GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,321 advisories
Filter by severity
Under certain conditions, when running the nsDocShell destructor, a race condition can cause a...
Moderate
Unreviewed
CVE-2020-6819
was published
May 24, 2022
re2c 1.3 has a heap-based buffer overflow in Scanner::fill in parse/scanner.cc via a long lexeme.
Moderate
Unreviewed
CVE-2020-11958
was published
May 24, 2022
An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal...
Moderate
Unreviewed
CVE-2020-1751
was published
May 24, 2022
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core)....
Moderate
Unreviewed
CVE-2020-2902
was published
May 24, 2022
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds write in...
Moderate
Unreviewed
CVE-2020-11764
was published
May 24, 2022
A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type...
Moderate
Unreviewed
CVE-2020-1020
was published
May 24, 2022
A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type...
Moderate
Unreviewed
CVE-2020-0938
was published
May 24, 2022
An issue was discovered in Squid through 4.7. When Squid is parsing ESI, it keeps the ESI...
Moderate
Unreviewed
CVE-2019-12521
was published
May 24, 2022
Heap buffer overflow in media in Google Chrome prior to 80.0.3987.162 allowed a remote attacker...
Moderate
Unreviewed
CVE-2020-6452
was published
May 24, 2022
Uninitialized use in WebRTC in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to...
Moderate
Unreviewed
CVE-2020-6444
was published
May 24, 2022
An issue was discovered in the Linux kernel through 5.6.2. mpol_parse_str in mm/mempolicy.c has a...
Moderate
Unreviewed
CVE-2020-11565
was published
May 24, 2022
In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4,...
Moderate
Unreviewed
CVE-2020-11100
was published
May 24, 2022
In PHP versions 7.3.x below 7.3.16 and 7.4.x below 7.4.34, while using mb_strtolower() function...
Moderate
Unreviewed
CVE-2020-7065
was published
May 24, 2022
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS...
Moderate
Unreviewed
CVE-2020-3900
was published
May 24, 2022
An exploitable memory corruption vulnerability exists in the Name Service Client functionality of...
Moderate
Unreviewed
CVE-2019-5105
was published
May 24, 2022
Adobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier...
Moderate
Unreviewed
CVE-2020-3790
was published
May 24, 2022
Adobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier...
Moderate
Unreviewed
CVE-2020-3780
was published
May 24, 2022
Adobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier...
Moderate
Unreviewed
CVE-2020-3770
was published
May 24, 2022
Adobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier...
Moderate
Unreviewed
CVE-2020-3779
was published
May 24, 2022
Adobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier...
Moderate
Unreviewed
CVE-2020-3773
was published
May 24, 2022
In the Linux kernel before 5.5.8, get_raw_socket in drivers/vhost/net.c lacks validation of an...
Moderate
Unreviewed
CVE-2020-10942
was published
May 24, 2022
Inappropriate implementation in V8 in Google Chrome prior to 80.0.3987.149 allowed a remote...
Moderate
Unreviewed
CVE-2020-6426
was published
May 24, 2022
Nagios NRPE 3.2.1 has a Heap-Based Buffer Overflow, as demonstrated by interpretation of a small...
Moderate
Unreviewed
CVE-2020-6582
was published
May 24, 2022
libubox in OpenWrt before 18.06.7 and 19.x before 19.07.1 has a tagged binary data JSON...
Moderate
Unreviewed
CVE-2020-7248
was published
May 24, 2022
An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An...
Moderate
Unreviewed
CVE-2020-10531
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API