GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,248
Erlang
31
GitHub Actions
21
Go
2,016
Maven
5,000+
npm
3,721
NuGet
662
pip
3,400
Pub
11
RubyGems
890
Rust
852
Swift
36
Unreviewed advisories
All unreviewed
5,000+
421 advisories
Filter by severity
Dell PowerScale OneFS versions 8.2.x - 9.3.0.x contains a denial-of-service vulnerability in...
High
Unreviewed
CVE-2022-23161
was published
Apr 13, 2022
Uncaught exception in system driver for Intel(R) Graphics Drivers before version 15.40.44.5107...
Low
Unreviewed
CVE-2020-0511
was published
May 24, 2022
In a certain condition, receipt of a specific BGP UPDATE message might cause Juniper Networks...
High
Unreviewed
CVE-2020-1632
was published
May 24, 2022
A vulnerability has been identified in SIMATIC CP 443-1 OPC UA (All versions), SIMATIC ET 200SP...
High
Unreviewed
CVE-2019-6575
was published
May 13, 2022
A privilege escalation vulnerability exists in the Duo Authentication for Windows Logon and RDP...
High
Unreviewed
CVE-2020-3427
was published
May 24, 2022
A vulnerability in the Protocol Independent Multicast (PIM) feature for IPv6 networks (PIM6) of...
Moderate
Unreviewed
CVE-2020-3338
was published
May 24, 2022
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to execute arbitrary code on the...
High
Unreviewed
CVE-2020-4302
was published
May 24, 2022
In appendFormatV of String8.cpp, there is a possible out of bounds write due to incorrect error...
High
Unreviewed
CVE-2020-0421
was published
May 24, 2022
An issue was discovered in Xen through 4.14.x. An x86 PV guest can trigger a host OS crash when...
Moderate
Unreviewed
CVE-2020-25602
was published
May 24, 2022
An information leak was discovered in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1...
High
Unreviewed
CVE-2020-25869
was published
May 24, 2022
Visual Components (owned by KUKA) is a robotic simulator that allows simulating factories and...
High
Unreviewed
CVE-2020-10292
was published
May 24, 2022
Uncaught exception in the Intel(R) 50GbE IP Core for Intel(R) Quartus Prime before version 20.2...
Moderate
Unreviewed
CVE-2020-8767
was published
May 24, 2022
An improper handling of exceptional conditions vulnerability in Cortex XDR Agent allows a local...
Moderate
Unreviewed
CVE-2020-2020
was published
May 24, 2022
A vulnerability in Cisco Unified Communications Manager IM & Presence Service (Unified CM IM...
Moderate
Unreviewed
CVE-2020-27121
was published
May 24, 2022
When SAML authentication is enabled, Juniper Networks Mist Cloud UI might incorrectly handle SAML...
High
Unreviewed
CVE-2020-1676
was published
May 24, 2022
Improper check or handling of exceptional conditions in MELSEC iQ-F series FX5U(C) CPU unit...
High
Unreviewed
CVE-2020-5665
was published
May 24, 2022
An attacker can craft and send an OpenNamespace message to port 4241 with valid session-id that...
High
Unreviewed
CVE-2020-5801
was published
May 24, 2022
An unauthenticated remote attacker can send data to RsvcHost.exe listening on TCP port 5241 to...
High
Unreviewed
CVE-2020-5807
was published
May 24, 2022
Improper Handling of Exceptional Conditions and Improper Input Validation in Reactor Netty
High
CVE-2020-5403
was published
for
io.projectreactor.netty:reactor-netty-http
(Maven)
Feb 10, 2022
Improper check or handling of exceptional conditions in LOGITEC LAN-W300N/RS allows a remote...
Moderate
Unreviewed
CVE-2021-20642
was published
May 24, 2022
decompress_gunzip.c in BusyBox through 1.32.1 mishandles the error bit on the huft_build result...
High
Unreviewed
CVE-2021-28831
was published
May 24, 2022
Multiple vulnerabilities in the web UI of Cisco IOS XE Software could allow an authenticated,...
Moderate
Unreviewed
CVE-2021-1356
was published
May 24, 2022
RRC sends a connection establishment success to NAS even though connection setup validation...
High
Unreviewed
CVE-2020-11243
was published
May 24, 2022
On Juniper Networks Junos OS platforms configured as DHCPv6 local server or DHCPv6 Relay Agent,...
High
Unreviewed
CVE-2021-0240
was published
May 24, 2022
A vulnerability in the processing of traffic matching a firewall filter containing a syslog...
Moderate
Unreviewed
CVE-2021-0264
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API