GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,324
Erlang
31
GitHub Actions
21
Go
2,086
Maven
5,000+
npm
3,747
NuGet
674
pip
3,436
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
232 advisories
Filter by severity
XML external entity (XXE) vulnerability in Jenkins
High
CVE-2015-1809
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
May 24, 2022
Jenkins Maven Release Plug-in Plugin XXE vulnerability
High
CVE-2019-16549
was published
for
org.jenkins-ci.plugins.m2release:m2release
(Maven)
May 24, 2022
Improper Restriction of XML External Entity Reference in Apache POI
Moderate
CVE-2019-12415
was published
for
org.apache.poi:poi
(Maven)
May 24, 2022
Jenkins 360 FireLine Plugin vulnerable to XML External Entity Reference
High
CVE-2019-10466
was published
for
org.jenkins-ci.plugins.plugin:fireline
(Maven)
May 24, 2022
Improper Restriction of XML External Entity Reference Jenkins Token Macro Plugin
High
CVE-2019-10337
was published
for
org.jenkins-ci.plugins:token-macro
(Maven)
May 24, 2022
Jenkins Self-Organizing Swarm Plug-in Modules Plugin XXE vulnerability via UDP broadcast response
Moderate
CVE-2019-10309
was published
for
org.jenkins-ci.plugins:swarm
(Maven)
May 24, 2022
XML External Entity Reference in Jenkins Storable Configs Plugin
High
CVE-2022-30971
was published
for
org.jvnet.hudson.plugins:storable-configs-plugin
(Maven)
May 18, 2022
Improper Restriction of XML External Entity Reference in Apache Solr
High
CVE-2012-6612
was published
for
org.apache.solr:solr-core
(Maven)
May 17, 2022
Apache Solr UpdateRequestHandler for XML resolves XML External Entities
Moderate
CVE-2013-6407
was published
for
org.apache.solr:solr-core
(Maven)
May 17, 2022
XML External Entity Reference in RESTEasy
Moderate
CVE-2014-7839
was published
for
org.jboss.resteasy:resteasy-jaxrs
(Maven)
May 17, 2022
Apache OpenMeetings does not correctly validate uploaded XML documents
Critical
CVE-2017-7664
was published
for
org.apache.openmeetings:openmeetings-parent
(Maven)
May 17, 2022
XML External Entity Reference in Apache Sling
Critical
CVE-2016-6798
was published
for
org.apache.sling:org.apache.sling.xss
(Maven)
May 17, 2022
Improper Restriction of XML External Entity Reference in Apache POI
Moderate
CVE-2014-3529
was published
for
org.apache.poi:poi
(Maven)
May 17, 2022
Improper Restriction of XML External Entity Reference in Jelly
Critical
CVE-2017-12621
was published
for
commons-jelly:commons-jelly
(Maven)
May 17, 2022
Improper Restriction of XML External Entity Reference in Apache OpenNLP
Critical
CVE-2017-12620
was published
for
org.apache.opennlp:opennlp-tools
(Maven)
May 17, 2022
XML External Entity Reference in Apache NiFi
Moderate
CVE-2017-12623
was published
for
org.apache.nifi:nifi
(Maven)
May 17, 2022
XML External Entity Reference in org.picketlink:picketlink-common
High
CVE-2014-3530
was published
for
org.picketlink:picketlink-common
(Maven)
May 14, 2022
XXE vulnerability in Jenkins DRY Plugin
High
CVE-2018-1000010
was published
for
org.jvnet.hudson.plugins:dry
(Maven)
May 14, 2022
XXE vulnerability in Jenkins PMD Plugin
High
CVE-2018-1000008
was published
for
org.jvnet.hudson.plugins:pmd
(Maven)
May 14, 2022
XXE vulnerability in Jenkins Checkstyle Plugin
High
CVE-2018-1000009
was published
for
org.jvnet.hudson.plugins:checkstyle
(Maven)
May 14, 2022
XML External Entity Reference in Jenkins FindBugs Plugin
High
CVE-2018-1000011
was published
for
org.jvnet.hudson.plugins.findbugs:library
(Maven)
May 14, 2022
XXE vulnerability Jenkins Warnings Plugin
High
CVE-2018-1000012
was published
for
org.jvnet.hudson.plugins:warnings
(Maven)
May 14, 2022
XXE vulnerability in Jenkins Android Lint Plugin
High
CVE-2018-1000055
was published
for
org.jvnet.hudson.plugins:android-lint
(Maven)
May 14, 2022
Improper Restriction of XML External Entity Reference in Jenkins JUnit Plugin
High
CVE-2018-1000056
was published
for
org.jenkins-ci.plugins:junit
(Maven)
May 14, 2022
Jenkins CCM Plugin vulnerable to Improper Restriction of XML External Entity Reference
High
CVE-2018-1000054
was published
for
org.jvnet.hudson.plugins:ccm
(Maven)
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API