GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,279
Erlang
31
GitHub Actions
21
Go
2,056
Maven
5,000+
npm
3,740
NuGet
668
pip
3,421
Pub
12
RubyGems
891
Rust
873
Swift
36
Unreviewed advisories
All unreviewed
5,000+
113 advisories
Filter by severity
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service...
Low
Unreviewed
CVE-2020-0748
was published
May 24, 2022
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service...
Low
Unreviewed
CVE-2020-0677
was published
May 24, 2022
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service...
Low
Unreviewed
CVE-2020-0676
was published
May 24, 2022
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service...
Low
Unreviewed
CVE-2020-0675
was published
May 24, 2022
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS...
Low
Unreviewed
CVE-2019-8798
was published
May 24, 2022
Improper validation for loop variable received from firmware can lead to out of bound access in...
Low
Unreviewed
CVE-2019-10535
was published
May 24, 2022
Buffer overflow in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6618 ...
Low
Unreviewed
CVE-2019-11113
was published
May 24, 2022
IDRIX, Truecrypt Veracrypt, Truecrypt Prior to 1.23-Hotfix-1 (Veracrypt), all versions (Truecrypt...
Low
Unreviewed
CVE-2019-1010208
was published
May 24, 2022
Cisco AnyConnect Secure Mobility Client 3.0 before 3.0.08057 allows remote authenticated users to...
Low
Unreviewed
CVE-2012-1370
was published
May 17, 2022
Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 on the SPARC and Itanium platforms does not...
Low
Unreviewed
CVE-2012-2394
was published
May 17, 2022
Cisco IOS 15.1 and 15.2, when a clientless SSL VPN is configured, allows remote authenticated...
Low
Unreviewed
CVE-2012-1344
was published
May 17, 2022
The fallocate implementation in the GFS2 filesystem in the Linux kernel before 3.2 relies on the...
Low
Unreviewed
CVE-2011-4098
was published
May 17, 2022
OpenStack Compute (Nova) Folsom, Grizzly, and earlier, when using Apache Qpid for the RPC backend...
Low
Unreviewed
CVE-2013-4261
was published
May 17, 2022
Multiple buffer overflows in the NMEA parser (nmea-gen.c) in gypsy 0.8 allow local users to cause...
Low
Unreviewed
CVE-2011-0524
was published
May 17, 2022
The (1) key_notify_sa_flush and (2) key_notify_policy_flush functions in net/key/af_key.c in the...
Low
Unreviewed
CVE-2013-2234
was published
May 17, 2022
The key_notify_policy_flush function in net/key/af_key.c in the Linux kernel before 3.9 does not...
Low
Unreviewed
CVE-2013-2237
was published
May 17, 2022
The av_probe_input_buffer function in libavformat/utils.c in FFmpeg before 1.0.2, when running...
Low
Unreviewed
CVE-2012-6618
was published
May 17, 2022
Symantec PGP Desktop 10.0.x through 10.2.x and Encryption Desktop Professional 10.3.x before 10.3...
Low
Unreviewed
CVE-2014-1647
was published
May 17, 2022
Symantec PGP Desktop 10.0.x through 10.2.x and Encryption Desktop Professional 10.3.x before 10.3...
Low
Unreviewed
CVE-2014-1646
was published
May 17, 2022
slapd in OpenLDAP before 2.4.30 allows remote attackers to cause a denial of service (assertion...
Low
Unreviewed
CVE-2012-1164
was published
May 17, 2022
There is a stack-based buffer overflow on some Tenda routers (FH1202/F1202/F1200: versions before...
Low
Unreviewed
CVE-2017-9139
was published
May 17, 2022
Buffer overflow in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.43, 8.0 before 8.0.0...
Low
Unreviewed
CVE-2016-0385
was published
May 17, 2022
The class file parser in IBM Java before 1.4.2 SR13 FP9, as used in IBM Runtimes for Java...
Low
Unreviewed
CVE-2011-0311
was published
May 17, 2022
The rfbSendFramebufferUpdate function in server/libvncserver/rfbserver.c in vino-server in Vino 2...
Low
Unreviewed
CVE-2011-0904
was published
May 17, 2022
The rfbSendFramebufferUpdate function in server/libvncserver/rfbserver.c in vino-server in Vino 2...
Low
Unreviewed
CVE-2011-0905
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API