GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,285
Erlang
31
GitHub Actions
21
Go
2,056
Maven
5,000+
npm
3,741
NuGet
668
pip
3,422
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
96 advisories
Filter by severity
** UNSUPPORTED WHEN ASSIGNED ** In OSS-RC systems of the release 18B and older during data...
Moderate
Unreviewed
CVE-2021-32571
was published
May 24, 2022
The BulletProof Security WordPress plugin is vulnerable to sensitive information disclosure due...
Moderate
Unreviewed
CVE-2021-39327
was published
May 24, 2022
Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially...
High
Unreviewed
CVE-2020-24489
was published
May 24, 2022
An issue was discovered in the FUSE filesystem implementation in the Linux kernel before 5.10.6,...
Moderate
Unreviewed
CVE-2020-36322
was published
May 24, 2022
Incomplete cleanup in some Intel(R) PROSet/Wireless WiFi and Killer (TM) drivers before version...
Moderate
Unreviewed
CVE-2020-24458
was published
May 24, 2022
There is an unsafe incomplete reset of PATH in OpenDoas 6.6 through 6.8 when changing the user...
High
Unreviewed
CVE-2019-25016
was published
May 24, 2022
An incomplete-cleanup vulnerability in the Office rendering engine of Gotenberg through 6.2.1...
Critical
Unreviewed
CVE-2020-13451
was published
May 24, 2022
In stopZygoteLocked of AppZygote.java, there is an insufficient cleanup. This could lead to local...
Moderate
Unreviewed
CVE-2020-0258
was published
May 24, 2022
Incomplete cleanup from specific special register read operations in some Intel(R) Processors may...
Low
Unreviewed
CVE-2020-0543
was published
May 24, 2022
"Clear History and Website Data" did not clear the history. The issue was addressed with improved...
Moderate
Unreviewed
CVE-2019-8768
was published
May 24, 2022
An issue existed in the pausing of FaceTime video. The issue was resolved with improved logic....
Moderate
Unreviewed
CVE-2019-8550
was published
May 24, 2022
RSA BSAFE Crypto-C Micro Edition, all versions prior to 4.1.4, is vulnerable to three (3)...
Moderate
Unreviewed
CVE-2019-3733
was published
May 24, 2022
Little Snitch versions 4.4.0 fixes a vulnerability in a privileged helper tool. However, the...
Moderate
Unreviewed
CVE-2019-13014
was published
May 24, 2022
Pydio Cells before 1.5.0 does incomplete cleanup of a user's data upon deletion. This allows a...
Moderate
Unreviewed
CVE-2019-12902
was published
May 24, 2022
A vulnerability in Cisco Application Policy Infrastructure Controller (APIC) Software could allow...
Moderate
Unreviewed
CVE-2019-1586
was published
May 24, 2022
Flarum mishandles invalidation of user email tokens
High
CVE-2019-11514
was published
for
flarum/flarum
(Composer)
May 24, 2022
An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS...
High
Unreviewed
CVE-2018-19961
was published
May 13, 2022
Incomplete Cleanup vulnerability in ECOS Secure Boot Stick (aka SBS) 5.6.5 allows an attacker to...
Moderate
Unreviewed
CVE-2018-12332
was published
May 13, 2022
An issue was discovered in chan_skinny.c in Asterisk Open Source 13.18.2 and older, 14.7.2 and...
High
Unreviewed
CVE-2017-17090
was published
May 13, 2022
In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, GTM, Link Controller, PEM and Websafe...
High
Unreviewed
CVE-2017-0303
was published
May 13, 2022
The image-upload feature in ProjeQtOr 7.2.5 allows remote attackers to execute arbitrary code by...
High
Unreviewed
CVE-2018-18924
was published
May 13, 2022
Since Linux kernel version 3.2, the mremap() syscall performs TLB flushes after dropping...
High
Unreviewed
CVE-2018-18281
was published
May 13, 2022
Insufficiently quick clearing of stale rendered content in Navigation in Google Chrome prior to...
Moderate
Unreviewed
CVE-2018-17467
was published
May 13, 2022
A vulnerability in the installation process of Cisco HyperFlex Software could allow an...
Moderate
Unreviewed
CVE-2018-15407
was published
May 13, 2022
In FreeBSD before 11.2-STABLE(r343782), 11.2-RELEASE-p9, 12.0-STABLE(r343781), and 12.0-RELEASE...
Moderate
Unreviewed
CVE-2019-5595
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API