GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
263 advisories
Filter by severity
A flaw was found in the Restricted Security Context Constraints (SCC), where it allows pods to...
Moderate
Unreviewed
CVE-2020-14336
was published
May 24, 2022
A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined...
Moderate
Unreviewed
CVE-2021-3527
was published
May 24, 2022
There is a resource management error vulnerability in the verisions V500R001C60SPC500,...
Moderate
Unreviewed
CVE-2021-22360
was published
May 24, 2022
An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2. When...
Moderate
Unreviewed
CVE-2021-22210
was published
May 24, 2022
Excessive memory consumption in MS-WSP dissector in Wireshark 3.4.0 to 3.4.4 and 3.2.0 to 3.2.12...
Moderate
Unreviewed
CVE-2021-22207
was published
May 24, 2022
A vulnerability due to the improper handling of direct memory access (DMA) buffers on EX4300...
Moderate
Unreviewed
CVE-2021-0242
was published
May 24, 2022
A vulnerability in the handling of internal resources necessary to bring up a large number of...
Moderate
Unreviewed
CVE-2021-0224
was published
May 24, 2022
There's a flaw in OpenEXR's Scanline API functionality in versions before 3.0.0-beta. An attacker...
Moderate
Unreviewed
CVE-2021-3479
was published
May 24, 2022
There's a flaw in OpenEXR's scanline input file functionality in versions before 3.0.0-beta. An...
Moderate
Unreviewed
CVE-2021-3478
was published
May 24, 2022
An issue was discovered in the Linux kernel through 5.11.3, as used with Xen PV. A certain part...
Moderate
Unreviewed
CVE-2021-28038
was published
May 24, 2022
An issue was discovered in the Linux kernel 2.6.39 through 5.10.16, as used in Xen. Block, net,...
Moderate
Unreviewed
CVE-2021-26931
was published
May 24, 2022
A vulnerability has been identified in SCALANCE W780 and W740 (IEEE 802.11n) family (All versions...
Moderate
Unreviewed
CVE-2021-25666
was published
May 24, 2022
A vulnerability in the web UI of Cisco Umbrella could allow an unauthenticated, remote attacker...
Moderate
Unreviewed
CVE-2021-1350
was published
May 24, 2022
An attacker-controlled memory allocation size can be passed to the C++ new operator in the...
Moderate
Unreviewed
CVE-2020-5806
was published
May 24, 2022
An issue was discovered in Xen through 4.14.x. Some OSes (such as Linux, FreeBSD, and NetBSD) are...
Moderate
Unreviewed
CVE-2020-29568
was published
May 24, 2022
An issue was discovered in Xen through 4.14.x. Recording of the per-vCPU control block mapping...
Moderate
Unreviewed
CVE-2020-29570
was published
May 24, 2022
An issue was discovered in Xen through 4.14.x. Nodes in xenstore have an ownership. In oxenstored...
Moderate
Unreviewed
CVE-2020-29486
was published
May 24, 2022
An issue was discovered in Xen 4.14.x. When moving IRQs between CPUs to distribute the load of...
Moderate
Unreviewed
CVE-2020-29567
was published
May 24, 2022
A flaw was found in the spice-vdagentd daemon, where it did not properly handle client...
Moderate
Unreviewed
CVE-2020-25652
was published
May 24, 2022
A flaw was found in the way the spice-vdagentd daemon handled file transfers from the host system...
Moderate
Unreviewed
CVE-2020-25650
was published
May 24, 2022
CODESYS Control runtime system before 3.5.16.10 allows Uncontrolled Memory Allocation.
Moderate
Unreviewed
CVE-2020-15806
was published
May 24, 2022
GNU LibreDWG 0.9.3.2564 has an attempted excessive memory allocation in read_sections_map in...
Moderate
Unreviewed
CVE-2020-6610
was published
May 24, 2022
A vulnerability was found in dnsmasq before version 2.81, where the memory leak allows remote...
Moderate
Unreviewed
CVE-2019-14834
was published
May 24, 2022
GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of...
Moderate
Unreviewed
CVE-2019-15593
was published
May 24, 2022
An issue was discovered in Bitdefender BOX firmware versions before 2.1.37.37-34 that affects the...
Moderate
Unreviewed
CVE-2019-12611
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API