GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
117 advisories
Filter by severity
Jenkins directory traversal vulnerability
Moderate
CVE-2014-2059
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
May 17, 2022
Jenkins Path Traversal vulnerability
Moderate
CVE-2014-3664
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
May 17, 2022
Path Traversal in Apache Oozie
Moderate
CVE-2017-15712
was published
for
org.apache.oozie:oozie-core
(Maven)
May 14, 2022
Jenkins HTML Publisher Plugin path traversal vulnerability
Moderate
CVE-2018-1000175
was published
for
org.jenkins-ci.plugins:htmlpublisher
(Maven)
May 14, 2022
Improper Limitation of a Pathname to a Restricted Directory in Elasticsearch
Moderate
CVE-2015-5531
was published
for
org.elasticsearch:elasticsearch
(Maven)
May 14, 2022
Apache Shiro Path Traversal vulnerability
Moderate
CVE-2010-3863
was published
for
org.apache.shiro:shiro-root
(Maven)
May 14, 2022
RubyGems Path Traversal vulnerability
Moderate
CVE-2018-1000079
was published
for
org.jruby:jruby-stdlib
(RubyGems)
May 14, 2022
Directory Traversal in Apache Tomcat
Moderate
CVE-2008-5515
was published
for
org.apache.tomcat:tomcat
(Maven)
May 14, 2022
Improper Limitation of a Pathname to a Restricted Directory in Apache ActiveMQ
Moderate
CVE-2015-1830
was published
for
org.apache.activemq:activemq-client
(Maven)
May 14, 2022
OpenRefine Directory Traversal
Moderate
CVE-2018-19859
was published
for
org.openrefine:main
(Maven)
May 14, 2022
UberFire Framework Improperly Restricts Paths
Moderate
CVE-2014-8114
was published
for
org.uberfire:uberfire-parent
(Maven)
May 14, 2022
Improper Limitation of a Pathname to a Restricted Directory in Apache Tomcat
Moderate
CVE-2015-5345
was published
for
org.apache.tomcat:tomcat
(Maven)
May 14, 2022
Improper Limitation of a Pathname to a Restricted Directory in Apache Tomcat
Moderate
CVE-2015-5174
was published
for
org.apache.tomcat:tomcat
(Maven)
May 14, 2022
Improper Limitation of a Pathname to a Restricted Directory in WildFly
Moderate
CVE-2018-10862
was published
for
org.wildfly.core:wildfly-server
(Maven)
May 14, 2022
Path Traversal in Jenkins
Moderate
CVE-2018-1000406
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
May 14, 2022
Improper Limitation of a Pathname to a Restricted Directory in Jenkins
Moderate
CVE-2018-1000997
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
May 14, 2022
Improper Limitation of a Pathname to a Restricted Directory in Spring Framework
Moderate
CVE-2014-3578
was published
for
org.springframework:spring-core
(Maven)
May 14, 2022
Improper Limitation of a Pathname to a Restricted Directory in Zip4j
Moderate
CVE-2018-1002202
was published
for
net.lingala.zip4j:zip4j
(Maven)
May 13, 2022
Improper Limitation of a Pathname to a Restricted Directory in plexus-archiver
Moderate
CVE-2018-1002200
was published
for
org.codehaus.plexus:plexus-archiver
(Maven)
May 13, 2022
Improper Limitation of a Pathname to a Restricted Directory in zt-zip
Moderate
CVE-2018-1002201
was published
for
org.zeroturnaround:zt-zip
(Maven)
May 13, 2022
Apache MyFaces Vulnerable to Path Traversal
Moderate
CVE-2011-4367
was published
for
org.apache.myfaces.core:myfaces-impl
(Maven)
May 13, 2022
Improper Limitation of a Pathname to a Restricted Directory in JCraft JSch
Moderate
CVE-2016-5725
was published
for
com.jcraft:jsch
(Maven)
May 13, 2022
spring-integration-zip Arbitrary File Write
Moderate
CVE-2018-1263
was published
for
org.springframework.integration:spring-integration-zip
(Maven)
May 13, 2022
Improper Limitation of a Pathname to a Restricted Directory in Spring Framework
Moderate
CVE-2014-3625
was published
for
org.springframework:spring-webmvc
(Maven)
May 13, 2022
Improper Limitation of a Pathname to a Restricted Directory in Jenkins
Moderate
CVE-2018-6356
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API