GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
3,972
Erlang
29
GitHub Actions
16
Go
1,762
Maven
4,983
npm
3,518
NuGet
609
pip
3,094
Pub
10
RubyGems
833
Rust
782
Swift
34
Unreviewed advisories
All unreviewed
5,000+
3,094 advisories
Filter by severity
Moderate severity vulnerability that affects mayan-edms
Moderate
CVE-2018-16406
was published
for
mayan-edms
(pip)
Sep 6, 2018
Moderate severity vulnerability that affects mayan-edms
Moderate
CVE-2018-16405
was published
for
mayan-edms
(pip)
Sep 6, 2018
PyCryptodome Integer overflow vulnerability
High
CVE-2018-15560
was published
for
pycryptodome
(pip)
Aug 27, 2018
Flask is vulnerable to Denial of Service via incorrect encoding of JSON data
High
CVE-2018-1000656
was published
for
flask
(pip)
Aug 23, 2018
Pyro mishandles pid files in temporary directory locations and opening the pid file as root
High
CVE-2011-2765
was published
for
pyro
(pip)
Aug 21, 2018
PyCA Cryptography vulnerable to GCM tag forgery
High
CVE-2018-10903
was published
for
cryptography
(pip)
Jul 31, 2018
Mitmweb in mitmproxy allows DNS Rebinding attacks
High
CVE-2018-14505
was published
for
mitmproxy
(pip)
Jul 31, 2018
Pillow Integer overflow in ImagingResampleHorizontal
Critical
CVE-2016-4009
was published
for
Pillow
(pip)
Jul 24, 2018
Pillow Buffer overflow in ImagingFliDecode
Moderate
CVE-2016-0775
was published
for
Pillow
(pip)
Jul 24, 2018
Pillow buffer overflow in ImagingPcdDecode
Moderate
CVE-2016-2533
was published
for
Pillow
(pip)
Jul 24, 2018
Pillow Buffer overflow in ImagingLibTiffDecode
Moderate
CVE-2016-0740
was published
for
Pillow
(pip)
Jul 24, 2018
Moderate severity vulnerability that affects feedparser
Moderate
CVE-2012-2921
was published
for
feedparser
(pip)
Jul 24, 2018
Low severity vulnerability that affects Plone
Low
CVE-2011-1949
was published
for
Plone
(pip)
Jul 23, 2018
Moderate severity vulnerability that affects Plone and plone.app.users
Moderate
CVE-2011-1950
was published
for
Plone
(pip)
Jul 23, 2018
Moderate severity vulnerability that affects Plone
Moderate
CVE-2012-5503
was published
for
Plone
(pip)
Jul 23, 2018
Moderate severity vulnerability that affects feedparser
Moderate
CVE-2011-1157
was published
for
feedparser
(pip)
Jul 23, 2018
Moderate severity vulnerability that affects Plone and Zope2
Moderate
CVE-2012-5489
was published
for
Plone
(pip)
Jul 23, 2018
High severity vulnerability that affects Plone and Zope2
High
CVE-2011-2528
was published
for
Plone
(pip)
Jul 23, 2018
ProTip!
Advisories are also available from the
GraphQL API