GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,671 advisories
Filter by severity
A flaw was found in jasper before 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c...
Moderate
Unreviewed
CVE-2021-26927
was published
May 24, 2022
An issue was discovered in libxls before and including 1.6.1 when reading Microsoft Excel files....
Moderate
Unreviewed
CVE-2020-27819
was published
May 24, 2022
An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple...
Moderate
Unreviewed
CVE-2020-11286
was published
May 24, 2022
Untrusted pointer dereference in some Intel(R) Graphics Drivers before versions 15.33.51.5146, 15...
Moderate
Unreviewed
CVE-2020-12365
was published
May 24, 2022
Untrusted pointer dereference in some Intel(R) Graphics Drivers before version 26.20.100.8141 may...
Moderate
Unreviewed
CVE-2020-12370
was published
May 24, 2022
Null pointer reference in some Intel(R) Graphics Drivers for Windows* before version 26.20.100...
Moderate
Unreviewed
CVE-2020-12364
was published
May 24, 2022
In Dekart Private Disk 2.15, invalid use of the Type3 user buffer for IOCTL codes using...
Moderate
Unreviewed
CVE-2021-27203
was published
May 24, 2022
Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier)...
Moderate
Unreviewed
CVE-2021-21057
was published
May 24, 2022
A Null Pointer Dereference vulnerability in McAfee Endpoint Security (ENS) for Windows prior to...
Moderate
Unreviewed
CVE-2021-23883
was published
May 24, 2022
Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1...
Moderate
Unreviewed
CVE-2020-36148
was published
May 24, 2022
Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1...
Moderate
Unreviewed
CVE-2020-36149
was published
May 24, 2022
In Epson iProjection v2.30, the driver file EMP_MPAU.sys allows local users to cause a denial of...
Moderate
Unreviewed
CVE-2020-9453
was published
May 24, 2022
NVIDIA SHIELD TV, all versions prior to 8.2.2, contains a vulnerability in the NVHost function,...
Moderate
Unreviewed
CVE-2021-1069
was published
May 24, 2022
Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to a NULL Pointer...
Moderate
Unreviewed
CVE-2020-12514
was published
May 24, 2022
An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A NULL pointer...
Moderate
Unreviewed
CVE-2021-25176
was published
May 24, 2022
There's a flaw in bfd_pef_parse_function_stubs of bfd/pef.c in binutils which could allow an...
Moderate
Unreviewed
CVE-2020-35507
was published
May 24, 2022
There's a flaw in binutils /bfd/pef.c. An attacker who is able to submit a crafted input file to...
Moderate
Unreviewed
CVE-2020-35495
was published
May 24, 2022
There's a flaw in bfd_pef_scan_start_address() of bfd/pef.c in binutils which could allow an...
Moderate
Unreviewed
CVE-2020-35496
was published
May 24, 2022
futures_task::noop_waker_ref can segfault due to dereferencing a NULL pointer
Moderate
CVE-2020-35907
was published
for
futures-task
(Rust)
May 24, 2022
VMware ESXi (7.0 prior to ESXi70U1c-17325551), VMware Workstation (16.x prior to 16.0 and 15.x...
Moderate
Unreviewed
CVE-2020-3999
was published
May 24, 2022
An issue was discovered in Xen through 4.14.x. When a Xenstore watch fires, the xenstore client...
Moderate
Unreviewed
CVE-2020-29484
was published
May 24, 2022
An issue was discovered in Xen through 4.14.x. A bounds check common to most operation time...
Moderate
Unreviewed
CVE-2020-29571
was published
May 24, 2022
An issue was discovered in Foxit Reader and PhantomPDF 10.1.0.37527 and earlier. There is a null...
Moderate
Unreviewed
CVE-2020-28203
was published
May 24, 2022
A Null Pointer Dereference vulnerability exists in the Binary File Descriptor (BFD) library (aka...
Moderate
Unreviewed
CVE-2020-16593
was published
May 24, 2022
A Null Pointer Dereference vulnerability exists in the Binary File Descriptor (BFD) library (aka...
Moderate
Unreviewed
CVE-2020-16598
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API