An open API service providing security vulnerability metadata for many open source software ecosystems.

Browse Security Advisories

High Security Advisories for https://github.com/github/advisory-database from github Clear Filters

High
almost 4 years ago

Cookie parsing failure GSA_kwCzR0hTQS1oeHJtLTl3N3AtMzljY84AAl4k

nuget Microsoft.AspNetCore.App.Runtime.win-x86, Microsoft.AspNetCore.App.Runtime.win-x64, Microsoft.AspNetCore.App.Runtime.win-arm, Microsoft.AspNetCore.App.Runtime.osx-x64, Microsoft.AspNetCore.App.Runtime.linux-x64, Microsoft.AspNetCore.App.Runtime.linux-musl-x64, Microsoft.AspNetCore.App.Runtime.linux-musl-arm64, Microsoft.AspNetCore.App.Runtime.linux-arm64, Microsoft.AspNetCore.App.Runtime.linux-arm, Microsoft.Owin, Microsoft.AspNetCore.App
High
almost 4 years ago

Remote code execution in ASP.NET Core GSA_kwCzR0hTQS02NTVxLTlndmctcTRjbc4AAjQ_

nuget Microsoft.AspNetCore.Http.Connections, Microsoft.AspNetCore.App, Microsoft.AspNetCore.All
High
almost 4 years ago

Denial of service in ASP.NET Core GSA_kwCzR0hTQS00anh4LTRxeHctcHJ4bc4AAguX

nuget Microsoft.AspNetCore.SignalR.Protocols.MessagePack
High
almost 4 years ago

Open redirect in ASP.NET Core GSA_kwCzR0hTQS0zd2NqLXJnOHEtOWNxds4AAXe1

nuget Microsoft.AspNetCore.Mvc.Core, Microsoft.AspNetCore.All
High
almost 4 years ago

Denial of service in ASP.NET Core GSA_kwCzR0hTQS02cHg4LTIydzUtdzMzNM4AAUYz

nuget Microsoft.AspNetCore.All, Microsoft.AspNetCore.App, Microsoft.NETCore.App, System.Net.WebSockets.WebSocketProtocol, Microsoft.AspNetCore.Server.Kestrel.Core, Microsoft.AspNetCore.WebSockets
High
almost 4 years ago

Cross-origin Resource Sharing bypass in ASP.NET Core GSA_kwCzR0hTQS0zcnA2LXJqdzQtY3EzOc4AASeG

nuget Microsoft.AspNetCore.Mvc.Cors, Microsoft.AspNetCore.Mvc.Core
High
almost 4 years ago

Denial of service in ASP.NET Core GSA_kwCzR0hTQS1mOWpjLXJybTItcG1mZ84AAR_o

nuget Microsoft.AspNetCore.Server.HttpSys, Microsoft.Net.Http.Server, Microsoft.AspNetCore.Server.WebListener

