GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
116
GitHub Actions
55
Go
4,788
Maven
5,000+
npm
5,000+
NuGet
1,124
pip
5,000+
Pub
13
RubyGems
1,152
Rust
1,576
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
20
4,171 advisories
Filter by severity
A flaw was found in Ansible Tower when running Openshift. Tower runs a memcached, which is...
Moderate
Unreviewed
CVE-2020-10697
was published
May 24, 2022
A vulnerability was found in Linux kernel where non-blocking socket in llcp_sock_connect() leads...
Moderate
Unreviewed
CVE-2020-25673
was published
May 24, 2022
It has been discovered that redhat-certification does not properly limit the number of recursive...
High
Unreviewed
CVE-2018-10868
was published
May 24, 2022
A flaw was found in libwebp in versions before 1.0.1. When reading a file libwebp allocates an...
High
Unreviewed
CVE-2020-36332
was published
May 24, 2022
ProtonMail Web Client is the official AngularJS web client for the ProtonMail secure email...
High
Unreviewed
CVE-2021-32816
was published
May 24, 2022
Prosody before 0.11.9 allows Uncontrolled CPU Consumption via a flood of SSL/TLS renegotiation...
High
Unreviewed
CVE-2021-32920
was published
May 24, 2022
An issue was discovered in Prosody before 0.11.9. Default settings are susceptible to remote...
High
Unreviewed
CVE-2021-32918
was published
May 24, 2022
Kibana versions before 7.12.1 contain a denial of service vulnerability was found in the webhook...
Moderate
Unreviewed
CVE-2021-22139
was published
May 24, 2022
A vulnerability has been identified in SIMATIC NET CP 343-1 Advanced (incl. SIPLUS variants) (All...
High
Unreviewed
CVE-2020-25242
was published
May 24, 2022
A vulnerability has been identified in SIMATIC HMI Comfort Outdoor Panels 7\" & 15\" (incl....
High
Unreviewed
CVE-2021-27385
was published
May 24, 2022
In JetBrains IntelliJ IDEA before 2021.1, DoS was possible because of unbounded resource allocation.
High
Unreviewed
CVE-2021-30504
was published
May 24, 2022
The Integration Builder Framework of SAP Process Integration versions - 7.10, 7.11, 7.20, 7.30, 7...
Moderate
Unreviewed
CVE-2021-27617
was published
May 24, 2022
On versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.3, 14.1.x before 14.1.4, 13.1.x before 13...
High
Unreviewed
CVE-2021-23011
was published
May 24, 2022
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote...
High
Unreviewed
CVE-2021-1275
was published
May 24, 2022
Stormshield SNS with versions before 3.7.18, 3.11.6 and 4.1.6 has a memory-management defect in...
High
Unreviewed
CVE-2021-28665
was published
May 24, 2022
OX Guard 2.10.4 and earlier allows a Denial of Service via a WKS server that responds slowly or...
High
Unreviewed
CVE-2020-28944
was published
May 24, 2022
A vulnerability in filesystem usage management for Cisco Firepower Device Manager (FDM) Software...
Moderate
Unreviewed
CVE-2021-1489
was published
May 24, 2022
When a MX Series is configured as a Broadband Network Gateway (BNG) based on Layer 2 Tunneling...
Moderate
Unreviewed
CVE-2021-0238
was published
May 24, 2022
On Juniper Networks Junos OS platforms with link aggregation (lag) configured, executing any...
High
Unreviewed
CVE-2021-0230
was published
May 24, 2022
A vulnerability in Juniper Networks Junos OS ACX500 Series, ACX4000 Series, may allow an attacker...
High
Unreviewed
CVE-2021-0233
was published
May 24, 2022
A vulnerability in Juniper Networks Junos OS running on the ACX5448 and ACX710 platforms may...
Moderate
Unreviewed
CVE-2021-0216
was published
May 24, 2022
An uncontrolled resource consumption vulnerability in Message Queue Telemetry Transport (MQTT)...
Moderate
Unreviewed
CVE-2021-0229
was published
May 24, 2022
IBM i 7.1, 7.2, 7.3, and 7.4 SMTP allows a network attacker to send emails to non-existent local...
High
Unreviewed
CVE-2021-20501
was published
May 24, 2022
OMICRON StationGuard before 1.10 allows remote attackers to cause a denial of service ...
High
Unreviewed
CVE-2021-30464
was published
May 24, 2022
There's a flaw in the BFD library of binutils in versions before 2.36. An attacker who supplies a...
High
Unreviewed
CVE-2021-3487
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API