GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,645 advisories
Filter by severity
The Rest API component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports...
Moderate
Unreviewed
CVE-2021-35494
was published
May 24, 2022
In lockNow of PhoneWindowManager.java, there is a possible lock screen bypass due to a race...
High
Unreviewed
CVE-2021-0688
was published
May 24, 2022
Another race in XENMAPSPACE_grant_table handling Guests are permitted access to certain Xen-owned...
High
Unreviewed
CVE-2021-28701
was published
May 24, 2022
A race condition was addressed with improved state handling. This issue is fixed in iOS 14.7,...
High
Unreviewed
CVE-2021-30786
was published
May 24, 2022
A race condition was addressed with improved locking. This issue is fixed in Security Update 2021...
Moderate
Unreviewed
CVE-2021-1884
was published
May 24, 2022
A race condition was addressed with additional validation. This issue is fixed in Security Update...
High
Unreviewed
CVE-2021-30652
was published
May 24, 2022
A race condition was addressed with improved state handling. This issue is fixed in iOS 14.6 and...
Moderate
Unreviewed
CVE-2021-30714
was published
May 24, 2022
A race condition was discovered in ext4_write_inline_data_end in fs/ext4/inline.c in the ext4...
High
Unreviewed
CVE-2021-40490
was published
May 24, 2022
The user identification mechanism used by CyberArk Credential Provider prior to 12.1 is...
Moderate
Unreviewed
CVE-2021-31797
was published
May 24, 2022
grant table v2 status pages may remain accessible after de-allocation Guest get permitted access...
High
Unreviewed
CVE-2021-28697
was published
May 24, 2022
Data race in WebAudio in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to...
High
Unreviewed
CVE-2021-30603
was published
May 24, 2022
A suspected race condition when calling getaddrinfo led to memory corruption and a potentially...
High
Unreviewed
CVE-2021-29986
was published
May 24, 2022
A use-after-free in function hci_sock_bound_ioctl() of the Linux kernel HCI subsystem was found...
Moderate
Unreviewed
CVE-2021-3573
was published
May 24, 2022
Go before 1.15.15 and 1.16.x before 1.16.7 has a race condition that can lead to a net/http...
Moderate
Unreviewed
CVE-2021-36221
was published
May 24, 2022
There is an Information Disclosure Vulnerability in Huawei Smartphone.Successful exploitation of...
High
Unreviewed
CVE-2021-22384
was published
May 24, 2022
There is a Heap-based Buffer Overflow Vulnerability in Huawei Smartphone.Successful exploitation...
High
Unreviewed
CVE-2021-22427
was published
May 24, 2022
There is an Incomplete Cleanup Vulnerability in Huawei Smartphone.Successful exploitation of this...
High
Unreviewed
CVE-2021-22428
was published
May 24, 2022
Windows AppX Deployment Extensions Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2021-34462
was published
May 24, 2022
In several functions of the V8 library, there is a possible use after free due to a race...
High
Unreviewed
CVE-2021-0514
was published
May 24, 2022
A concurrent execution using shared resource with improper synchronization ('race condition') in...
Moderate
Unreviewed
CVE-2020-29014
was published
May 24, 2022
There is a multiple threads race condition vulnerability in Huawei product. A race condition...
Moderate
Unreviewed
CVE-2021-22340
was published
May 24, 2022
In Phoenix Contact FL SWITCH SMCS series products in multiple versions if an attacker sends a...
High
Unreviewed
CVE-2021-21005
was published
May 24, 2022
Signatures are written to disk before and read during verification, which might be subject to a...
Low
Unreviewed
CVE-2021-29948
was published
May 24, 2022
When Web Render components were destructed, a race condition could have caused undefined behavior...
High
Unreviewed
CVE-2021-29952
was published
May 24, 2022
In decrypt of CryptoPlugin.cpp, there is a possible use-after-free due to a race condition. This...
Moderate
Unreviewed
CVE-2021-0564
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API