Filter by Severity

Filter by Source

Filter by Ecosystem

Filter by Package

Microsoft.ChakraCore 234 tensorflow 122 tensorflow-cpu 114 tensorflow-gpu 113 magento/community-edition 104 openclaw 82 moodle/moodle 68 org.jenkins-ci.main:jenkins-core 58 com.fasterxml.jackson.core:jackson-databind 43 magento/project-community-edition 42 Django 40 librenms/librenms 35 dolibarr/dolibarr 35 github.com/rancher/rancher 34 mlflow 34 org.apache.tomcat:tomcat 32 pimcore/pimcore 32 drupal/core 32 typo3/cms 32 apache-airflow 32 salt 31 Plone 28 phpmyadmin/phpmyadmin 28 microweber/microweber 27 typo3/cms-core 26 nokogiri 26 getgrav/grav 26 drupal/drupal 25 com.liferay.portal:release.portal.bom 25 org.apache.struts:struts2-core 25 thorsten/phpmyfaq 24 ansible 24 opencv-python 23 com.thoughtworks.xstream:xstream 22 opencv-contrib-python 22 com.jfinal:jfinal 21 django 21 craftcms/cms 21 matrix-synapse 20 symfony/symfony 20 github.com/hashicorp/vault 20 pillow 19 com.liferay.portal:release.dxp.bom 19 org.jenkins-ci.plugins:script-security 19 io.undertow:undertow-core 19 pocketmine/pocketmine-mp 18 gradio 18 @anthropic-ai/claude-code 18 org.apache.tomcat.embed:tomcat-embed-core 18 parse-server 18 Pillow 18 open-webui 18 github.com/grafana/grafana 17 github.com/mattermost/mattermost-server 17 rdiffweb 17 picklescan 16 Microsoft.AspNetCore.App.Runtime.win-x64 16 openssl-src 16 gogs.io/gogs 16 Microsoft.AspNetCore.App.Runtime.win-x86 16 github.com/zitadel/zitadel 16 keystone 16 github.com/usememos/memos 16 github.com/hashicorp/consul 15 org.keycloak:keycloak-services 15 nilsteampassnet/teampass 15 org.apache.solr:solr-core 15 shopware/platform 15 Microsoft.AspNetCore.App.Runtime.win-arm 15 org.xwiki.platform:xwiki-platform-oldcore 15 apache-superset 15 shopware/core 14 Microsoft.AspNetCore.App.Runtime.linux-arm64 14 net.mingsoft:ms-mcms 14 vyper 14 Microsoft.AspNetCore.App.Runtime.linux-musl-x64 14 org.keycloak:keycloak-core 14 next 14 rack 14 Microsoft.AspNetCore.App.Runtime.win-arm64 14 Microsoft.AspNetCore.App.Runtime.linux-arm 14 Magick.NET-Q16-AnyCPU 14 Magick.NET-Q16-HDRI-AnyCPU 14 flowise 14 vllm 14 Microsoft.AspNetCore.App.Runtime.osx-x64 14 Magick.NET-Q8-AnyCPU 14 mindsdb 14 centreon/centreon 14 Microsoft.AspNetCore.App.Runtime.linux-x64 14 deno 13 golang.org/x/net 13 Magick.NET-Q8-x86 13 electron 13 Microsoft.NetCore.App.Runtime.win-x64 13 Microsoft.NetCore.App.Runtime.win-arm 13 Microsoft.AspNetCore.App.Runtime.linux-musl-arm64 13 mautic/core 13 Magick.NET-Q16-x86 13 Microsoft.NetCore.App.Runtime.win-x86 13 rubygems-update 13 