and...
High
Unreviewed
CVE-2022-3119
was published
Sep 27, 2022
An improper authentication vulnerability exists in the Carlo Gavazzi UWP3.0 in multiple versions...
High
Unreviewed
CVE-2022-22523
was published
Sep 29, 2022
The Adaptive Security Device Management (ASDM) remote-management feature in Cisco Adaptive...
High
Unreviewed
CVE-2013-5511
was published
May 17, 2022
Cisco Prime Collaboration Assurance before 11.0 has a hardcoded cmuser account, which allows...
High
Unreviewed
CVE-2015-6389
was published
May 17, 2022
Yokogawa STARDOM FCN/FCJ controller R1.01 through R4.01 does not require authentication for Logic...
High
Unreviewed
CVE-2016-4860
was published
May 17, 2022
Anyterm Daemon in Infoblox Network Automation NetMRI before NETMRI-23483 allows remote attackers...
High
Unreviewed
CVE-2015-2033
was published
May 17, 2022
A vulnerability in the implementation of X.509 Version 3 for SSH authentication functionality in...
High
Unreviewed
CVE-2016-6474
was published
May 17, 2022
FortiOS 5.2.3, when configured to use High Availability (HA) and the dedicated management...
High
Unreviewed
CVE-2015-7361
was published
May 17, 2022
The m_authenticate function in modules/m_sasl.c in UnrealIRCd before 3.2.10.7 and 4.x before 4.0...
High
Unreviewed
CVE-2016-7144
was published
May 17, 2022
IBM General Parallel File System (GPFS) 3.4 before 3.4.0.32, 3.5 before 3.5.0.24, and 4.1 before...
High
Unreviewed
CVE-2015-0198
was published
May 17, 2022
Unspecified vulnerability in HP SiteScope 11.1x through 11.13 and 11.2x through 11.24 allows...
High
Unreviewed
CVE-2014-2614
was published
May 17, 2022
The "OpenID Connect Relying Party and OAuth 2.0 Resource Server" (aka mod_auth_openidc) module...
High
Unreviewed
CVE-2017-6413
was published
May 17, 2022
McAfee SmartFilter Administration, and SmartFilter Administration Bess Edition, before 4.2.1.01...
High
Unreviewed
CVE-2012-4599
was published
May 17, 2022
Authentication bypass in Netcomm router models NF20MESH, NF20, and NL1902 allows an...
High
Unreviewed
CVE-2022-4874
was published
Jan 11, 2023
The SSHv2 functionality in Cisco IOS 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.6E before 3.6.3E, 3...
High
Unreviewed
CVE-2015-6280
was published
May 17, 2022
The telnetd service in FreeBSD 9.3, 10.1, 10.2, 10.3, and 11.0 allows remote attackers to inject...
High
Unreviewed
CVE-2016-1888
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API