GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,760
NuGet
678
pip
3,446
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
746 advisories
Filter by severity
An issue has been discovered in GitLab CE/EE affecting all versions starting with version 8.10....
Moderate
Unreviewed
CVE-2022-0488
was published
Mar 29, 2022
libiberty/rust-demangle.c in GNU GCC 11.2 allows stack consumption in demangle_const, as...
Moderate
Unreviewed
CVE-2022-27943
was published
Mar 27, 2022
In cloud foundry CAPI versions prior to 1.122, a denial-of-service attack in which a developer...
Moderate
Unreviewed
CVE-2021-22100
was published
Mar 26, 2022
A resource exhaustion issue was addressed with improved input validation. This issue is fixed in...
Moderate
Unreviewed
CVE-2022-22588
was published
Mar 19, 2022
In Package Manger, there is a possible permanent denial of service due to resource exhaustion....
Moderate
Unreviewed
CVE-2021-39624
was published
Mar 17, 2022
There's a flaw in urllib's AbstractBasicAuthHandler class. An attacker who controls a malicious...
Moderate
Unreviewed
CVE-2021-3733
was published
Mar 11, 2022
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a...
Moderate
Unreviewed
CVE-2021-38989
was published
Mar 8, 2022
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a...
Moderate
Unreviewed
CVE-2021-38988
was published
Mar 8, 2022
tsMuxer git-c6a0277 was discovered to contain a segmentation fault via DTSStreamReader::findFrame...
Moderate
Unreviewed
CVE-2021-45864
was published
Mar 3, 2022
A security vulnerability in the Spectrum Scale 5.0 and 5.1 allows a non-root user to overflow the...
Moderate
Unreviewed
CVE-2020-4925
was published
Mar 2, 2022
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Linux Security whereby the...
Moderate
Unreviewed
CVE-2021-44747
was published
Mar 2, 2022
Denial of Service in GitHub repository radareorg/radare2 prior to 5.6.4.
Moderate
Unreviewed
CVE-2022-0695
was published
Feb 25, 2022
Denial of Service in GitHub repository radareorg/radare2 prior to 5.6.4.
Moderate
Unreviewed
CVE-2022-0476
was published
Feb 24, 2022
There is a flaw in polkit which can allow an unprivileged user to cause polkit to crash, due to...
Moderate
Unreviewed
CVE-2021-4115
was published
Feb 22, 2022
In Expat (aka libexpat) before 2.4.5, an attacker can trigger stack exhaustion in build_model via...
Moderate
Unreviewed
CVE-2022-25313
was published
Feb 19, 2022
A segmentation fault during PCF file parsing in pcf2bdf versions >=1.05 allows an attacker to...
Moderate
Unreviewed
CVE-2022-23319
was published
Feb 18, 2022
Core FTP / SFTP Server v2 Build 725 was discovered to allow unauthenticated attackers to cause a...
Moderate
Unreviewed
CVE-2022-22899
was published
Feb 18, 2022
Improper access control in the firmware for some Intel(R) Processors may allow a privileged user...
Moderate
Unreviewed
CVE-2021-0092
was published
Feb 11, 2022
Windows User Account Profile Picture Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-22002
was published
Feb 10, 2022
Windows Common Log File System Driver Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-22710
was published
Feb 10, 2022
Windows Hyper-V Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-22712
was published
Feb 10, 2022
get_sort_by_table in MariaDB before 10.6.2 allows an application crash via certain subquery uses...
Moderate
Unreviewed
CVE-2021-46657
was published
Jan 31, 2022
save_window_function_values in MariaDB before 10.6.3 allows an application crash because of...
Moderate
Unreviewed
CVE-2021-46658
was published
Jan 31, 2022
On BIG-IP version 16.1.x before 16.1.2.1, 15.1.x before 15.1.5, 14.1.x before 14.1.4.5, and all...
Moderate
Unreviewed
CVE-2022-23023
was published
Jan 26, 2022
On version 16.1.x before 16.1.2, 15.1.x before 15.1.4.1, 14.1.x before 14.1.4.5, and all versions...
Moderate
Unreviewed
CVE-2022-23030
was published
Jan 26, 2022
ProTip!
Advisories are also available from the
GraphQL API