GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
                  
                    
                      
                      All reviewed
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      Composer
                    
                    
                      4,963
                    
                  
                  
                    
                      
                      Erlang
                    
                    
                      39
                    
                  
                  
                    
                      
                      GitHub Actions
                    
                    
                      38
                    
                  
                  
                    
                      
                      Go
                    
                    
                      2,615
                    
                  
                  
                    
                      
                      Maven
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      npm
                    
                    
                      4,255
                    
                  
                  
                    
                      
                      NuGet
                    
                    
                      760
                    
                  
                  
                    
                      
                      pip
                    
                    
                      4,034
                    
                  
                  
                    
                      
                      Pub
                    
                    
                      12
                    
                  
                  
                    
                      
                      RubyGems
                    
                    
                      953
                    
                  
                  
                    
                      
                      Rust
                    
                    
                      1,049
                    
                  
                  
                    
                      
                      Swift
                    
                    
                      45
                    
                  
                  Unreviewed advisories
                  
                    
                      
                      All unreviewed
                    
                    
                      5,000+
                    
                  
            1,049 advisories
        Filter by severity
        
      
      
    
                    
                      Null pointer deference in openssl-src 
                    
                      
  High
                    
                
                      
                        CVE-2020-1967
                      
                      was published
                        for
                        
                          openssl-src
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Access of Uninitialized Pointer in linked-hash-map
                    
                      
  Critical
                    
                
                      
                        CVE-2020-25573
                      
                      was published
                        for
                        
                          linked-hash-map
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Array size is not checked in sized-chunks
                    
                      
  High
                    
                
                      
                        CVE-2020-25791
                      
                      was published
                        for
                        
                          sized-chunks
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Array size is not checked in sized-chunks
                    
                      
  High
                    
                
                      
                        CVE-2020-25793
                      
                      was published
                        for
                        
                          sized-chunks
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Missing release of memory in sized-chunks
                    
                      
  High
                    
                
                      
                        CVE-2020-25795
                      
                      was published
                        for
                        
                          sized-chunks
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Improper Input Validation in renderdoc
                    
                      
  Critical
                    
                
                      
                        CVE-2019-16142
                      
                      was published
                        for
                        
                          renderdoc
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Out of bounds access in compact_arena
                    
                      
  Critical
                    
                
                      
                        CVE-2019-16139
                      
                      was published
                        for
                        
                          compact_arena
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Wrong memory orderings violates mutual exclusion in spin
                    
                      
  High
                    
                
                      
                        CVE-2019-16137
                      
                      was published
                        for
                        
                          spin
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Algorithms compute incorrect results in blake2
                    
                      
  Critical
                    
                
                      
                        CVE-2019-16143
                      
                      was published
                        for
                        
                          blake2
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Improper Input Validation in once_cell
                    
                      
  High
                    
                
                      
                        CVE-2019-16141
                      
                      was published
                        for
                        
                          once_cell
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Use after free in string-interner
                    
                      
  High
                    
                
                      
                        CVE-2019-16882
                      
                      was published
                        for
                        
                          string-interner
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Out of bounds write in slice-deque
                    
                      
  Critical
                    
                
                      
                        CVE-2019-15543
                      
                      was published
                        for
                        
                          slice-deque
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Failure to properly verify ed25519 signatures in libp2p-core
                    
                      
  High
                    
                
                      
                        CVE-2019-15545
                      
                      was published
                        for
                        
                          libp2p-core
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Uncontrolled memory consumption in protobuf
                    
                      
  High
                    
                
                      
                        CVE-2019-15544
                      
                      was published
                        for
                        
                          protobuf
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Exposure of uninitialized memory in memoffset
                    
                      
  High
                    
                
                      
                        CVE-2019-15553
                      
                      was published
                        for
                        
                          memoffset
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
                    
                      Memory corruption in smallvec
                    
                      
  Critical
                    
                
                      
                        CVE-2019-15554
                      
                      was published
                        for
                        
                          smallvec
                        
                        (Rust)
                      Aug 25, 2021 
                    
                  
        
        ProTip!
        Advisories are also available from the 
        GraphQL API