GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,344
Erlang
31
GitHub Actions
22
Go
2,112
Maven
5,000+
npm
3,767
NuGet
680
pip
3,453
Pub
12
RubyGems
892
Rust
888
Swift
37
Unreviewed advisories
All unreviewed
5,000+
262 advisories
Filter by severity
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2019-13329
was published
May 24, 2022
Type Confusion in ServiceWorker API in Google Chrome prior to 109.0.5414.119 allowed a remote...
High
Unreviewed
CVE-2023-0473
was published
Jan 30, 2023
JIT optimizations involving the Javascript arguments object could confuse later optimizations....
High
Unreviewed
CVE-2020-15656
was published
May 24, 2022
A Red Hat only CVE-2020-12351 regression issue was found in the way the Linux kernel's Bluetooth...
High
Unreviewed
CVE-2020-25661
was published
May 24, 2022
A flaw in Thunderbird's implementation of iCal causes a type confusion in...
High
Unreviewed
CVE-2019-11706
was published
May 24, 2022
In pinReplyNative of com_android_bluetooth_btservice_AdapterService.cpp, there is a possible out...
High
Unreviewed
CVE-2022-20461
was published
Jan 26, 2023
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X...
High
Unreviewed
CVE-2016-1015
was published
May 14, 2022
In Gitlab EE/CE before 15.6.1, 15.5.5 and 15.4.6 using a branch with a hexadecimal name could...
High
Unreviewed
CVE-2022-4205
was published
Jan 28, 2023
A type confusion issue was addressed with improved checks. This issue is fixed in macOS Ventura...
High
Unreviewed
CVE-2022-32915
was published
Nov 2, 2022
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X...
High
Unreviewed
CVE-2016-4224
was published
May 14, 2022
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X...
High
Unreviewed
CVE-2016-4223
was published
May 14, 2022
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X...
High
Unreviewed
CVE-2016-4225
was published
May 14, 2022
MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit...
High
Unreviewed
CVE-2022-2971
was published
Sep 25, 2022
Type confusion in V8 in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to...
High
Unreviewed
CVE-2022-0102
was published
Feb 13, 2022
A vulnerability has been identified in Simcenter Femap V2020.2 (All versions), Simcenter Femap...
High
Unreviewed
CVE-2021-46152
was published
Feb 10, 2022
This vulnerability allows local attackers to escalate privileges on affected installations of...
High
Unreviewed
CVE-2021-34866
was published
Jan 26, 2022
The HwNearbyMain module has a Data Processing Errors vulnerability.Successful exploitation of...
High
Unreviewed
CVE-2021-39987
was published
Jan 4, 2022
Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to...
High
Unreviewed
CVE-2021-38007
was published
Dec 24, 2021
Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to...
High
Unreviewed
CVE-2021-38012
was published
Dec 24, 2021
Type confusion in V8 in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to...
High
Unreviewed
CVE-2022-2295
was published
Jul 29, 2022
Type confusion in V8 in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to...
High
Unreviewed
CVE-2022-3889
was published
Nov 9, 2022
Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and...
High
Unreviewed
CVE-2016-0985
was published
May 17, 2022
In all Qualcomm products with Android releases from CAF using the Linux kernel, while processing...
High
Unreviewed
CVE-2017-15860
was published
May 13, 2022
AP4_VisualSampleEntry::ReadFields in Core/Ap4SampleEntry.cpp in Bento4 1.5.0-617 uses incorrect...
High
Unreviewed
CVE-2017-14639
was published
May 13, 2022
An elevation of privilege vulnerability in the Upstream kernel bluez. Product: Android. Versions:...
High
Unreviewed
CVE-2017-13220
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API