GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,279
Erlang
31
GitHub Actions
21
Go
2,056
Maven
5,000+
npm
3,740
NuGet
668
pip
3,421
Pub
12
RubyGems
891
Rust
873
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
393 advisories
Filter by severity
An untrusted search path vulnerability exists in the Palo Alto Networks Cortex XDR agent that...
High
Unreviewed
CVE-2022-0014
was published
Jan 13, 2022
In ListCheck.exe in Acer Care Center 4.x before 4.00.3038, a vulnerability in the loading...
High
Unreviewed
CVE-2021-45975
was published
Jan 27, 2022
In Python before 3.10.3 on Windows, local users can gain privileges because the search path is...
High
Unreviewed
CVE-2022-26488
was published
Mar 11, 2022
Anaconda Anaconda3 through 2021.11.0.0 and Miniconda3 through 11.0.0.0 can create a world...
High
Unreviewed
CVE-2022-26526
was published
Mar 18, 2022
Untrusted search path vulnerability in AttacheCase ver.3.6.1.0 and earlier allows an attacker to...
High
Unreviewed
CVE-2022-28128
was published
Apr 1, 2022
Untrusted search path vulnerability in AttacheCase ver.4.0.2.7 and earlier allows an attacker to...
High
Unreviewed
CVE-2022-25348
was published
Apr 1, 2022
It was found that glusterfs server does not properly sanitize file paths in the "trusted.io-stats...
High
Unreviewed
CVE-2018-10904
was published
Apr 30, 2022
Untrusted search path vulnerability in ingvalidpw in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4...
High
Unreviewed
CVE-2008-3357
was published
May 1, 2022
Trend Micro Endpoint Sensor 1.6 before b1290 has a DLL hijacking vulnerability that allows remote...
High
Unreviewed
CVE-2017-6798
was published
May 3, 2022
Multiple untrusted search path vulnerabilities in Putty beta 0.67 allow local users to execute...
High
Unreviewed
CVE-2016-6167
was published
May 3, 2022
Untrusted search path vulnerability in Microsoft Internet Explorer 9 on Windows Server 2008 R2...
High
Unreviewed
CVE-2011-2019
was published
May 13, 2022
Puppet Enterprise 2016.4.x prior to 2016.4.12, Puppet Enterprise 2017.3.x prior to 2017.3.7,...
High
Unreviewed
CVE-2018-6513
was published
May 13, 2022
Untrusted search path vulnerability in the HGFS (aka Shared Folders) feature in VMware Tools 10.0...
High
Unreviewed
CVE-2016-5330
was published
May 13, 2022
Untrusted search path vulnerability in Setup file of advance preparation for e-Tax software (WEB...
High
Unreviewed
CVE-2017-2226
was published
May 13, 2022
A DLL Hijacking vulnerability in Trend Micro's User-Mode Hooking Module (UMH) could allow an...
High
Unreviewed
CVE-2018-6218
was published
May 13, 2022
Untrusted search path vulnerability in the installer of PhishWall Client Internet Explorer...
High
Unreviewed
CVE-2017-2130
was published
May 13, 2022
A DLL hijacking vulnerability in Trend Micro Security 2019 (Consumer) versions below 15.0.0.1163...
High
Unreviewed
CVE-2018-18333
was published
May 13, 2022
Untrusted search path vulnerability in the installer in Adobe Flash Player before 10.3.183.20 and...
High
Unreviewed
CVE-2012-2040
was published
May 13, 2022
** DISPUTED ** Untrusted search path vulnerability in Mozilla Network Security Services (NSS), as...
High
Unreviewed
CVE-2011-3640
was published
May 13, 2022
Untrusted search path vulnerability in Installers of ART EX Driver for ApeosPort-VI C7771/C6671...
High
Unreviewed
CVE-2017-10850
was published
May 13, 2022
Rapid7 AppSpider Pro installers prior to version 6.14.053 contain a DLL preloading vulnerability,...
High
Unreviewed
CVE-2017-5233
was published
May 13, 2022
Avecto Defendpoint 4 prior to 4.4 SR6 and 5 prior to 5.1 SR1 has an Untrusted Search Path...
High
Unreviewed
CVE-2018-10959
was published
May 13, 2022
Untrusted search path vulnerability in the Microsoft Foundation Class (MFC) Library in Microsoft...
High
Unreviewed
CVE-2010-3190
was published
May 13, 2022
elf/dl-load.c in the GNU C Library (aka glibc or libc6) 2.19 through 2.26 mishandles RPATH and...
High
Unreviewed
CVE-2017-16997
was published
May 13, 2022
InternetSoft FTP Commander 8.02 and prior has an untrusted search path, allowing DLL hijacking...
High
Unreviewed
CVE-2017-11749
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API