GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,321 advisories
Filter by severity
An exploitable out-of-bounds write vulnerability exists in the uncompress_scan_line function of...
Moderate
Unreviewed
CVE-2020-6063
was published
May 24, 2022
An out-of-bounds heap buffer access flaw was found in the way the iSCSI Block driver in QEMU...
Moderate
Unreviewed
CVE-2020-1711
was published
May 24, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
Moderate
Unreviewed
CVE-2019-13333
was published
May 24, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
Moderate
Unreviewed
CVE-2019-13334
was published
May 24, 2022
A stack buffer overflow vulnerability exists in the way MiniSNMPD version 1.4 handles multiple...
Moderate
Unreviewed
CVE-2020-6060
was published
May 24, 2022
In OSSEC-HIDS 2.7 through 3.5.0, the server component responsible for log analysis (ossec...
Moderate
Unreviewed
CVE-2020-8442
was published
May 24, 2022
opj_t1_clbl_decode_processor in openjp2/t1.c in OpenJPEG 2.3.1 through 2020-01-28 has a heap...
Moderate
Unreviewed
CVE-2020-8112
was published
May 24, 2022
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core)....
Moderate
Unreviewed
CVE-2020-2701
was published
May 24, 2022
OpenJPEG through 2.3.1 has a heap-based buffer overflow in opj_t1_clbl_decode_processor in...
Moderate
Unreviewed
CVE-2020-6851
was published
May 24, 2022
Use after free in media picker in Google Chrome prior to 79.0.3945.88 allowed a remote attacker...
Moderate
Unreviewed
CVE-2019-13767
was published
May 24, 2022
An out-of-bounds memory write issue was found in the Linux Kernel, version 3.13 through 5.4, in...
Moderate
Unreviewed
CVE-2019-19332
was published
May 24, 2022
A code execution vulnerability exists in the directory rehashing functionality of E2fsprogs...
Moderate
Unreviewed
CVE-2019-5188
was published
May 24, 2022
Mozilla developers reported memory safety bugs present in Firefox 71 and Firefox ESR 68.3. Some...
Moderate
Unreviewed
CVE-2019-17024
was published
May 24, 2022
Mozilla developers reported memory safety bugs present in Firefox 70 and Firefox ESR 68.2. Some...
Moderate
Unreviewed
CVE-2019-17012
was published
May 24, 2022
The plain text serializer used a fixed-size array for the number of <ol> elements it could...
Moderate
Unreviewed
CVE-2019-17005
was published
May 24, 2022
A fixed-size stack buffer could overflow in nrappkit when doing WebRTC signaling. This resulted...
Moderate
Unreviewed
CVE-2019-11760
was published
May 24, 2022
Mozilla community member Philipp reported a memory safety bug present in Firefox 68 when 360...
Moderate
Unreviewed
CVE-2019-11758
was published
May 24, 2022
Mozilla developers and community members reported memory safety bugs present in Firefox 69 and...
Moderate
Unreviewed
CVE-2019-11764
was published
May 24, 2022
When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller...
Moderate
Unreviewed
CVE-2019-11745
was published
May 24, 2022
Out of bounds access in SwiftShader in Google Chrome prior to 73.0.3683.75 allowed a remote...
Moderate
Unreviewed
CVE-2019-5844
was published
May 24, 2022
Out of bounds access in SwiftShader in Google Chrome prior to 73.0.3683.75 allowed a remote...
Moderate
Unreviewed
CVE-2019-5846
was published
May 24, 2022
Out of bounds access in SwiftShader in Google Chrome prior to 73.0.3683.75 allowed a remote...
Moderate
Unreviewed
CVE-2019-5845
was published
May 24, 2022
FontForge 20190801 has a heap-based buffer overflow in the Type2NotDefSplines() function in...
Moderate
Unreviewed
CVE-2020-5496
was published
May 24, 2022
dimC_Read in isomedia/box_code_3gpp.c in GPAC 0.8.0 has a stack-based buffer overflow.
Moderate
Unreviewed
CVE-2019-20208
was published
May 24, 2022
An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is heap-based...
Moderate
Unreviewed
CVE-2019-20161
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API