GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,639 advisories
Filter by severity
An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11...
High
Unreviewed
CVE-2018-4192
was published
May 14, 2022
Race condition in the setreuid system-call implementation in the kernel in Apple iOS before 8.3,...
Moderate
Unreviewed
CVE-2015-1099
was published
May 14, 2022
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10...
High
Unreviewed
CVE-2017-2478
was published
May 14, 2022
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10...
High
Unreviewed
CVE-2017-2456
was published
May 14, 2022
An issue was discovered in certain Apple products. iOS before 11 is affected. tvOS before 11 is...
High
Unreviewed
CVE-2017-7115
was published
May 14, 2022
Johnathan Nightingale beep through 1.3.4, if setuid, has a race condition that allows local...
High
Unreviewed
CVE-2018-0492
was published
May 14, 2022
An issue was discovered in CapMon Access Manager 5.4.1.1005. CALRunElevated.exe attempts to...
High
Unreviewed
CVE-2018-18253
was published
May 14, 2022
WebKit in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before 9.2.2 allows remote...
Low
Unreviewed
CVE-2016-4583
was published
May 14, 2022
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10...
High
Unreviewed
CVE-2017-2501
was published
May 14, 2022
Race condition in the Disk Images subsystem in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS...
Moderate
Unreviewed
CVE-2016-1807
was published
May 14, 2022
The add_free_nid function in fs/f2fs/node.c in the Linux kernel before 4.12 does not properly...
High
Unreviewed
CVE-2017-18249
was published
May 14, 2022
A race condition was addressed with additional validation. This issue affected versions prior...
Moderate
Unreviewed
CVE-2018-4266
was published
May 14, 2022
A race condition was addressed with additional validation. This issue affected versions prior to...
High
Unreviewed
CVE-2017-7151
was published
May 14, 2022
Race condition in net/sctp/socket.c in the Linux kernel before 4.1.2 allows local users to cause...
Moderate
Unreviewed
CVE-2015-3212
was published
May 14, 2022
In the Linux kernel before 4.9.3, fs/xfs/xfs_aops.c allows local users to cause a denial of...
Moderate
Unreviewed
CVE-2016-10741
was published
May 14, 2022
/usr/libexec/openldap/generate-server-cert.sh in openldap-servers sets weak permissions for the...
Moderate
Unreviewed
CVE-2016-4984
was published
May 14, 2022
Race condition in Luci 0.26.0 creates /var/lib/luci/etc/luci.ini with world-readable permissions...
Low
Unreviewed
CVE-2013-4481
was published
May 14, 2022
A certain Red Hat patch to the KVM subsystem in the kernel package before 2.6.32-358.11.1.el6 on...
Moderate
Unreviewed
CVE-2013-1935
was published
May 14, 2022
Race condition in the grant table code in Xen 4.6.x through 4.9.x allows local guest OS...
High
Unreviewed
CVE-2017-12136
was published
May 14, 2022
In the Linux kernel through 4.19, a use-after-free can occur due to a race condition between...
High
Unreviewed
CVE-2018-18559
was published
May 14, 2022
389-ds-base before versions 1.4.0.10, 1.3.8.3 is vulnerable to a race condition in the way 389-ds...
High
Unreviewed
CVE-2018-10850
was published
May 14, 2022
Race condition in the Pragmatic General Multicast (PGM) protocol implementation in Microsoft...
High
Unreviewed
CVE-2015-6126
was published
May 14, 2022
In the Linux Kernel before version 4.16.11, 4.14.43, 4.9.102, and 4.4.133, multiple race...
High
Unreviewed
CVE-2018-5814
was published
May 14, 2022
The Linux kernel before 4.8 allows local users to bypass ASLR on setuid programs (such as /bin/su...
Moderate
Unreviewed
CVE-2019-11190
was published
May 14, 2022
ssl/s3_clnt.c in OpenSSL 1.0.0 before 1.0.0t, 1.0.1 before 1.0.1p, and 1.0.2 before 1.0.2d, when...
Moderate
Unreviewed
CVE-2015-3196
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API