GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,300
Erlang
31
GitHub Actions
21
Go
2,069
Maven
5,000+
npm
3,744
NuGet
668
pip
3,429
Pub
12
RubyGems
892
Rust
880
Swift
36
Unreviewed advisories
All unreviewed
5,000+
11,301 advisories
Filter by severity
bug_actiongroup.php in MantisBT before 1.2.9 does not properly check the report_bug_threshold...
Low
Unreviewed
CVE-2012-1122
was published
May 17, 2022
The OSAL_Crypt_SetEncryptedPassword function in InfraStack/OSDependent/Linux/OSAL/Services...
Low
Unreviewed
CVE-2013-4217
was published
May 17, 2022
Symantec Messaging Gateway (SMG) before 10.0 allows remote attackers to obtain potentially...
Low
Unreviewed
CVE-2012-3581
was published
May 17, 2022
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial...
Low
Unreviewed
CVE-2013-2382
was published
May 17, 2022
The server in Red Hat JBoss Operations Network (JON) 3.1.2 logs passwords in plaintext, which...
Low
Unreviewed
CVE-2013-4293
was published
May 17, 2022
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft...
Low
Unreviewed
CVE-2012-3179
was published
May 17, 2022
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial...
Low
Unreviewed
CVE-2013-1541
was published
May 17, 2022
Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Products 8...
Low
Unreviewed
CVE-2012-3192
was published
May 17, 2022
Improper access control in the Intel(R) WAPI Security software for Windows 10/11 before version...
Low
Unreviewed
CVE-2022-33973
was published
Nov 11, 2022
Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 6.1...
Low
Unreviewed
CVE-2012-5065
was published
May 17, 2022
Unspecified vulnerability in the Oracle Health Sciences InForm component in Oracle Industry...
Low
Unreviewed
CVE-2013-5837
was published
May 17, 2022
Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect integrity via...
Low
Unreviewed
CVE-2012-3205
was published
May 17, 2022
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft...
Low
Unreviewed
CVE-2012-3188
was published
May 17, 2022
The Subscriptions feature in Open-Xchange Server before 6.20.7 rev14, 6.22.0 before rev13, and 6...
Low
Unreviewed
CVE-2013-1648
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in view_create.php (aka the Create View page) in...
Low
Unreviewed
CVE-2013-3742
was published
May 17, 2022
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial...
Low
Unreviewed
CVE-2013-1547
was published
May 17, 2022
HotelDruid Hotel Management Software v3.0.3 and below was discovered to have exposed session...
Low
Unreviewed
CVE-2021-42948
was published
Sep 17, 2022
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial...
Low
Unreviewed
CVE-2013-2387
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the file-upload interface in Cisco Identity Services...
Low
Unreviewed
CVE-2013-5541
was published
May 17, 2022
Multiple cross-site scripting (XSS) vulnerabilities in IBM Sterling File Gateway 2.2 and Sterling...
Low
Unreviewed
CVE-2013-2983
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in the administration page in the Flag module 7.x-3.x...
Low
Unreviewed
CVE-2013-5964
was published
May 17, 2022
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft...
Low
Unreviewed
CVE-2012-3191
was published
May 17, 2022
Cross-site scripting (XSS) vulnerability in admin/editevent.php in CMS Made Simple (CMSMS) 1.11.9...
Low
Unreviewed
CVE-2013-3929
was published
May 17, 2022
Unlock.exe in Media Encryption EPM Explorer in Check Point Endpoint Security through E80.50 does...
Low
Unreviewed
CVE-2013-5636
was published
May 17, 2022
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.2.0.4, 10.2.0...
Low
Unreviewed
CVE-2012-3151
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API