GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
                  
                    
                      
                      All reviewed
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      Composer
                    
                    
                      4,968
                    
                  
                  
                    
                      
                      Erlang
                    
                    
                      39
                    
                  
                  
                    
                      
                      GitHub Actions
                    
                    
                      38
                    
                  
                  
                    
                      
                      Go
                    
                    
                      2,616
                    
                  
                  
                    
                      
                      Maven
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      npm
                    
                    
                      4,255
                    
                  
                  
                    
                      
                      NuGet
                    
                    
                      760
                    
                  
                  
                    
                      
                      pip
                    
                    
                      4,040
                    
                  
                  
                    
                      
                      Pub
                    
                    
                      12
                    
                  
                  
                    
                      
                      RubyGems
                    
                    
                      953
                    
                  
                  
                    
                      
                      Rust
                    
                    
                      1,050
                    
                  
                  
                    
                      
                      Swift
                    
                    
                      45
                    
                  
                  Unreviewed advisories
                  
                    
                      
                      All unreviewed
                    
                    
                      5,000+
                    
                  
            541 advisories
        Filter by severity
        
      
      
    
                    
                      There is an Assertion 'ecma_is_value_undefined (value) || ecma_is_value_null (value) ||...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-22892
                      
                      was published
                      Jan 22, 2022 
                    
                  
                    
                      There is an Assertion 'page_p != NULL' failed at /parser/js/js-parser-mem.c(parser_list_get) in...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46337
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'opts & PARSER_CLASS_LITERAL_CTOR_PRESENT' failed at /parser/js/js-parser...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46336
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'ecma_is_lexical_environment (object_p)' failed at /base/ecma-helpers.c...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46338
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'lit_is_valid_cesu8_string (string_p, string_size)' failed at /base/ecma...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46339
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'cesu8_cursor_p == cesu8_end_p' failed at /jerry-core/lit/lit-strings.c in...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46345
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'context_p->token.type == LEXER_LITERAL' failed at /jerry-core/parser/js/js...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46343
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'flags & PARSER_PATTERN_HAS_REST_ELEMENT' failed at /jerry-core/parser/js...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46344
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'ECMA_STRING_IS_REF_EQUALS_TO_ONE (string_p)' failed at /jerry-core/ecma...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46348
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'type == ECMA_OBJECT_TYPE_GENERAL || type == ECMA_OBJECT_TYPE_PROXY' failed...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46349
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'local_tza == ecma_date_local_time_zone_adjustment (date_value)' failed at ...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46346
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'ecma_is_lexical_environment (obj_p) || !ecma_op_object_is_fast_array ...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46342
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'context_p->stack_top_uint8 == SCAN_STACK_TRY_STATEMENT || context_p-...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46340
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'ecma_object_check_class_name_is_object (obj_p)' failed at /jerry-core/ecma...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46347
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'local_tza == ecma_date_local_time_zone_adjustment (date_value)' failed at ...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46351
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      There is an Assertion 'ecma_is_value_object (value)' failed at jerryscript/jerry-core/ecma/base...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46350
                      
                      was published
                      Jan 21, 2022 
                    
                  
                    
                      Possible assertion due to improper validation of symbols configured for PDCCH monitoring in...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-30287
                      
                      was published
                      Jan 14, 2022 
                    
                  
                    
                      Possible denial of service due to improper validation of DNS response when DNS client requests...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-30307
                      
                      was published
                      Jan 14, 2022 
                    
                  
                    
                      Improper validation of function pointer type with actual function signature can lead to assertion...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-30353
                      
                      was published
                      Jan 14, 2022 
                    
                  
                    
                      There is an Assertion `scaling_list_pred_matrix_id_delta==1' failed at sps.cc:925 in libde265 v1...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-36409
                      
                      was published
                      Jan 12, 2022 
                    
                  
                    
                      A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm:...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46048
                      
                      was published
                      Jan 11, 2022 
                    
                  
                    
                      A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::Tuple...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46052
                      
                      was published
                      Jan 11, 2022 
                    
                  
                    
                      A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm:...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46054
                      
                      was published
                      Jan 11, 2022 
                    
                  
                    
                      A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm:...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-46055
                      
                      was published
                      Jan 11, 2022 
                    
                  
                    
                      Possible assertion due to improper handling of IPV6 packet with invalid length in destination...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2021-30273
                      
                      was published
                      Jan 4, 2022 
                    
                  
        
        ProTip!
        Advisories are also available from the 
        GraphQL API