GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,253 advisories
Filter by severity
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2021-31454
was published
May 24, 2022
This vulnerability allows local attackers to escalate privileges on affected installations of...
High
Unreviewed
CVE-2021-31424
was published
May 24, 2022
This vulnerability allows local attackers to escalate privileges on affected installations of...
High
Unreviewed
CVE-2021-31428
was published
May 24, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2021-31436
was published
May 24, 2022
This vulnerability allows local attackers to escalate privileges on affected installations of...
High
Unreviewed
CVE-2021-31429
was published
May 24, 2022
A vulnerability has been identified in SCALANCE X200-4P IRT (All versions < 5.5.1), SCALANCE X201...
Critical
Unreviewed
CVE-2021-25668
was published
May 24, 2022
A heap based buffer overflow in coders/tiff.c may result in program crash and denial of service...
Moderate
Unreviewed
CVE-2020-27829
was published
May 24, 2022
Adobe Animate version 21.0.3 (and earlier) is affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2021-21077
was published
May 24, 2022
xbuf_format_converter, used as part of exif_read_data, was appending a terminating null character...
Critical
Unreviewed
CVE-2020-1917
was published
May 24, 2022
Heap-based buffer overflow vulnerability in Mitsubishi Electric FA Engineering Software (C...
Critical
Unreviewed
CVE-2021-20587
was published
May 24, 2022
Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier)...
High
Unreviewed
CVE-2021-21017
was published
May 24, 2022
A heap-buffer overflow was found in the way openjpeg2 handled certain PNG format files. An...
High
Unreviewed
CVE-2020-27814
was published
May 24, 2022
A flaw was found in dnsmasq before 2.83. A buffer overflow vulnerability was discovered in the...
High
Unreviewed
CVE-2020-25682
was published
May 24, 2022
A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in...
High
Unreviewed
CVE-2020-25683
was published
May 24, 2022
A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in...
High
Unreviewed
CVE-2020-25687
was published
May 24, 2022
A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in...
High
Unreviewed
CVE-2020-25681
was published
May 24, 2022
Adobe Photoshop version 22.1 (and earlier) is affected by a heap buffer overflow vulnerability...
High
Unreviewed
CVE-2021-21006
was published
May 24, 2022
A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) ...
Critical
Unreviewed
CVE-2020-25226
was published
May 24, 2022
A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) ...
Critical
Unreviewed
CVE-2020-15800
was published
May 24, 2022
There's a flaw in src/lib/openjp2/pi.c of openjpeg in versions prior to 2.4.0. If an attacker is...
Moderate
Unreviewed
CVE-2020-27845
was published
May 24, 2022
There's a flaw in openjpeg in versions prior to 2.4.0 in src/lib/openjp2/pi.c. When an attacker...
Moderate
Unreviewed
CVE-2020-27841
was published
May 24, 2022
A flaw was found in xorg-x11-server before 1.20.10. A heap-buffer overflow in XkbSetDeviceInfo...
High
Unreviewed
CVE-2020-25712
was published
May 24, 2022
Medtronic MyCareLink Smart 25000 all versions are vulnerable when an attacker who gains auth runs...
Critical
Unreviewed
CVE-2020-25187
was published
May 24, 2022
A heap overflow vulnerability exists within FactoryTalk Linx Version 6.11 and prior. This...
Critical
Unreviewed
CVE-2020-27251
was published
May 24, 2022
A heap overflow vulnerability exists within FactoryTalk Linx Version 6.11 and prior. This...
High
Unreviewed
CVE-2020-27255
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API