GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,476
Erlang
33
GitHub Actions
24
Go
2,207
Maven
5,000+
npm
3,858
NuGet
696
pip
3,639
Pub
12
RubyGems
913
Rust
918
Swift
38
Unreviewed advisories
All unreviewed
5,000+
126 advisories
Filter by severity
Bootloader contains a vulnerability in the NV3P server where any user with physical access...
Low
Unreviewed
CVE-2021-1111
was published
May 24, 2022
A flaw was found in the Linux kernel in versions before 5.4.92 in the BPF protocol. This flaw...
Low
Unreviewed
CVE-2021-20239
was published
May 24, 2022
Improper buffer restrictions in the Intel(R) Wireless for Open Source before version 1.5 may...
Low
Unreviewed
CVE-2020-8689
was published
May 24, 2022
Improper buffer restrictions in system driver for some Intel(R) Graphics Drivers before version...
Low
Unreviewed
CVE-2020-8683
was published
May 24, 2022
An information disclosure vulnerability exists when the Windows kernel fails to properly...
Low
Unreviewed
CVE-2020-1419
was published
May 24, 2022
VMware ESXi (6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), VMware...
Low
Unreviewed
CVE-2020-3959
was published
May 24, 2022
A denial of service vulnerability exists when Windows improperly handles objects in memory, aka ...
Low
Unreviewed
CVE-2020-1076
was published
May 24, 2022
Improper buffer restrictions in kernel mode driver for Intel(R) PROSet/Wireless WiFi products...
Low
Unreviewed
CVE-2020-0558
was published
May 24, 2022
The GNU C Library (aka glibc or libc6) before 2.32 could overflow an on-stack buffer during range...
Low
Unreviewed
CVE-2020-10029
was published
May 24, 2022
An access issue was addressed with improved memory management. This issue is fixed in iOS 13.3.1...
Low
Unreviewed
CVE-2020-3836
was published
May 24, 2022
An issue was discovered in the Linux kernel 5.4 and 5.5 through 5.5.6 on the AArch64 architecture...
Low
Unreviewed
CVE-2020-9391
was published
May 24, 2022
Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP...
Low
Unreviewed
CVE-2020-5826
was published
May 24, 2022
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service...
Low
Unreviewed
CVE-2020-0748
was published
May 24, 2022
An information disclosure vulnerability exists in the way that the Windows Graphics Device...
Low
Unreviewed
CVE-2020-0744
was published
May 24, 2022
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service...
Low
Unreviewed
CVE-2020-0676
was published
May 24, 2022
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service...
Low
Unreviewed
CVE-2020-0677
was published
May 24, 2022
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service...
Low
Unreviewed
CVE-2020-0675
was published
May 24, 2022
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS...
Low
Unreviewed
CVE-2019-8798
was published
May 24, 2022
Improper validation for loop variable received from firmware can lead to out of bound access in...
Low
Unreviewed
CVE-2019-10535
was published
May 24, 2022
Buffer overflow in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6618 ...
Low
Unreviewed
CVE-2019-11113
was published
May 24, 2022
IDRIX, Truecrypt Veracrypt, Truecrypt Prior to 1.23-Hotfix-1 (Veracrypt), all versions (Truecrypt...
Low
Unreviewed
CVE-2019-1010208
was published
May 24, 2022
Cisco AnyConnect Secure Mobility Client 3.0 before 3.0.08057 allows remote authenticated users to...
Low
Unreviewed
CVE-2012-1370
was published
May 17, 2022
Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 on the SPARC and Itanium platforms does not...
Low
Unreviewed
CVE-2012-2394
was published
May 17, 2022
Cisco IOS 15.1 and 15.2, when a clientless SSL VPN is configured, allows remote authenticated...
Low
Unreviewed
CVE-2012-1344
was published
May 17, 2022
The fallocate implementation in the GFS2 filesystem in the Linux kernel before 3.2 relies on the...
Low
Unreviewed
CVE-2011-4098
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API