GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
64 advisories
Filter by severity
In the Linux kernel through 5.16.10, certain binary files may have the exec-all attribute if they...
High
Unreviewed
CVE-2022-25265
was published
Feb 17, 2022
Improper Control of Dynamically-Managed Code Resources in Crafter CMS Crafter Studio
High
CVE-2020-25802
was published
for
org.craftercms:crafter-studio
(Maven)
Feb 9, 2022
Improper Control of Dynamically-Managed Code Resources in Crafter CMS Crafter Studio
High
CVE-2020-25803
was published
for
org.craftercms:crafter-studio
(Maven)
Feb 9, 2022
Improper Access Control of Dynamically-Managed Code Resources (DLL) in Thales Sentinel Protection...
High
Unreviewed
CVE-2021-42809
was published
Dec 21, 2021
Serialization gadgets exploit in jackson-databind
High
CVE-2020-35491
was published
for
com.fasterxml.jackson.core:jackson-databind
(Maven)
Dec 9, 2021
Authenticated users with Administrator or Developer roles may execute OS commands by SPEL...
High
Unreviewed
CVE-2021-23258
was published
Dec 3, 2021
Authenticated administrators may modify the main YAML configuration file and load a Java class...
High
Unreviewed
CVE-2021-23262
was published
Dec 3, 2021
Authenticated users with Administrator or Developer roles may execute OS commands by Groovy...
High
Unreviewed
CVE-2021-23259
was published
Dec 3, 2021
Prototype Pollution in config-handler
Critical
CVE-2021-23448
was published
for
config-handler
(npm)
Oct 12, 2021
Header dropping in traefik
Moderate
CVE-2021-32813
was published
for
github.com/traefik/traefik
(Go)
Aug 5, 2021
Use of Potentially Dangerous Function in mixme
High
CVE-2021-29491
was published
for
mixme
(npm)
May 6, 2021
Improper Control of Dynamically-Managed Code Resources in config-shield
Moderate
CVE-2021-26276
was published
for
config-shield
(npm)
Apr 13, 2021
Misuse of `Reference` and other transferable APIs may lead to access to nodejs isolate
High
CVE-2021-21413
was published
for
isolated-vm
(npm)
Apr 6, 2021
ProTip!
Advisories are also available from the
GraphQL API