GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,963
Erlang
39
GitHub Actions
38
Go
2,615
Maven
5,000+
npm
4,255
NuGet
760
pip
4,036
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,786 advisories
Filter by severity
Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates...
High
Unreviewed
CVE-2022-23039
was published
Mar 11, 2022
Data race in ruspiro-singleton
High
CVE-2020-36435
was published
for
ruspiro-singleton
(Rust)
Aug 25, 2021
Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates...
High
Unreviewed
CVE-2022-23042
was published
Mar 11, 2022
Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates...
High
Unreviewed
CVE-2022-23040
was published
Mar 11, 2022
Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates...
High
Unreviewed
CVE-2022-23036
was published
Mar 11, 2022
Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates...
High
Unreviewed
CVE-2022-23037
was published
Mar 11, 2022
Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates...
High
Unreviewed
CVE-2022-23038
was published
Mar 11, 2022
A use-after-free flaw was found in nci_request in net/nfc/nci/core.c in NFC Controller Interface ...
High
Unreviewed
CVE-2021-4202
was published
Mar 26, 2022
Multiple vulnerabilities in the authentication mechanism of confd in FortiWeb versions 6.4.1, 6.4...
Critical
Unreviewed
CVE-2021-41025
was published
Dec 9, 2021
In vow, there is a possible memory corruption due to a race condition. This could lead to local...
Moderate
Unreviewed
CVE-2022-20078
was published
Apr 12, 2022
In vow, there is a possible memory corruption due to a race condition. This could lead to local...
Moderate
Unreviewed
CVE-2022-20077
was published
Apr 12, 2022
A vulnerability has been identified in SCALANCE W1788-1 M12 (All versions < V3.0.0), SCALANCE...
Moderate
Unreviewed
CVE-2022-27481
was published
Apr 13, 2022
In SUB2AF, there is a possible memory corruption due to a race condition. This could lead to...
Moderate
Unreviewed
CVE-2022-20080
was published
Apr 12, 2022
FreeBSD's crontab calculates the MD5 sum of the previous and new cronjob to determine if any...
Moderate
Unreviewed
CVE-2011-1075
was published
Apr 22, 2022
In several functions of KeyguardServiceWrapper.java and related files,, there is a possible way...
High
Unreviewed
CVE-2022-20006
was published
May 11, 2022
An exploitable vulnerability exists in the signature verification of the firmware update...
High
Unreviewed
CVE-2017-2898
was published
May 13, 2022
Concurrent Execution using Shared Resource with Improper Synchronization in Spring Security
Moderate
CVE-2011-2731
was published
for
org.springframework.security:spring-security-core
(Maven)
May 17, 2022
Wind River VxWorks 6.9.4 and vx7 has a Buffer Overflow in the TCP component (issue 4 of 4). There...
High
Unreviewed
CVE-2019-12263
was published
May 24, 2022
Concurrent Execution using Shared Resource with Improper Synchronization in Elasticsearch
Moderate
CVE-2019-7614
was published
for
org.elasticsearch:elasticsearch
(Maven)
May 24, 2022
In decrypt of CryptoPlugin.cpp, there is a possible use-after-free due to a race condition. This...
Moderate
Unreviewed
CVE-2021-0564
was published
May 24, 2022
Description: A race condition was addressed with additional validation. This issue is fixed in...
Moderate
Unreviewed
CVE-2022-26690
was published
May 27, 2022
A race condition was addressed with improved state handling. This issue is fixed in watchOS 8.6,...
Moderate
Unreviewed
CVE-2022-26765
was published
May 27, 2022
grant table v2 status pages may remain accessible after de-allocation Guest get permitted access...
High
Unreviewed
CVE-2021-28697
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API