GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,818 advisories
Filter by severity
init_tmp in TeeJee.FileSystem.vala in Timeshift before 20.03 unsafely reuses a preexisting...
Moderate
Unreviewed
CVE-2020-10174
was published
May 24, 2022
Gentoo Portage through 2.3.84 allows local users to place a Trojan horse plugin in the /usr/lib64...
Moderate
Unreviewed
CVE-2019-20384
was published
May 24, 2022
log.c in Squid Analysis Report Generator (sarg) through 2.3.11 allows local privilege escalation....
High
Unreviewed
CVE-2019-18932
was published
May 24, 2022
A vulnerability has been identified in SINAMICS PERFECT HARMONY GH180 Drives MLFB 6SR32..-.....-....
High
Unreviewed
CVE-2019-19278
was published
May 24, 2022
In LowEnergyClient::MtuChangedCallback of low_energy_client.cc, there is a possible out of bounds...
Low
Unreviewed
CVE-2020-0008
was published
May 24, 2022
During the initialization of a new content process, a race condition occurs that can allow a...
Low
Unreviewed
CVE-2019-17021
was published
May 24, 2022
Under certain conditions, when retrieving a document from a DocShell in the antitracking code, a...
Moderate
Unreviewed
CVE-2019-17011
was published
May 24, 2022
Under certain conditions, when checking the Resist Fingerprinting preference during device...
Moderate
Unreviewed
CVE-2019-17010
was published
May 24, 2022
By using a form with a data URI it was possible to gain access to the privileged JSONView object...
Moderate
Unreviewed
CVE-2019-11761
was published
May 24, 2022
In the Linux kernel through 5.4.6, there is a NULL pointer dereference in drivers/scsi/libsas...
Moderate
Unreviewed
CVE-2019-19965
was published
May 24, 2022
Cryptographic timing conditions in the subsystem for Intel(R) PTT before versions 11.8.70, 11.11...
Moderate
Unreviewed
CVE-2019-11090
was published
May 24, 2022
In System UI, there is a possible bypass of user's consent for access to sensor data due to a...
Moderate
Unreviewed
CVE-2019-2219
was published
May 24, 2022
Certain detection module of P30, P30 Pro, Honor V20 smartphone whith Versions earlier than ELLE...
High
Unreviewed
CVE-2019-5228
was published
May 24, 2022
Possible use after free issue due to race condition while attempting to mark the entry pages as...
High
Unreviewed
CVE-2019-10529
was published
May 24, 2022
Magento 2 Community Edition RCE Vulnerability
Moderate
CVE-2019-8232
was published
for
magento/community-edition
(Composer)
May 24, 2022
Sudo through 1.8.29 allows local users to escalate to root if they have write access to file...
High
Unreviewed
CVE-2019-18684
was published
May 24, 2022
An issue was discovered in drivers/media/platform/vivid in the Linux kernel through 5.3.8. It is...
Moderate
Unreviewed
CVE-2019-18683
was published
May 24, 2022
Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017...
High
Unreviewed
CVE-2019-8162
was published
May 24, 2022
A vulnerability has been found in the implementation of the Label Distribution Protocol (LDP)...
Moderate
Unreviewed
CVE-2019-14810
was published
May 24, 2022
A race condition which may occur when discarding malformed packets can result in BIND exiting due...
Moderate
Unreviewed
CVE-2019-6471
was published
May 24, 2022
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of...
High
Unreviewed
CVE-2019-17342
was published
May 24, 2022
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of...
High
Unreviewed
CVE-2019-17341
was published
May 24, 2022
In the Easel driver, there is possible memory corruption due to race conditions. This could lead...
Moderate
Unreviewed
CVE-2019-2188
was published
May 24, 2022
In the Easel driver, there is possible memory corruption due to race conditions. This could lead...
Moderate
Unreviewed
CVE-2019-2189
was published
May 24, 2022
The Mozilla Maintenance Service does not guard against files being hardlinked to another file in...
High
Unreviewed
CVE-2019-11736
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API