Magick.NET-Q16-HDRI-x86 13 n8n 13 Microsoft.NetCore.App.Runtime.win-arm64 13 github.com/ethereum/go-ethereum 12 silverstripe/framework 12 baserproject/basercms 12 org.apache.openmeetings:openmeetings-parent 12 activerecord 12 github.com/hashicorp/nomad 12 phpoffice/phpspreadsheet 12 Magick.NET-Q16-HDRI-OpenMP-x64 11 Magick.NET-Q16-OpenMP-x64 11 Magick.NET-Q8-OpenMP-arm64 11 tar 11 Magick.NET-Q16-OpenMP-arm64 11 froxlor/froxlor 11 org.springframework.security:spring-security-core 11 org.keycloak:keycloak-parent 11 Magick.NET-Q16-HDRI-x64 11 surrealdb 11 statamic/cms 11 intelliants/subrion 11 Magick.NET-Q16-arm64 11 Magick.NET-Q16-HDRI-OpenMP-arm64 11 github.com/mattermost/mattermost/server/v8 11 directus 11 cockpit-hq/cockpit 11 github.com/argoproj/argo-cd 11 github.com/argoproj/argo-cd/v2 11 Magick.NET-Q16-x64 11 Magick.NET-Q16-HDRI-arm64 11 Magick.NET-Q8-arm64 11 actionpack 11 snipe/snipe-it 10 github.com/traefik/traefik/v2 10 nova 10 github.com/nats-io/nats-server/v2 10 github.com/ollama/ollama 10 laravel/framework 10 k8s.io/kubernetes 10 org.apache.tomcat:tomcat-catalina 10 funadmin/funadmin 10 apollo-router 10 lollms 10 openmage/magento-lts 10 Magick.NET-Q8-OpenMP-x64 10 k8s.io/ingress-nginx 9 github.com/filebrowser/filebrowser/v2 9 ckb 9 devcode-it/openstamanager 9 org.apache.nifi:nifi 9 mercurial 9 org.bouncycastle:bcprov-jdk14 9 rusqlite 9 cryptography 9 github.com/siyuan-note/siyuan/kernel 9 h2o 9 litellm 9 neutron 9 aim 9 zendframework/zendframework1 9 Magick.NET-Q8-x64 9 Microsoft.NetCore.App.Runtime.linux-arm 9 github.com/zitadel/zitadel/v2 9 pyload-ng 9 org.apache.hadoop:hadoop-main 9 org.apache.geode:geode-core 9 org.cloudfoundry.identity:cloudfoundry-identity-server 9 DotNetNuke.Core 9 cobbler 9 Microsoft.NetCore.App.Runtime.linux-musl-arm 8 jspdf 8 Microsoft.NETCore.App.Runtime.win-arm64 8 fickling 8 october/system 8 github.com/sylabs/singularity 8 phpbb/phpbb 8 org.craftercms:crafter-studio 8 Microsoft.NETCore.App.Runtime.win-x86 8 moin 8 org.elasticsearch:elasticsearch 8 composer/composer 8 Microsoft.NetCore.App.Runtime.osx-arm64 8 org.bouncycastle:bcprov-jdk15 8 org.eclipse.jetty:jetty-server 8 Microsoft.NetCore.App.Runtime.osx-x64 8 Microsoft.NetCore.App.Runtime.linux-arm64 8 pgadmin4 8 github.com/opencontainers/runc 8 Microsoft.NetCore.App.Runtime.linux-musl-x64 8 yeswiki/yeswiki 8 Microsoft.NetCore.App.Runtime.linux-x64 8 github.com/docker/docker 8 org.apache.struts.xwork:xwork-core 8 mantisbt/mantisbt 8 systeminformation 8 Microsoft.NetCore.App.Runtime.linux-musl-arm64 8 plone 8 smarty/smarty 8

