GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
5,055 advisories
Filter by severity
Nanopool Claymore Dual Miner version 7.3 and earlier contains a remote code execution...
High
Unreviewed
CVE-2018-1000049
was published
May 13, 2022
Mercurial Improper Input Validation vulnerability
High
CVE-2018-13348
was published
for
mercurial
(pip)
May 13, 2022
Mercurial Improper Input Validation vulnerability
High
CVE-2018-13346
was published
for
mercurial
(pip)
May 13, 2022
WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products,...
High
Unreviewed
CVE-2010-4198
was published
May 13, 2022
Google Chrome before 7.0.517.44 does not properly perform a cast of an unspecified variable...
High
Unreviewed
CVE-2010-4199
was published
May 13, 2022
Google Chrome before 7.0.517.41 does not properly handle animated GIF images, which allows remote...
High
Unreviewed
CVE-2010-4040
was published
May 13, 2022
The is_ashmem_file function in drivers/staging/android/ashmem.c in a certain Qualcomm Innovation...
High
Unreviewed
CVE-2016-5340
was published
May 13, 2022
The KVM subsystem in the Linux kernel before 3.0 does not check whether kernel addresses are...
High
Unreviewed
CVE-2013-1943
was published
May 13, 2022
The cat6000-dot1x component in Cisco IOS 12.2 before 12.2(33)SXI7 does not properly handle an...
High
Unreviewed
CVE-2011-2058
was published
May 13, 2022
The cat6000-dot1x component in Cisco IOS 12.2 before 12.2(33)SXI7 does not properly handle (1) a...
High
Unreviewed
CVE-2011-2057
was published
May 13, 2022
An incorrect "pair?" check in the Scheme "length" procedure results in an unsafe pointer...
High
Unreviewed
CVE-2017-9334
was published
May 13, 2022
browser/renderer_host/database_dispatcher_host.cc in Google Chrome before 5.0.375.70 on Linux...
High
Unreviewed
CVE-2010-2298
was published
May 13, 2022
The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 18.0, Firefox ESR 17.x...
High
Unreviewed
CVE-2013-0757
was published
May 13, 2022
The host_from_stream_offset function in arch_init.c in QEMU, when loading RAM during migration,...
High
Unreviewed
CVE-2014-7840
was published
May 13, 2022
Qemu, as used in Xen 4.0, 4.1 and possibly other products, when emulating certain devices with a...
High
Unreviewed
CVE-2012-3515
was published
May 13, 2022
hostapd 0.6.7 through 2.5 and wpa_supplicant 0.6.7 through 2.5 do not reject \n and \r characters...
High
Unreviewed
CVE-2016-4476
was published
May 13, 2022
drivers/gpu/drm/i915/i915_gem.c in the Graphics Execution Manager (GEM) in the Intel i915 driver...
High
Unreviewed
CVE-2010-2962
was published
May 13, 2022
The sctp_packet_config function in net/sctp/output.c in the Linux kernel before 2.6.35.6 performs...
High
Unreviewed
CVE-2010-3432
was published
May 13, 2022
The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol...
High
Unreviewed
CVE-2010-3904
was published
May 13, 2022
The mdp_lut_hw_update function in drivers/video/msm/mdp.c in the MDP display driver for the Linux...
High
Unreviewed
CVE-2014-4323
was published
May 13, 2022
An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10...
High
Unreviewed
CVE-2016-4669
was published
May 13, 2022
named in ISC BIND 9.x before 9.9.9-P5, 9.10.x before 9.10.4-P5, and 9.11.x before 9.11.0-P2...
High
Unreviewed
CVE-2016-9131
was published
May 13, 2022
net/netfilter/nf_conntrack_proto_dccp.c in the Linux kernel through 3.13.6 uses a DCCP header...
High
Unreviewed
CVE-2014-2523
was published
May 13, 2022
Cisco NX-OS 4.0 through 7.3 and 11.0 through 11.2 on 1000v, 2000, 3000, 3500, 5000, 5500, 5600,...
High
Unreviewed
CVE-2016-1454
was published
May 13, 2022
A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol...
High
Unreviewed
CVE-2018-0443
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API