GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,091 advisories
Filter by severity
An issue was discovered in ezXML 0.8.3 through 0.8.6. The ezxml_parse_* functions mishandle XML...
Moderate
Unreviewed
CVE-2019-20201
was published
May 24, 2022
kernel/sched/fair.c in the Linux kernel before 5.3.9, when cpu.cfs_quota_us is used (e.g., with...
Low
Unreviewed
CVE-2019-19922
was published
May 24, 2022
A denial of service exists in gitlab <v12.3.2, <v12.2.6, and <v12.1.10 that would let an attacker...
Moderate
Unreviewed
CVE-2019-15584
was published
May 24, 2022
In Apache SpamAssassin before 3.4.3, a message can be crafted in a way to use excessive resources...
High
Unreviewed
CVE-2019-12420
was published
May 24, 2022
A heap overflow flaw was found in the Linux kernel, all versions 3.x.x and 4.x.x before 4.18.0,...
High
Unreviewed
CVE-2019-14901
was published
May 24, 2022
With pipelining enabled each incoming query on a TCP connection requires a similar resource...
High
Unreviewed
CVE-2019-6477
was published
May 24, 2022
GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of...
Moderate
Unreviewed
CVE-2019-15593
was published
May 24, 2022
peercoin through 0.6.4 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of...
High
Unreviewed
CVE-2018-19166
was published
May 24, 2022
CloakCoin through 2.2.2.0 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of...
High
Unreviewed
CVE-2018-19167
was published
May 24, 2022
ClamAV versions prior to 0.101.3 are susceptible to a zip bomb vulnerability where an...
High
Unreviewed
CVE-2019-12625
was published
May 24, 2022
reddcoin through 2.1.0.5 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of...
High
Unreviewed
CVE-2018-19164
was published
May 24, 2022
stratisX through 2.0.0.5 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of...
High
Unreviewed
CVE-2018-19163
was published
May 24, 2022
Divi through 4.0.5 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of...
High
Unreviewed
CVE-2018-19162
was published
May 24, 2022
neblio through 1.5.1 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of...
High
Unreviewed
CVE-2018-19165
was published
May 24, 2022
particl through 0.17 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of...
High
Unreviewed
CVE-2018-19153
was published
May 24, 2022
lux through 5.2.2 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of service...
High
Unreviewed
CVE-2018-19159
was published
May 24, 2022
emercoin through 0.7 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of...
High
Unreviewed
CVE-2018-19152
was published
May 24, 2022
PIVX through 3.1.03 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of...
High
Unreviewed
CVE-2018-19156
was published
May 24, 2022
HTMLCOIN through 2.12 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of...
High
Unreviewed
CVE-2018-19154
was published
May 24, 2022
navcoin through 4.3.0 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of...
High
Unreviewed
CVE-2018-19155
was published
May 24, 2022
alqo through 4.1 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of service,...
High
Unreviewed
CVE-2018-19161
was published
May 24, 2022
Phore through 1.3.3.1 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of...
High
Unreviewed
CVE-2018-19157
was published
May 24, 2022
Diamond through 3.0.1.2 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of...
High
Unreviewed
CVE-2018-19160
was published
May 24, 2022
An exploitable denial-of-service vulnerability exists in the Weave daemon of the Nest Cam IQ...
High
Unreviewed
CVE-2019-5043
was published
May 24, 2022
Logstash versions before 7.4.1 and 6.8.4 contain a denial of service flaw in the Logstash Beats...
High
Unreviewed
CVE-2019-7620
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API