Filter by Repository

https://github.com/chakra-core/ChakraCore 204 https://github.com/tensorflow/tensorflow 122 https://github.com/xwiki/xwiki-platform 64 https://github.com/django/django 52 https://github.com/FasterXML/jackson-databind 44 https://github.com/jenkinsci/jenkins 43 https://github.com/apache/tomcat 40 https://github.com/apache/airflow 39 https://github.com/python-pillow/Pillow 35 https://github.com/moodle/moodle 34 https://github.com/keycloak/keycloak 32 https://github.com/dotnet/runtime 28 https://github.com/librenms/librenms 28 https://github.com/pimcore/pimcore 28 https://github.com/rancher/rancher 27 https://github.com/opencv/opencv 25 https://github.com/microweber/microweber 25 https://github.com/symfony/symfony 23 https://github.com/x-stream/xstream 22 https://github.com/sparklemotion/nokogiri 21 https://github.com/Dolibarr/dolibarr 21 https://github.com/apache/struts 20 https://github.com/spring-projects/spring-framework 19 https://github.com/ansible/ansible 19 https://github.com/TYPO3/typo3 18 https://github.com/thorsten/phpmyfaq 18 https://github.com/pmmp/PocketMine-MP 18 https://github.com/zitadel/zitadel 18 https://github.com/parse-community/parse-server 17 https://github.com/ikus060/rdiffweb 17 https://github.com/mlflow/mlflow 16 https://github.com/plone/Products.CMFPlone 16 https://github.com/gradio-app/gradio 16 https://github.com/getgrav/grav 15 https://github.com/kubernetes/kubernetes 15 https://github.com/rails/rails 15 https://github.com/apache/inlong 15 https://github.com/github/advisory-database 15 https://github.com/jenkinsci/script-security-plugin 14 https://github.com/vyperlang/vyper 14 https://github.com/usememos/memos 14 https://github.com/grafana/grafana 14 https://github.com/argoproj/argo-cd 14 https://github.com/openstack/keystone 14 https://github.com/liferay/liferay-portal 13 https://github.com/matrix-org/synapse 13 https://github.com/mautic/mautic 13 https://github.com/undertow-io/undertow 13 https://github.com/saltstack/salt 13 https://github.com/mindsdb/mindsdb 13 https://github.com/hashicorp/consul 12 https://github.com/directus/directus 12 https://github.com/denoland/deno 12 https://github.com/PHPOffice/PhpSpreadsheet 12 https://github.com/electron/electron 12 https://github.com/hashicorp/vault 11 https://github.com/silverstripe/silverstripe-framework 11 https://github.com/strapi/strapi 11 https://github.com/run-llama/llama_index 11 https://github.com/dotnet/aspnetcore 11 https://github.com/apache/nifi 11 https://github.com/golang/go 10 https://github.com/surrealdb/surrealdb 10 https://github.com/netty/netty 10 https://github.com/centreon/centreon 10 https://github.com/rack/rack 10 https://github.com/funadmin/funadmin 10 https://github.com/OpenMage/magento-lts 10 https://github.com/octobercms/october 10 https://github.com/FlowiseAI/Flowise 10 https://github.com/go-gitea/gitea 10 https://github.com/opencontainers/runc 9 https://github.com/snipe/snipe-it 9 https://github.com/apollographql/router 9 https://github.com/apache/cxf 9 https://github.com/spring-projects/spring-security 9 https://github.com/cui2shark/cms 9 https://github.com/h2oai/h2o-3 9 https://github.com/geoserver/geoserver 9 https://github.com/traefik/traefik 9 https://github.com/nilsteampassnet/teampass 9 https://github.com/openstack/nova 9 https://github.com/rusqlite/rusqlite 9 https://github.com/vercel/next.js 9 https://github.com/anthropics/claude-code 9 https://github.com/nervosnetwork/ckb 9 https://github.com/apache/camel 9 https://github.com/laravel/framework 9 https://github.com/pyload/pyload 9 https://github.com/cloudfoundry/uaa 9 https://github.com/gogs/gogs 8 https://github.com/vllm-project/vllm 8 https://github.com/pyca/cryptography 8 https://github.com/bcgit/bc-java 8 https://github.com/cockpit-hq/cockpit 8 https://github.com/OpenRefine/OpenRefine 8 https://github.com/backstage/backstage 8 https://github.com/TYPO3/TYPO3.CMS 8 https://github.com/PaddlePaddle/Paddle 8 