GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,760
NuGet
678
pip
3,446
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
176 advisories
Filter by severity
Openstack Octavia allows Insertion of Sensitive Information into Log File
High
CVE-2018-16856
was published
for
octavia
(pip)
May 13, 2022
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v250 and CAPI...
High
Unreviewed
CVE-2016-9882
was published
May 13, 2022
Micro Focus Solutions Business Manager versions prior to 11.4 might reveal certain sensitive...
High
Unreviewed
CVE-2018-7683
was published
May 13, 2022
It was discovered that a world-readable log file belonging to Candlepin component of Red Hat...
High
Unreviewed
CVE-2019-3891
was published
May 13, 2022
A password management issue exists where the Organization authentication username and password...
High
Unreviewed
CVE-2019-0032
was published
May 13, 2022
A sensitive data disclosure flaw was found in the Elasticsearch repository-azure (formerly...
High
Unreviewed
CVE-2018-3827
was published
May 13, 2022
Cloud Foundry NFS volume release, 1.2.x prior to 1.2.5, 1.5.x prior to 1.5.4, 1.7.x prior to 1.7...
High
Unreviewed
CVE-2018-15797
was published
May 13, 2022
** DISPUTED ** An issue was discovered in SecurEnvoy SecurAccess 9.3.502. When put in Debug mode...
High
Unreviewed
CVE-2018-18466
was published
May 13, 2022
Juniper ATP Series Splunk credentials are logged in a file readable by authenticated local users....
High
Unreviewed
CVE-2019-0029
was published
May 13, 2022
Under certain conditions SAP HANA Extended Application Services, version 1.0, advanced model (XS...
High
Unreviewed
CVE-2019-0266
was published
May 13, 2022
RSA Archer versions, prior to 6.5 SP2, contain an information exposure vulnerability. The...
High
Unreviewed
CVE-2019-3716
was published
May 13, 2022
The Boa server configuration on DASAN H660RM devices with firmware 1.03-0022 logs POST data to...
High
Unreviewed
CVE-2019-9976
was published
May 13, 2022
Cloud Foundry Container Runtime (kubo-release), versions prior to 0.14.0, may leak UAA and...
High
Unreviewed
CVE-2018-1223
was published
May 13, 2022
An issue was discovered in EMC ScaleIO 2.0.1.x. In a Linux environment, one of the support...
High
Unreviewed
CVE-2017-8001
was published
May 13, 2022
Elastic Cloud Enterprise (ECE) versions prior to 1.1.4 contain an information exposure...
High
Unreviewed
CVE-2018-3828
was published
May 13, 2022
A vulnerability in the Trend Micro InterScan Messaging Security Virtual Appliance 9.0 and 9.1...
High
Unreviewed
CVE-2018-3609
was published
May 13, 2022
IBM Spectrum Protect Plus 10.1.0 and 10.1.1 could disclose sensitive information when an...
High
Unreviewed
CVE-2018-1768
was published
May 13, 2022
Dell EMC RecoverPoint versions prior to 5.1.2 and RecoverPoint for VMs versions prior to 5.1.1.3,...
High
Unreviewed
CVE-2018-1241
was published
May 13, 2022
ovirt-engine up to version 4.2.3 is vulnerable to an unfiltered password when choosing manual db...
High
Unreviewed
CVE-2018-1075
was published
May 13, 2022
Pivotal Container Service, versions prior to 1.2.0, contains an information disclosure...
High
Unreviewed
CVE-2018-15763
was published
May 13, 2022
A vulnerability in the web portal authentication process of Cisco Prime Collaboration...
High
Unreviewed
CVE-2018-0335
was published
May 13, 2022
An information disclosure in ovirt-hosted-engine-setup prior to 2.2.7 reveals the root user's...
High
Unreviewed
CVE-2018-1000018
was published
May 13, 2022
Ceph does not properly sanitize encryption keys in debug logging for v4 auth. This results in the...
High
Unreviewed
CVE-2018-16889
was published
May 13, 2022
VMware Horizon View Agents (7.x.x before 7.5.1) contain a local information disclosure...
High
Unreviewed
CVE-2018-6971
was published
May 13, 2022
inc/logger.php in the Giribaz File Manager plugin before 5.0.2 for WordPress logged activity...
High
Unreviewed
CVE-2018-7204
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API