GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,285
Erlang
31
GitHub Actions
21
Go
2,056
Maven
5,000+
npm
3,741
NuGet
668
pip
3,422
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
393 advisories
Filter by severity
Adobe Premiere Pro CC versions 13.1.2 and earlier have an insecure library loading (dll hijacking...
High
Unreviewed
CVE-2019-7931
was published
May 24, 2022
Adobe Prelude CC versions 8.1 and earlier have an insecure library loading (dll hijacking)...
High
Unreviewed
CVE-2019-7961
was published
May 24, 2022
cPanel before 11.54.0.4 allows arbitrary code execution because of an unsafe @INC path (SEC-46).
High
Unreviewed
CVE-2016-10837
was published
May 24, 2022
In LogMeIn join.me before 3.16.0.5505, an attacker could execute arbitrary commands on a targeted...
High
Unreviewed
CVE-2019-13637
was published
May 24, 2022
A vulnerability in the London Trust Media Private Internet Access (PIA) VPN Client v82 for macOS...
High
Unreviewed
CVE-2019-12576
was published
May 24, 2022
A vulnerability in the London Trust Media Private Internet Access (PIA) VPN Client v1.0 for...
High
Unreviewed
CVE-2019-12574
was published
May 24, 2022
The application (Network Configurator for DeviceNet Safety 3.41 and prior) searches for resources...
High
Unreviewed
CVE-2019-10971
was published
May 24, 2022
Privilege escalation due to insecure directory permissions affecting ViveportDesktopService in...
High
Unreviewed
CVE-2019-12177
was published
May 24, 2022
Creative Cloud Desktop Application (installer) versions 4.7.0.400 and earlier have an insecure...
High
Unreviewed
CVE-2019-7093
was published
May 24, 2022
Untrusted search path vulnerability in Installer of Electronic reception and examination of...
High
Unreviewed
CVE-2019-5957
was published
May 24, 2022
Untrusted search path vulnerability in Electronic reception and examination of application for...
High
Unreviewed
CVE-2019-5958
was published
May 24, 2022
In PaperStream IP (TWAIN) 1.42.0.5685 (Service Update 7), the FJTWSVIC service running with...
High
Unreviewed
CVE-2018-16156
was published
May 24, 2022
NVIDIA Windows GPU Display driver software for Windows (all versions) contains a vulnerability in...
High
Unreviewed
CVE-2019-5676
was published
May 24, 2022
Untrusted search path in FileZilla before 3.41.0-rc1 allows an attacker to gain privileges via a...
High
Unreviewed
CVE-2019-5429
was published
May 24, 2022
Symantec Endpoint Protection Manager (SEPM) prior to and including 12.1 RU6 MP9 and prior to 14.2...
High
Unreviewed
CVE-2018-18367
was published
May 24, 2022
Norton Security (Windows client) prior to 22.16.3 and SEP SBE (Windows client) prior to Cloud...
High
Unreviewed
CVE-2018-18369
was published
May 24, 2022
TeamSpeak 3 Client before 3.2.5 allows remote code execution in the Qt framework.
High
Unreviewed
CVE-2019-11351
was published
May 24, 2022
An arbitrary file write vulnerability in Avast Premium Security before v21.11.2500 (build 21.11...
High
Unreviewed
CVE-2022-28964
was published
May 21, 2022
Untrusted search path vulnerability in modules/engines/ms-windows/xp_theme.c in GTK+ before 2.24...
High
Unreviewed
CVE-2010-4833
was published
May 17, 2022
Untrusted search path vulnerability in Foxit Reader before 5.0.2.0718 allows local users to gain...
High
Unreviewed
CVE-2011-3691
was published
May 17, 2022
Untrusted search path vulnerability in the CMainThread::launchDownloader function in...
High
Unreviewed
CVE-2015-6305
was published
May 17, 2022
Untrusted search path vulnerability in the installer for TrueCrypt 7.2 and 7.1a, VeraCrypt before...
High
Unreviewed
CVE-2016-1281
was published
May 17, 2022
Rapid7 Insight Collector installers prior to version 1.0.16 contain a DLL preloading...
High
Unreviewed
CVE-2017-5234
was published
May 17, 2022
Rapid7 Metasploit Pro installers prior to version 4.13.0-2017022101 contain a DLL preloading...
High
Unreviewed
CVE-2017-5235
was published
May 17, 2022
All editions of Rapid7 Nexpose installers prior to version 6.4.24 contain a DLL preloading...
High
Unreviewed
CVE-2017-5232
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API