GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
1,002 advisories
Filter by severity
A flaw was found in the default configuration of dnsmasq, as shipped with Fedora versions prior...
Moderate
Unreviewed
CVE-2020-14312
was published
May 24, 2022
The Realteo WordPress plugin before 1.2.4, used by the Findeo Theme, did not ensure that the...
Moderate
Unreviewed
CVE-2021-24238
was published
May 24, 2022
In the Simple 301 Redirects by BetterLinks WordPress plugin before 2.0.4, the lack of capability...
Moderate
Unreviewed
CVE-2021-24355
was published
May 24, 2022
IBM WebSphere Application Server (WAS) 7.x before 7.0.0.43, 8.0.0.x before 8.0.0.13, 8.5.0.x...
Moderate
Unreviewed
CVE-2016-2960
was published
May 17, 2022
Cisco Prime Infrastructure 2.2(2) does not properly restrict use of IFRAME elements, which makes...
Moderate
Unreviewed
CVE-2016-1474
was published
May 17, 2022
A vulnerability in Cisco Webex Meetings for Android could allow an authenticated, remote attacker...
Moderate
Unreviewed
CVE-2021-1467
was published
May 24, 2022
Telephony in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0...
Moderate
Unreviewed
CVE-2016-3898
was published
May 17, 2022
The Thrive Optimize WordPress plugin before 1.4.13.3, Thrive Comments WordPress plugin before 1.4...
Moderate
Unreviewed
CVE-2021-24219
was published
May 24, 2022
internal/telephony/SMSDispatcher.java in Telephony in Android 4.x before 4.4.4, 5.0.x before 5.0...
Moderate
Unreviewed
CVE-2016-3883
was published
May 17, 2022
The Timetable and Event Schedule WordPress plugin before 2.4.2 does not have proper access...
Moderate
Unreviewed
CVE-2021-24584
was published
May 24, 2022
The Batch Cat WordPress plugin through 0.3 defines 3 custom AJAX actions, which both require...
Moderate
Unreviewed
CVE-2021-24788
was published
May 24, 2022
A denial of service vulnerability exists in the syscall filtering functionality of the Kaspersky...
Moderate
Unreviewed
CVE-2016-4304
was published
May 17, 2022
The Easy Cookies Policy WordPress plugin through 1.6.2 is lacking any capability and CSRF check...
Moderate
Unreviewed
CVE-2021-24405
was published
May 24, 2022
server/notification/NotificationManagerService.java in the Notification Manager Service in...
Moderate
Unreviewed
CVE-2016-3884
was published
May 17, 2022
A denial of service vulnerability exists in the IOCTL handling functionality of Kaspersky...
Moderate
Unreviewed
CVE-2016-4307
was published
May 17, 2022
The WP Survey Plus WordPress plugin through 1.0 does not have any authorisation and CSRF checks...
Moderate
Unreviewed
CVE-2021-24801
was published
May 24, 2022
Vulnerable versions of the Jupiter Theme (<= 6.10.1) allow arbitrary plugin deletion by any...
Moderate
Unreviewed
CVE-2022-1658
was published
Jun 14, 2022
Unspecified vulnerability in the Oracle Interaction Center Intelligence component in Oracle E...
Moderate
Unreviewed
CVE-2016-5585
was published
May 17, 2022
Unspecified vulnerability in the Oracle iRecruitment component in Oracle E-Business Suite 12.1.1...
Moderate
Unreviewed
CVE-2016-5581
was published
May 17, 2022
Unspecified vulnerability in the Oracle Applications DBA component in Oracle E-Business Suite 12...
Moderate
Unreviewed
CVE-2016-5571
was published
May 17, 2022
Unspecified vulnerability in the Oracle Applications DBA component in Oracle E-Business Suite 12...
Moderate
Unreviewed
CVE-2016-5570
was published
May 17, 2022
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial...
Moderate
Unreviewed
CVE-2016-5502
was published
May 17, 2022
Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 12.1.0.2...
Moderate
Unreviewed
CVE-2016-5497
was published
May 17, 2022
A denial of service vulnerability exists in the syscall filtering functionality of Kaspersky...
Moderate
Unreviewed
CVE-2016-4305
was published
May 17, 2022
Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host panic) by...
Moderate
Unreviewed
CVE-2016-9815
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API