GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,639 advisories
Filter by severity
In HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) 5.0.1, a local attacker or...
High
Unreviewed
CVE-2017-16001
was published
May 13, 2022
In HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) 5.0.0, a local attacker or...
High
Unreviewed
CVE-2017-15884
was published
May 13, 2022
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from...
High
Unreviewed
CVE-2017-14880
was published
May 13, 2022
A race condition in the postgresql init script could be used by attackers able to access the...
High
Unreviewed
CVE-2017-14798
was published
May 13, 2022
flower.initd in the Gentoo dev-python/flower package before 0.9.1-r1 for Celery Flower sets PID...
Moderate
Unreviewed
CVE-2017-14483
was published
May 13, 2022
The driver_override implementation in drivers/base/platform.c in the Linux kernel before 4.12.1...
High
Unreviewed
CVE-2017-12146
was published
May 13, 2022
The Microsoft Device Guard on Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server...
High
Unreviewed
CVE-2017-11823
was published
May 13, 2022
Todd Miller's sudo version 1.8.20 and earlier is vulnerable to an input validation (embedded...
Moderate
Unreviewed
CVE-2017-1000367
was published
May 13, 2022
A elevation of privilege vulnerability in the Upstream kernel scsi driver. Product: Android....
High
Unreviewed
CVE-2017-0794
was published
May 13, 2022
A elevation of privilege vulnerability in the Android media framework (libgui). Product: Android....
High
Unreviewed
CVE-2017-0727
was published
May 13, 2022
An elevation of privilege vulnerability in the Qualcomm Seemp driver could enable a local...
High
Unreviewed
CVE-2017-0462
was published
May 13, 2022
A race condition was found in util-linux before 2.32.1 in the way su handled the management of...
Moderate
Unreviewed
CVE-2017-2616
was published
May 13, 2022
Samba before versions 4.6.1, 4.5.7 and 4.4.11 are vulnerable to a malicious client using a...
High
Unreviewed
CVE-2017-2619
was published
May 13, 2022
A vulnerability in the errdisable per VLAN feature of Cisco IOS XE Software could allow an...
Moderate
Unreviewed
CVE-2018-0480
was published
May 13, 2022
The domain management component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO...
High
Unreviewed
CVE-2018-18808
was published
May 13, 2022
In Veraport G3 ALL on MacOS, a race condition when calling the Veraport API allow remote attacker...
High
Unreviewed
CVE-2018-5198
was published
May 13, 2022
Multiple race conditions in smtpd.py in the smtpd module in Python 2.6, 2.7, 3.1, and 3.2 alpha...
Moderate
Unreviewed
CVE-2010-3493
was published
May 13, 2022
In some Lenovo IdeaPad consumer notebook models, a race condition in the BIOS flash device...
High
Unreviewed
CVE-2018-9069
was published
May 13, 2022
Race condition in the Inter-process Communication (IPC) implementation in Google Chrome before 18...
High
Unreviewed
CVE-2011-3080
was published
May 13, 2022
Race condition in the rmtree and remove_tree functions in the File-Path module before 2.13 for...
Moderate
Unreviewed
CVE-2017-6512
was published
May 13, 2022
The setpermissions function in the auto-updater in Arq before 5.9.7 for Mac allows local users to...
High
Unreviewed
CVE-2017-15357
was published
May 13, 2022
Race condition in Google Chrome before 15.0.874.102 allows remote attackers to cause a denial of...
Moderate
Unreviewed
CVE-2011-3878
was published
May 13, 2022
Race condition in Google Chrome before 17.0.963.46 allows remote attackers to execute arbitrary...
High
Unreviewed
CVE-2011-3961
was published
May 13, 2022
Race condition in Google Chrome before 14.0.835.163 allows attackers to cause a denial of service...
Moderate
Unreviewed
CVE-2011-2835
was published
May 13, 2022
v9fs_wstat in hw/9pfs/9p.c in QEMU allows guest OS users to cause a denial of service (crash)...
Moderate
Unreviewed
CVE-2018-19489
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API