GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
719 advisories
Filter by severity
Symantec Advanced Secure Gateway (ASG) 6.6, ASG 6.7 prior to 6.7.2.1, ProxySG 6.5 prior to 6.5.10...
Moderate
Unreviewed
CVE-2016-9099
was published
May 13, 2022
The OAuth authorization implementation in Pivotal Cloud Foundry (PCF) before 242; UAA 2.x before...
Moderate
Unreviewed
CVE-2016-6636
was published
May 13, 2022
In Cloud Foundry router routing-release all versions prior to v0.163.0 and cf-release all...
Moderate
Unreviewed
CVE-2017-8047
was published
May 13, 2022
With Cloud Foundry Runtime cf-release versions v209 or earlier, UAA Standalone versions 2.2.6 or...
Moderate
Unreviewed
CVE-2015-3190
was published
May 13, 2022
Open redirect vulnerability in the SO Connect SO WIFI hotspot web interface, prior to version 140...
Moderate
Unreviewed
CVE-2018-7473
was published
May 13, 2022
Adobe Flash Player versions 26.0.0.137 and earlier have a security bypass vulnerability that...
High
Unreviewed
CVE-2017-3085
was published
May 13, 2022
IBM Content Navigator 3.0CD could allow attackers to direct web traffic to a malicious site. If...
Moderate
Unreviewed
CVE-2019-4035
was published
May 13, 2022
Open redirect vulnerability in the Console in Puppet Enterprise before 2015.2.1 allows remote...
Moderate
Unreviewed
CVE-2015-6501
was published
May 13, 2022
Open redirect vulnerability in the Console in Puppet Enterprise 2015.x and 2016.x before 2016.4.0...
Moderate
Unreviewed
CVE-2016-5715
was published
May 13, 2022
The XsrfErrorAction resource in Atlassian Jira before version 7.6.9, from version 7.7.0 before...
Moderate
Unreviewed
CVE-2018-13401
was published
May 13, 2022
Many resources in Atlassian Jira before version 7.6.9, from version 7.7.0 before version 7.7.5,...
Moderate
Unreviewed
CVE-2018-13402
was published
May 13, 2022
Opera Mini 13 and Opera Stable 36 allow remote attackers to spoof the displayed URL via a crafted...
Moderate
Unreviewed
CVE-2016-4075
was published
May 13, 2022
Sysaid – sysaid Open Redirect - An Attacker can change the redirect link at the parameter ...
Moderate
Unreviewed
CVE-2022-22797
was published
May 13, 2022
The Ultimate Member plugin for WordPress is vulnerable to open redirects due to insufficient...
Moderate
Unreviewed
CVE-2022-1209
was published
May 11, 2022
An open redirect vulnerability has been reported to affect QNAP device running QuTScloud, QuTS...
Moderate
Unreviewed
CVE-2021-44054
was published
May 6, 2022
In nopCommerce 4.50.1, an open redirect vulnerability can be triggered by luring a user to...
Moderate
Unreviewed
CVE-2022-27461
was published
May 5, 2022
Multiple vulnerabilities in the web engine of Cisco TelePresence Collaboration Endpoint (CE)...
Moderate
Unreviewed
CVE-2022-20794
was published
May 5, 2022
Unspecified vulnerability in the Oracle Application Server Single Sign-On component in Oracle...
Moderate
Unreviewed
CVE-2012-0518
was published
May 4, 2022
Potential open redirection vulnerability when URL is crafted in specific format in NetIQ Access...
Moderate
Unreviewed
CVE-2022-26326
was published
May 3, 2022
Opera before 10.01 on Windows does not prevent use of Web fonts in rendering the product's own...
Moderate
Unreviewed
CVE-2009-3832
was published
May 2, 2022
Open redirect vulnerability in redirect.php in Bitrix Site Manager 6.5 allows remote attackers to...
Moderate
Unreviewed
CVE-2008-2052
was published
May 1, 2022
Open redirect vulnerability in exchweb/bin/redir.asp in Microsoft Outlook Web Access (OWA) for...
Moderate
Unreviewed
CVE-2008-1547
was published
May 1, 2022
Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other...
Moderate
Unreviewed
CVE-2005-4206
was published
May 1, 2022
The XMLHttpRequest object in Opera 8.0 Final Build 1095 allows remote attackers to bypass access...
High
Unreviewed
CVE-2005-1475
was published
May 1, 2022
Microsoft Outlook Web Access (OWA), when used with Exchange, allows remote attackers to redirect...
Moderate
Unreviewed
CVE-2005-0420
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API