GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
2,000
Maven
5,000+
npm
3,711
NuGet
661
pip
3,383
Pub
11
RubyGems
885
Rust
849
Swift
36
Unreviewed advisories
All unreviewed
5,000+
959 advisories
Filter by severity
The mobiGate App for Android version 2.2.1.2 and earlier and mobiGate App for iOS version 2.2.4.1...
Moderate
Unreviewed
CVE-2016-7805
was published
May 17, 2022
The "Fountain Trust Mobile Banking" by FOUNTAIN TRUST COMPANY app before 3.2.0 -- aka fountain...
Moderate
Unreviewed
CVE-2017-9599
was published
May 17, 2022
The YottaMark ShopWell - Healthy Diet & Grocery Food Scanner app 5.3.7 through 5.4.2 for iOS does...
Moderate
Unreviewed
CVE-2017-8942
was published
May 17, 2022
An issue was discovered in certain Apple products. macOS before 10.12.5 is affected. The issue...
Moderate
Unreviewed
CVE-2017-6988
was published
May 17, 2022
The Banco Santander Mexico SA Supermovil app 3.5 through 3.7 for iOS does not verify X.509...
Moderate
Unreviewed
CVE-2017-5911
was published
May 17, 2022
The Great Southern Bank Great Southern Mobile Banking app before 4.0.4 for iOS does not verify X...
Moderate
Unreviewed
CVE-2017-5907
was published
May 17, 2022
The FOREX.com FOREXTrader for iPhone app 2.9.12 through 2.9.14 for iOS does not verify X.509...
Moderate
Unreviewed
CVE-2017-5912
was published
May 17, 2022
The Banco de Costa Rica BCR Movil app 3.7 for iOS does not verify X.509 certificates from SSL...
Moderate
Unreviewed
CVE-2017-5918
was published
May 17, 2022
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. The issue...
High
Unreviewed
CVE-2017-2498
was published
May 17, 2022
The State Bank of India State Bank Anywhere app 5.1.0 for iOS does not verify X.509 certificates...
Moderate
Unreviewed
CVE-2017-5901
was published
May 17, 2022
The TradeKing Forex for iPhone app 1.2.1 for iOS does not verify X.509 certificates from SSL...
Moderate
Unreviewed
CVE-2017-5913
was published
May 17, 2022
Remote Service Manager 3.0.0 to 3.1.4 fails to verify client certificates, which may allow remote...
Moderate
Unreviewed
CVE-2016-7815
was published
May 17, 2022
WAON "Service Application" for Android 1.4.1 and earlier does not verify SSL certificates.
Moderate
Unreviewed
CVE-2016-4832
was published
May 17, 2022
Pulp before 2.3.0 uses the same the same certificate authority key and certificate for all...
High
Unreviewed
CVE-2013-7450
was published
May 17, 2022
DMMFX Trade for Android 1.5.0 and earlier, DMMFX DEMO Trade for Android 1.5.0 and earlier, and...
Moderate
Unreviewed
CVE-2016-4818
was published
May 17, 2022
Multiple vulnerabilities in the API and in the web-based management interface of Cisco Expressway...
Moderate
Unreviewed
CVE-2022-20813
was published
Jul 7, 2022
The "JMCU Mobile Banking" by Joplin Metro Credit Union app 3.0.0 -- aka jmcu-mobile-banking...
Moderate
Unreviewed
CVE-2017-9579
was published
May 17, 2022
The cayuga-lake-national-bank/id1151601539 app 4.0.1 for iOS does not verify X.509 certificates...
Moderate
Unreviewed
CVE-2017-9560
was published
May 17, 2022
The "BNB Mobile Banking" by Brady National Bank app 3.0.0 -- aka bnb-mobile-banking/id674215747...
Moderate
Unreviewed
CVE-2017-9582
was published
May 17, 2022
The "KC Area Credit Union Mobile Banking" by K C Area Credit Union app 3.0.1 -- aka kc-area...
Moderate
Unreviewed
CVE-2017-9574
was published
May 17, 2022
The wawa-employees-credit-union-mobile/id1158082793 app 4.0.1 for iOS does not verify X.509...
Moderate
Unreviewed
CVE-2017-9558
was published
May 17, 2022
The "SCSB Shelbyville IL Mobile Banking" by Shelby County State Bank app 3.0.0 -- aka scsb...
Moderate
Unreviewed
CVE-2017-9589
was published
May 17, 2022
The North Adams State Bank (Ursa) nasb-mobile-banking/id980573797 app 3.0.1 for iOS does not...
Moderate
Unreviewed
CVE-2017-9573
was published
May 17, 2022
In Lenovo Service Bridge before version 4, a bug found in the signature verification logic of the...
High
Unreviewed
CVE-2016-8231
was published
May 17, 2022
Argo CD certificate verification is skipped for connections to OIDC providers
High
CVE-2022-31105
was published
for
github.com/argoproj/argo-cd
(Go)
Jul 12, 2022
ProTip!
Advisories are also available from the
GraphQL API