GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,077
Erlang
29
GitHub Actions
19
Go
1,903
Maven
5,000+
npm
3,632
NuGet
638
pip
3,249
Pub
10
RubyGems
864
Rust
818
Swift
35
Unreviewed advisories
All unreviewed
5,000+
941 advisories
Filter by severity
Samsung Gallery in the Samsung Galaxy S6 allows local users to cause a denial of service (process...
Moderate
Unreviewed
CVE-2015-7898
was published
May 17, 2022
Cybozu Garoon 3.0.0 to 4.2.2 allows remote authenticated attackers to bypass access restriction...
Moderate
Unreviewed
CVE-2016-4908
was published
May 17, 2022
stalin 0.11-5 allows local users to write to arbitrary files.
Moderate
Unreviewed
CVE-2015-8697
was published
May 17, 2022
Samsung SM-G920F build G920FXXU2COH2 (Galaxy S6), SM-N9005 build N9005XXUGBOK6 (Galaxy Note 3),...
Moderate
Unreviewed
CVE-2016-4030
was published
May 17, 2022
MediaWiki before 1.23.15, 1.26.x before 1.26.4, and 1.27.x before 1.27.1 allows remote...
Moderate
Unreviewed
CVE-2016-6336
was published
May 17, 2022
Samsung SM-G920F build G920FXXU2COH2 (Galaxy S6), SM-N9005 build N9005XXUGBOK6 (Galaxy Note 3),...
Moderate
Unreviewed
CVE-2016-4032
was published
May 17, 2022
Cybozu Garoon 3.0.0 to 4.2.2 allows remote authenticated attackers to bypass access restriction...
Moderate
Unreviewed
CVE-2016-4910
was published
May 17, 2022
markdown-it before 4.1.0 does not block data: URLs.
Moderate
Unreviewed
CVE-2015-3295
was published
May 17, 2022
Nextcloud Server before 9.0.52 & ownCloud Server before 9.0.4 are vulnerable to a content...
Moderate
Unreviewed
CVE-2016-9460
was published
May 17, 2022
LVRTC eParakstitajs 3.0 (1.3.0) and edoc-libraries-2.5.4_01 allow attackers to write to arbitrary...
Moderate
Unreviewed
CVE-2015-8275
was published
May 17, 2022
The MessageStatusReceiver service in the AndroidManifest.XML in Android 5.1.1 and earlier allows...
Moderate
Unreviewed
CVE-2015-3840
was published
May 17, 2022
Samsung Gallery on the Samsung Galaxy S6 allows local users to cause a denial of service (process...
Moderate
Unreviewed
CVE-2015-7895
was published
May 17, 2022
Cybozu Garoon 3.0.0 to 4.2.2 allows remote attackers to bypass access restrictions to delete...
Moderate
Unreviewed
CVE-2016-7801
was published
May 17, 2022
In all Android releases from CAF using the Linux kernel, libtomcrypt was updated.
Moderate
Unreviewed
CVE-2016-10335
was published
May 17, 2022
An authenticated user with admin privileges may be able to terminate any process on the system...
Moderate
Unreviewed
CVE-2022-2088
was published
Jun 28, 2022
In all Android releases from CAF using the Linux kernel, a dynamically-protected DDR region could...
Moderate
Unreviewed
CVE-2016-10334
was published
May 17, 2022
In all Android releases from CAF using the Linux kernel, some interfaces were improperly exposed...
Moderate
Unreviewed
CVE-2015-9024
was published
May 17, 2022
In all Android releases from CAF using the Linux kernel, access control to SMEM memory was not...
Moderate
Unreviewed
CVE-2015-9021
was published
May 17, 2022
The Firefox Health Reports (aka FHR or about:healthreport) feature in Mozilla Firefox before 46.0...
Moderate
Unreviewed
CVE-2016-2820
was published
May 17, 2022
Unspecified vulnerability in the PeopleSoft Enterprise SCM Services Procurement component in...
Moderate
Unreviewed
CVE-2016-5600
was published
May 17, 2022
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise...
Moderate
Unreviewed
CVE-2016-5604
was published
May 17, 2022
Unspecified vulnerability in the Oracle FLEXCUBE Enterprise Limits and Collateral Management...
Moderate
Unreviewed
CVE-2016-5569
was published
May 17, 2022
Unspecified vulnerability in the PeopleSoft Enterprise HCM component in Oracle PeopleSoft...
Moderate
Unreviewed
CVE-2016-8292
was published
May 17, 2022
In all Android releases from CAF using the Linux kernel, a sensitive system call was allowed to...
Moderate
Unreviewed
CVE-2016-10333
was published
May 17, 2022
In F5 BIG-IP systems 12.1.0 - 12.1.2, malicious requests made to virtual servers with an HTTP...
Moderate
Unreviewed
CVE-2016-9245
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API