GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,367 advisories
Filter by severity
A malicious container image can consume an unbounded amount of memory when being pulled to a...
Moderate
Unreviewed
CVE-2020-1702
was published
May 24, 2022
A flaw was found in Ansible Tower when running Openshift. Tower runs a memcached, which is...
Moderate
Unreviewed
CVE-2020-10697
was published
May 24, 2022
A vulnerability was found in Linux kernel where non-blocking socket in llcp_sock_connect() leads...
Moderate
Unreviewed
CVE-2020-25673
was published
May 24, 2022
Kibana versions before 7.12.1 contain a denial of service vulnerability was found in the webhook...
Moderate
Unreviewed
CVE-2021-22139
was published
May 24, 2022
The Integration Builder Framework of SAP Process Integration versions - 7.10, 7.11, 7.20, 7.30, 7...
Moderate
Unreviewed
CVE-2021-27617
was published
May 24, 2022
A vulnerability in filesystem usage management for Cisco Firepower Device Manager (FDM) Software...
Moderate
Unreviewed
CVE-2021-1489
was published
May 24, 2022
When a MX Series is configured as a Broadband Network Gateway (BNG) based on Layer 2 Tunneling...
Moderate
Unreviewed
CVE-2021-0238
was published
May 24, 2022
A vulnerability in Juniper Networks Junos OS running on the ACX5448 and ACX710 platforms may...
Moderate
Unreviewed
CVE-2021-0216
was published
May 24, 2022
An uncontrolled resource consumption vulnerability in Message Queue Telemetry Transport (MQTT)...
Moderate
Unreviewed
CVE-2021-0229
was published
May 24, 2022
A ZTE product has a configuration error vulnerability. Because a certain port is open by default,...
Moderate
Unreviewed
CVE-2021-21728
was published
May 24, 2022
Dell System Update (DSU) 1.9 and earlier versions contain a denial of service vulnerability. A...
Moderate
Unreviewed
CVE-2021-21529
was published
May 24, 2022
Potential DoS was identified in gitlab-shell in GitLab CE/EE version 12.6.0 or above, which...
Moderate
Unreviewed
CVE-2021-22177
was published
May 24, 2022
An uncontrolled resource consumption (memory leak) flaw was found in the ZeroMQ client in...
Moderate
Unreviewed
CVE-2021-20234
was published
May 24, 2022
There's a flaw in OpenEXR's Scanline API functionality in versions before 3.0.0-beta. An attacker...
Moderate
Unreviewed
CVE-2021-3479
was published
May 24, 2022
There's a flaw in OpenEXR's scanline input file functionality in versions before 3.0.0-beta. An...
Moderate
Unreviewed
CVE-2021-3478
was published
May 24, 2022
In intel_pmu_drain_pebs_nhm in arch/x86/events/intel/ds.c in the Linux kernel through 5.11.8 on...
Moderate
Unreviewed
CVE-2021-28971
was published
May 24, 2022
IBM Spectrum Scale 5.0.0 through 5.0.5.5 and 5.1.0 through 5.1.0.2 could allow a local user with...
Moderate
Unreviewed
CVE-2020-4890
was published
May 24, 2022
A flaw was found in the way memory resources were freed in the unix_stream_recvmsg function in...
Moderate
Unreviewed
CVE-2021-20265
was published
May 24, 2022
The TFTP server fails to handle multiple connections on NETGEAR JGS516PE/GS116Ev2 v2.6.0.43...
Moderate
Unreviewed
CVE-2020-35233
was published
May 24, 2022
An issue was discovered in the Linux kernel 5.9.x through 5.11.3, as used with Xen. In some less...
Moderate
Unreviewed
CVE-2021-28039
was published
May 24, 2022
Trend Micro's Virus Scan API (VSAPI) and Advanced Threat Scan Engine (ATSE) - are vulnerable to a...
Moderate
Unreviewed
CVE-2021-25252
was published
May 24, 2022
An issue has been discovered in GitLab affecting all versions of Gitlab EE/CE before 12.6.7. A...
Moderate
Unreviewed
CVE-2021-22187
was published
May 24, 2022
Uncontrolled resource consumption in some Intel(R) Ethernet E810 Adapter drivers for Linux before...
Moderate
Unreviewed
CVE-2020-24504
was published
May 24, 2022
An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. There is...
Moderate
Unreviewed
CVE-2020-35559
was published
May 24, 2022
IBM Spectrum Protect Operations Center 7.1 and 8.1 is vulnerable to a denial of service, caused...
Moderate
Unreviewed
CVE-2020-4956
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API