GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,319
Erlang
31
GitHub Actions
21
Go
2,077
Maven
5,000+
npm
3,747
NuGet
674
pip
3,435
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
65 advisories
Filter by severity
Apache Ranger policy engine incorrectly matches paths in certain conditions
Moderate
CVE-2016-8746
was published
for
org.apache.ranger:ranger-plugins-common
(Maven)
Oct 17, 2018
Untrusted search path vulnerability in the Python module in gedit allows local users to execute...
Moderate
Unreviewed
CVE-2009-0314
was published
May 2, 2022
Untrusted search path vulnerability in Explzh 5.67 and earlier allows local users to gain...
Moderate
Unreviewed
CVE-2010-3159
was published
May 13, 2022
Untrusted search path vulnerability in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2,...
Moderate
Unreviewed
CVE-2014-0315
was published
May 13, 2022
DLL Search Order Hijacking vulnerability in Microsoft Windows client in McAfee Total Protection ...
Moderate
Unreviewed
CVE-2019-3587
was published
May 13, 2022
Some of the DLLs loaded by Check Point ZoneAlarm up to 15.4.062 are taken from directories where...
Moderate
Unreviewed
CVE-2019-8453
was published
May 14, 2022
Untrusted search path vulnerability in the PySys_SetArgv API function in Python 2.6 and earlier,...
Moderate
Unreviewed
CVE-2008-5983
was published
May 17, 2022
Untrusted search path vulnerability in the pthread_win32_process_attach_np function in pthreadGC2...
Moderate
Unreviewed
CVE-2010-5250
was published
May 17, 2022
Untrusted search path vulnerability in gdk/win32/gdkinput-win32.c in GTK+ before 2.21.8 allows...
Moderate
Unreviewed
CVE-2010-4831
was published
May 17, 2022
HiSuite 9.1.0.300 versions and earlier contains a DLL hijacking vulnerability. This vulnerability...
Moderate
Unreviewed
CVE-2019-5245
was published
May 24, 2022
Redbrick Shift through 3.4.3 allows an attacker to extract emails of services (such as Gmail,...
Moderate
Unreviewed
CVE-2019-12912
was published
May 24, 2022
DLL Search Order Hijacking vulnerability in Microsoft Windows client in McAfee Total Protection ...
Moderate
Unreviewed
CVE-2019-3646
was published
May 24, 2022
Avira Software Updater before 2.0.6.21094 allows a DLL side-loading attack.
Moderate
Unreviewed
CVE-2019-17449
was published
May 24, 2022
A DLL side loading vulnerability in the Windows Service in TeamViewer versions up to 11.0.133222 ...
Moderate
Unreviewed
CVE-2019-18196
was published
May 24, 2022
Adobe Animate CC versions 19.2.1 and earlier have an insecure library loading (dll hijacking)...
Moderate
Unreviewed
CVE-2019-7960
was published
May 24, 2022
An issue was discovered in signmgr.dll 6.5.0.819 in Comodo Internet Security through 12.0. A DLL...
Moderate
Unreviewed
CVE-2019-18215
was published
May 24, 2022
DLL preloading vulnerability in Autodesk Desktop Application versions 7.0.16.29 and earlier. An...
Moderate
Unreviewed
CVE-2019-7365
was published
May 24, 2022
In Sony Catalyst Production Suite through 2019.1 (1.1.0.21) and Catalyst Browse through 2019.1 (1...
Moderate
Unreviewed
CVE-2019-19364
was published
May 24, 2022
In the Quick Access Service (QAAdminAgent.exe) in Acer Quick Access V2.01.3000 through 2.01.3027...
Moderate
Unreviewed
CVE-2019-18670
was published
May 24, 2022
Barco ClickShare Button R9861500D01 devices before 1.9.0 have Missing Support for Integrity Check...
Moderate
Unreviewed
CVE-2019-18829
was published
May 24, 2022
Trend Micro HouseCall for Home Networks (versions below 5.3.0.1063) could be exploited via a DLL...
Moderate
Unreviewed
CVE-2019-19689
was published
May 24, 2022
VMware Workstation (15.x prior to 15.5.1) and Horizon View Agent (7.10.x prior to 7.10.1 and 7.5...
Moderate
Unreviewed
CVE-2019-5539
was published
May 24, 2022
An Untrusted Search Path vulnerability in bdserviceshost.exe as used in Bitdefender Total...
Moderate
Unreviewed
CVE-2019-17100
was published
May 24, 2022
The usage of Tomcat in Jira before version 8.5.2 allows local attackers with permission to write...
Moderate
Unreviewed
CVE-2019-20400
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API