GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
228 advisories
Filter by severity
An exploitable memory corruption vulnerability exists in the JavaScript engine of Foxit Software...
High
Unreviewed
CVE-2019-5031
was published
May 24, 2022
In a rare scenario, Check Point R80.30 Security Gateway before JHF Take 50 managed by Check Point...
High
Unreviewed
CVE-2019-8462
was published
May 24, 2022
An issue was discovered in 3S-Smart CODESYS before 3.5.15.0 . Crafted network packets cause the...
High
Unreviewed
CVE-2019-9009
was published
May 24, 2022
A CWE-248: Uncaught Exception vulnerability exists Modicon M580 (firmware version prior to V2.90)...
High
Unreviewed
CVE-2019-6828
was published
May 24, 2022
A CWE-248: Uncaught Exception vulnerability exists IN Modicon M580 all versions prior to V2.80,...
High
Unreviewed
CVE-2019-6830
was published
May 24, 2022
A CWE-248: Uncaught Exception vulnerability exists in Modicon M580 (firmware version prior to V2...
High
Unreviewed
CVE-2019-6829
was published
May 24, 2022
A CWE-248: Uncaught Exception vulnerability exists in Modicon M580 (firmware versions prior to V2...
High
Unreviewed
CVE-2019-6809
was published
May 24, 2022
A CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon...
High
Unreviewed
CVE-2019-6807
was published
May 24, 2022
A CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon...
High
Unreviewed
CVE-2018-7852
was published
May 24, 2022
A CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon...
High
Unreviewed
CVE-2018-7849
was published
May 24, 2022
A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco...
High
Unreviewed
CVE-2019-1858
was published
May 24, 2022
Legacy C++ Facebook Thrift servers (using cpp instead of cpp2) would not error upon receiving...
High
Unreviewed
CVE-2019-3565
was published
May 24, 2022
Python Facebook Thrift servers would not error upon receiving messages with containers of fields...
High
Unreviewed
CVE-2019-3558
was published
May 24, 2022
C++ Facebook Thrift servers (using cpp2) would not error upon receiving messages with containers...
High
Unreviewed
CVE-2019-3552
was published
May 24, 2022
Java Facebook Thrift servers would not error upon receiving messages with containers of fields of...
High
Unreviewed
CVE-2019-3559
was published
May 24, 2022
Improper Handling of Exceptional Conditions in Apache Tomcat
High
CVE-2017-5664
was published
for
org.apache.tomcat:tomcat
(Maven)
May 13, 2022
Huawei smart phones LYO-L21 with software LYO-L21C479B107, LYO-L21C479B107 have a privilege...
High
Unreviewed
CVE-2017-17172
was published
May 13, 2022
In Bitmap.ccp if Bitmap.nativeCreate fails an out of memory exception is not thrown leading to a...
High
Unreviewed
CVE-2017-13199
was published
May 13, 2022
The acpi_ns_terminate() function in drivers/acpi/acpica/nsutils.c in the Linux kernel before 4.12...
High
Unreviewed
CVE-2017-11472
was published
May 13, 2022
A remote code execution vulnerability in the Android media framework (libstagefright). Product:...
High
Unreviewed
CVE-2017-0759
was published
May 13, 2022
A remote code execution vulnerability in the Android media framework (libstagefright). Product:...
High
Unreviewed
CVE-2017-0760
was published
May 13, 2022
A remote code execution vulnerability in the Android media framework (libhevc). Product: Android....
High
Unreviewed
CVE-2017-0762
was published
May 13, 2022
An elevation of privilege vulnerability in the Goodix touchscreen driver could enable a local...
High
Unreviewed
CVE-2017-0622
was published
May 13, 2022
Windows Hyper-V in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1,...
High
Unreviewed
CVE-2017-0193
was published
May 13, 2022
A vulnerability in the ingress UDP packet processing functionality of Cisco Virtualized Packet...
High
Unreviewed
CVE-2017-6678
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API