GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
73
GitHub Actions
53
Go
4,004
Maven
5,000+
npm
5,000+
NuGet
974
pip
5,000+
Pub
13
RubyGems
1,069
Rust
1,395
Swift
61
Unreviewed advisories
All unreviewed
5,000+
127,899 advisories
Filter by severity
Blue Coat ProxySG before 6.2.14.1, 6.3.x, 6.4.x, and 6.5 before 6.5.2 allows remote attackers to...
High
Unreviewed
CVE-2013-5959
was published
May 17, 2022
NETGEAR ProSafe GS724Tv3 and GS716Tv2 with firmware 5.4.1.13 and earlier, GS748Tv4 5.4.1.14, and...
High
Unreviewed
CVE-2013-4776
was published
May 17, 2022
Buffer overflow in IrfanView before 4.37, when a multibyte-character directory name is used,...
High
Unreviewed
CVE-2013-6932
was published
May 17, 2022
SAP Sybase Adaptive Server Enterprise (ASE) before 15.0.3 ESD#4.3, 15.5 before 15.5 ESD#5.3, and...
High
Unreviewed
CVE-2013-6866
was published
May 17, 2022
cgi-bin/operator/param in AirLive WL2600CAM and possibly other camera models allows remote...
High
Unreviewed
CVE-2013-3686
was published
May 17, 2022
An arbitrary code execution vulnerability exists in Micro Focus Operation Bridge Manager 2020.05,...
High
Unreviewed
CVE-2020-11853
was published
May 24, 2022
TRENDnet TEW-812DRU router allows remote authenticated users to execute arbitrary commands via...
High
Unreviewed
CVE-2013-3365
was published
May 17, 2022
Buffer overflow in the Interstage HTTP Server log functionality, as used in Fujitsu Interstage...
High
Unreviewed
CVE-2013-7105
was published
May 17, 2022
Microsoft Word 2003 SP2 and SP3 on Windows XP SP3 allows remote attackers to cause a denial of...
High
Unreviewed
CVE-2013-6801
was published
May 17, 2022
The DNP3 component in Cooper Power Systems SMP 4, 4/DP, and 16 gateways allows remote attackers...
High
Unreviewed
CVE-2013-2813
was published
May 17, 2022
cgi-bin/postpf/cgi-bin/dynamic/config/config.html on Lexmark X94x before LC.BR.P142, X85x through...
High
Unreviewed
CVE-2013-6032
was published
May 17, 2022
SQL injection vulnerability in leaguemanager.php in the LeagueManager plugin before 3.8.1 for...
High
Unreviewed
CVE-2013-1852
was published
May 17, 2022
The firmware on GateHouse; Harris BGAN RF-7800B-VU204 and BGAN RF-7800B-DU204; Hughes Network...
High
Unreviewed
CVE-2013-6034
was published
May 17, 2022
file-type vulnerable to Infinite Loop via malformed MKV file
High
CVE-2022-36313
was published
for
file-type
(npm)
Jul 22, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2022-40648
was published
Sep 16, 2022
libdwarf 0.4.1 has a double free in _dwarf_exec_frame_instr in dwarf_frame.c.
High
Unreviewed
CVE-2022-39170
was published
Sep 3, 2022
The WAVLINK Quantum D4G (WN531G3) running firmware version M31G3.V5030.200325 does not utilize...
High
Unreviewed
CVE-2022-40623
was published
Sep 14, 2022
libmariadb/mariadb_lib.c in MariaDB Connector/C before 3.1.8 does not properly validate the...
High
Unreviewed
CVE-2020-13249
was published
May 24, 2022
Because the WAVLINK Quantum D4G (WN531G3) running firmware version M31G3.V5030.200325 and earlier...
High
Unreviewed
CVE-2022-40621
was published
Sep 14, 2022
CuppaCMS 1.0 is vulnerable to Remote Code Execution (RCE). An authenticated user can control both...
High
Unreviewed
CVE-2022-37190
was published
Sep 14, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2022-40641
was published
Sep 16, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2022-40647
was published
Sep 16, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2022-40639
was published
Sep 16, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2022-40637
was published
Sep 16, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2022-40650
was published
Sep 16, 2022
ProTip!
Advisories are also available from the
GraphQL API