GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
61
GitHub Actions
50
Go
3,821
Maven
5,000+
npm
5,000+
NuGet
939
pip
5,000+
Pub
13
RubyGems
1,059
Rust
1,357
Swift
54
Unreviewed advisories
All unreviewed
5,000+
14,305 advisories
Filter by severity
The SMB dissector in Wireshark 0.99.6 through 1.0.13, and 1.2.0 through 1.2.8 allows remote...
Low
Unreviewed
CVE-2010-2283
was published
May 17, 2022
The nsDocShell::OnRedirectStateChange function in docshell/base/nsDocShell.cpp in Mozilla Firefox...
Low
Unreviewed
CVE-2010-2751
was published
May 17, 2022
The SigComp Universal Decompressor Virtual Machine dissector in Wireshark 0.10.7 through 1.0.13...
Low
Unreviewed
CVE-2010-2286
was published
May 17, 2022
IBM DB2 9.7 before FP2, when AUTO_REVAL is IMMEDIATE, allows remote authenticated users to cause...
Low
Unreviewed
CVE-2010-3196
was published
May 17, 2022
Unspecified vulnerability in sa_snap in the bos.esagent fileset in IBM AIX 5.3 allows local users...
Low
Unreviewed
CVE-2010-3406
was published
May 17, 2022
Unspecified vulnerability in the Networking component in Oracle Java SE and Java for Business 6...
Low
Unreviewed
CVE-2010-3560
was published
May 17, 2022
The Delete Private Data feature in Opera before 11.01 does not properly implement the "Clear all...
Low
Unreviewed
CVE-2011-0685
was published
May 17, 2022
Unspecified vulnerability in IBM DB2 9.7 before FP5 on UNIX, when the Self Tuning Memory Manager ...
Low
Unreviewed
CVE-2011-1373
was published
May 17, 2022
Unspecified vulnerability in Oracle VM VirtualBox 3.0, 3.1, 3.2, and 4.0 through 4.0.8 allows...
Low
Unreviewed
CVE-2011-2300
was published
May 17, 2022
Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4...
Low
Unreviewed
CVE-2011-2372
was published
May 17, 2022
Mozilla Firefox 7.0 and Thunderbird 7.0, when the Direct2D (aka D2D) API is used on Windows in...
Low
Unreviewed
CVE-2011-3649
was published
May 17, 2022
cipher.c in the Cipher API in libpurple in Pidgin before 2.7.10 retains encryption-key data in...
Low
Unreviewed
CVE-2011-4922
was published
May 17, 2022
The ProcSetEventMask function in difs/events.c in the xfs font server for X.Org X11R6 through...
Low
Unreviewed
CVE-2012-1699
was published
May 17, 2022
Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 allows remote attackers to cause a denial of...
Low
Unreviewed
CVE-2012-2392
was published
May 17, 2022
epan/dissectors/packet-diameter.c in the DIAMETER dissector in Wireshark 1.4.x before 1.4.13 and...
Low
Unreviewed
CVE-2012-2393
was published
May 17, 2022
389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server before 8.2.10-3), after the...
Low
Unreviewed
CVE-2012-2678
was published
May 17, 2022
389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server before 8.2.10-3), when the...
Low
Unreviewed
CVE-2012-2746
was published
May 17, 2022
Unspecified vulnerability in the Oracle VM Virtual Box component in Oracle Virtualization 3.2, 4...
Low
Unreviewed
CVE-2012-3221
was published
May 17, 2022
Multiple integer overflows in Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 allow remote...
Low
Unreviewed
CVE-2012-3825
was published
May 17, 2022
Multiple integer underflows in Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 allow remote...
Low
Unreviewed
CVE-2012-3826
was published
May 17, 2022
The PPP dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8.x before 1.8.1...
Low
Unreviewed
CVE-2012-4048
was published
May 17, 2022
Array index error in the channelised_fill_sdh_g707_format function in epan/dissectors/packet-erf...
Low
Unreviewed
CVE-2012-4295
was published
May 17, 2022
org/apache/tomcat/util/net/NioEndpoint.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0...
Low
Unreviewed
CVE-2012-4534
was published
May 17, 2022
The dissect_hsrp function in epan/dissectors/packet-hsrp.c in the HSRP dissector in Wireshark 1.8...
Low
Unreviewed
CVE-2012-5237
was published
May 17, 2022
epan/dissectors/packet-ppp.c in the PPP dissector in Wireshark 1.8.x before 1.8.3 uses incorrect...
Low
Unreviewed
CVE-2012-5238
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API