GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,311 advisories
Filter by severity
A potential DOS vulnerability was discovered in GitLab CE/EE starting with version 13.7. The...
Moderate
Unreviewed
CVE-2021-39907
was published
May 24, 2022
A potential DoS vulnerability was discovered in GitLab CE/EE starting with version 13.7. Using a...
Moderate
Unreviewed
CVE-2021-39912
was published
May 24, 2022
A vulnerability in the email scanning algorithm of Cisco AsyncOS software for Cisco Email...
High
Unreviewed
CVE-2021-34741
was published
May 24, 2022
A memory allocation with excessive size value vulnerability in the license verification function...
High
Unreviewed
CVE-2021-36174
was published
May 24, 2022
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager kernel driver, where a...
Moderate
Unreviewed
CVE-2021-1121
was published
May 24, 2022
A component of the HarmonyOS has a Allocation of Resources Without Limits or Throttling...
Moderate
Unreviewed
CVE-2021-22461
was published
May 24, 2022
There is a Code injection vulnerability in Huawei Smartphone.Successful exploitation of this...
High
Unreviewed
CVE-2021-36985
was published
May 24, 2022
Multiple Cisco products are affected by a vulnerability in the way the Snort detection engine...
High
Unreviewed
CVE-2021-40114
was published
May 24, 2022
This vulnerability allows local attackers to escalate privileges on affected installations of...
High
Unreviewed
CVE-2021-34854
was published
May 24, 2022
The affected product does not properly control the allocation of resources. A user may be able to...
High
Unreviewed
CVE-2021-38463
was published
May 24, 2022
The webinstaller is a Golang web server executable that enables the generation of an Auvesy image...
Moderate
Unreviewed
CVE-2021-38465
was published
May 24, 2022
On MX Series platforms with MS-MPC/MS-MIC, an Allocation of Resources Without Limits or...
Moderate
Unreviewed
CVE-2021-31369
was published
May 24, 2022
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.14.1), RUGGEDCOM...
High
Unreviewed
CVE-2021-41546
was published
May 24, 2022
MediaWiki before 1.36.2 allows a denial of service (resource consumption because of lengthy query...
High
Unreviewed
CVE-2021-41799
was published
May 24, 2022
MediaWiki allows a denial of service
Moderate
CVE-2021-41800
was published
for
mediawiki/core
(Composer)
May 24, 2022
Multiple vulnerabilities in the Cisco ATA 190 Series Analog Telephone Adapter Software could...
High
Unreviewed
CVE-2021-34735
was published
May 24, 2022
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 under very...
Moderate
Unreviewed
CVE-2021-29763
was published
May 24, 2022
On version 15.1.x before 15.1.3, 14.1.x before 14.1.3.1, and 13.1.x before 13.1.3.6, when the...
Moderate
Unreviewed
CVE-2021-23053
was published
May 24, 2022
All versions of the afffected TOYOPUC-PC10 Series,TOYOPUC-Plus Series,TOYOPUC-PC3J/PC2J Series,...
Moderate
Unreviewed
CVE-2021-33011
was published
May 24, 2022
VMware Workspace ONE UEM REST API contains a denial of service vulnerability. A malicious actor...
High
Unreviewed
CVE-2021-22029
was published
May 24, 2022
xen/arm: No memory limit for dom0less domUs The dom0less feature allows an administrator to...
Moderate
Unreviewed
CVE-2021-28700
was published
May 24, 2022
The AP4_CttsAtom class in Core/Ap4CttsAtom.cpp in Bento4 1.5.1.0 allows remote attackers to cause...
High
Unreviewed
CVE-2018-10790
was published
May 24, 2022
A vulnerability in the way Cisco UCS Manager software handles SSH sessions could allow an...
Moderate
Unreviewed
CVE-2021-1592
was published
May 24, 2022
An uncontrolled memory allocation in DataBufdata(subBox.length-sizeof(box)) function of Exiv2 0...
Moderate
Unreviewed
CVE-2020-18899
was published
May 24, 2022
A vulnerability was discovered in GitLab versions before 14.0.2, 13.12.6, 13.11.6. GitLab Webhook...
Moderate
Unreviewed
CVE-2021-22246
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API