GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,096
Erlang
29
GitHub Actions
19
Go
1,925
Maven
5,000+
npm
3,654
NuGet
638
pip
3,263
Pub
10
RubyGems
873
Rust
823
Swift
35
Unreviewed advisories
All unreviewed
5,000+
1,467 advisories
Filter by severity
markdown2 is vulnerable to cross-site scripting
Moderate
CVE-2018-5773
was published
for
markdown2
(pip)
Jul 12, 2018
tlslite-ng off-by-one error on mac checking
Moderate
CVE-2018-1000159
was published
for
tlslite-ng
(pip)
Jul 12, 2018
oslo.middleware Information Disclosure vulnerability
Moderate
CVE-2017-2592
was published
for
oslo.middleware
(pip)
Jul 13, 2018
python-fedora vulnerable to an open redirect resulting in loss of CSRF protection
Moderate
CVE-2017-1002150
was published
for
python-fedora
(pip)
Jul 13, 2018
django-epiceditor vulnerable to XSS in form field
Moderate
CVE-2017-6591
was published
for
django-epiceditor
(pip)
Jul 13, 2018
Pysaml2 improperly initializes encryption vector
Moderate
CVE-2017-1000246
was published
for
pysaml2
(pip)
Jul 16, 2018
Moderate severity vulnerability that affects Products.PlonePAS
Moderate
CVE-2009-0662
was published
for
Products.PlonePAS
(pip)
Jul 23, 2018
Plone Denial of Service vulnerability
Moderate
CVE-2011-4462
was published
for
Plone
(pip)
Jul 23, 2018
Cross-site scripting in Products.CMFPlone and Products.PasswordResetTool
Moderate
CVE-2011-1948
was published
for
Products.CMFPlone
(pip)
Jul 23, 2018
Moderate severity vulnerability that affects Plone and Zope2
Moderate
CVE-2012-5507
was published
for
Plone
(pip)
Jul 23, 2018
Moderate severity vulnerability that affects Plone and Zope2
Moderate
CVE-2012-6661
was published
for
Plone
(pip)
Jul 23, 2018
Moderate severity vulnerability that affects Zope2
Moderate
CVE-2010-1104
was published
for
Zope2
(pip)
Jul 23, 2018
Improper query string handling in Django
Moderate
CVE-2010-4534
was published
for
Django
(pip)
Jul 23, 2018
feedparser Cross-site Scripting vulnerability
Moderate
CVE-2011-1158
was published
for
feedparser
(pip)
Jul 23, 2018
HTTP header injection in Plone and Zope2
Moderate
CVE-2012-5486
was published
for
Plone
(pip)
Jul 23, 2018
Moderate severity vulnerability that affects Plone and Zope2
Moderate
CVE-2012-5489
was published
for
Plone
(pip)
Jul 23, 2018
feedparser Cross-site Scripting vulnerability
Moderate
CVE-2011-1157
was published
for
feedparser
(pip)
Jul 23, 2018
Moderate severity vulnerability that affects Plone
Moderate
CVE-2012-5503
was published
for
Plone
(pip)
Jul 23, 2018
Moderate severity vulnerability that affects Plone and plone.app.users
Moderate
CVE-2011-1950
was published
for
Plone
(pip)
Jul 23, 2018
Pillow Buffer overflow in ImagingLibTiffDecode
Moderate
CVE-2016-0740
was published
for
Pillow
(pip)
Jul 24, 2018
ProTip!
Advisories are also available from the
GraphQL API