https://github.com/dnnsoftware/Dnn.Platform 8 https://github.com/open-webui/open-webui 8 https://github.com/nats-io/nats-server 8 https://github.com/craftcms/cms 8 https://github.com/OPCFoundation/UA-.NETStandard 8 https://github.com/apache/kylin 8 https://github.com/shopware/platform 8 https://github.com/phpmyadmin/phpmyadmin 8 https://github.com/filebrowser/filebrowser 7 https://github.com/contao/contao 7 https://github.com/YesWiki/yeswiki 7 https://github.com/xuxueli/xxl-job 7 https://github.com/eclipse/jetty.project 7 https://github.com/cobbler/cobbler 7 https://github.com/rubygems/rubygems 7 https://github.com/magento/magento2 7 https://github.com/shopware/shopware 7 https://github.com/DSpace/DSpace 7 https://github.com/faucetsdn/ryu 7 https://github.com/apache/activemq 7 https://github.com/PHPMailer/PHPMailer 7 https://github.com/smarty-php/smarty 7 https://github.com/composer/composer 7 https://github.com/parisneo/lollms 7 https://github.com/mantisbt/mantisbt 7 https://github.com/mattermost/mattermost 7 https://github.com/MobSF/Mobile-Security-Framework-MobSF 7 https://github.com/ethyca/fides 6 https://github.com/bodil/sized-chunks 6 https://github.com/containers/podman 6 https://github.com/drupal/core 6 https://github.com/nilsteampassnet/TeamPass 6 https://github.com/intelliants/subrion 6 https://github.com/aubio/aubio 6 https://github.com/cosmos/cosmos-sdk 6 https://github.com/getsentry/sentry 6 https://github.com/cilium/cilium 6 https://github.com/WWBN/AVideo 6 https://github.com/istio/istio 6 https://github.com/pgadmin-org/pgadmin4 6 https://github.com/haxtheweb/issues 6 https://github.com/phpseclib/phpseclib 6 https://github.com/nautobot/nautobot 6 https://github.com/getkirby/kirby 6 https://github.com/DrunkenShells/Disclosures 6 https://github.com/OpenZeppelin/openzeppelin-contracts 6 https://github.com/froxlor/froxlor 6 https://github.com/goharbor/harbor 6 https://github.com/cefsharp/CefSharp 6 https://github.com/Graylog2/graylog2-server 6 https://github.com/matrix-org/matrix-js-sdk 6 https://github.com/hyperledger/fabric 6 https://github.com/OpenNMS/opennms 6 https://github.com/ImageMagick/ImageMagick 6 https://github.com/minio/minio 6 https://github.com/kiwitcms/Kiwi 6 https://github.com/protocolbuffers/protobuf 6 https://github.com/CVEProject/cvelist 6 https://github.com/TYPO3-CMS/core 6 https://github.com/quarkusio/quarkus 6 https://github.com/guzzle/guzzle 6 https://github.com/gravitl/netmaker 6 https://github.com/sequelize/sequelize 6 https://github.com/kyverno/kyverno 6 https://github.com/npm/node-tar 6 https://github.com/langchain-ai/langchain 6 https://github.com/dromara/hutool 6 https://github.com/RaspAP/raspap-webgui 6 https://github.com/opencast/opencast 6 https://github.com/PrestaShop/PrestaShop 5 https://github.com/openstack/neutron 5 https://github.com/apache/hadoop 5 https://github.com/hashicorp/go-getter 5 https://github.com/yiisoft/yii2 5 https://github.com/zopefoundation/Zope 5 https://github.com/n8n-io/n8n 5 https://github.com/cakephp/cakephp 5 https://github.com/HumanSignal/label-studio 5 https://github.com/opencart/opencart 5 https://github.com/statamic/cms 5 https://github.com/apache/xmlgraphics-batik 5 https://github.com/docker/docker 5 https://github.com/ethereum/go-ethereum 5 https://github.com/bolt/bolt 5 https://sourceforge.net/projects/phpmyadmin.sourceforge.net 5 https://github.com/BlackFan/client-side-prototype-pollution 5 https://github.com/zendframework/zendframework 5 https://github.com/faisalman/ua-parser-js 5 https://github.com/beego/beego 5 https://github.com/pear/Archive_Tar 5 https://github.com/cloudflare/cfrpki 5 https://github.com/axios/axios 5 https://github.com/answerdev/answer 5 https://github.com/hpcng/singularity 5 https://github.com/apache/geode 5 https://github.com/cometbft/cometbft 5 https://github.com/forkcms/forkcms 5 https://github.com/thorsten/phpMyFAQ 5 https://github.com/sebhildebrandt/systeminformation 5 https://github.com/IBAX-io/go-ibax 5