GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,150
NuGet
736
pip
3,952
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
394 advisories
Filter by severity
Prototype Pollution in multi-ini
Critical
CVE-2020-28448
was published
for
multi-ini
(npm)
Apr 13, 2021
Prototype pollution in multi-ini
Moderate
CVE-2020-28460
was published
for
multi-ini
(npm)
Apr 13, 2021
Prototype Pollution in iniparserjs
Moderate
CVE-2021-23328
was published
for
iniparserjs
(npm)
Apr 13, 2021
Prototype Pollution in set-or-get
Critical
CVE-2021-25913
was published
for
set-or-get
(npm)
Apr 12, 2021
Prototype Pollution Vulnerability in object-collider
Critical
CVE-2021-25914
was published
for
object-collider
(npm)
Mar 19, 2021
Prototype Pollution in Node-Red
High
CVE-2021-21297
was published
for
@node-red/runtime
(npm)
Feb 26, 2021
Dynamic modification of RPyC service due to missing security check
High
CVE-2019-16328
was published
for
rpyc
(pip)
Feb 17, 2021
datatables.net vulnerable to Prototype Pollution due to incomplete fix
High
CVE-2020-28458
was published
for
datatables.net
(npm)
Dec 17, 2020
ini before 1.3.6 vulnerable to Prototype Pollution via ini.parse
High
CVE-2020-7788
was published
for
ini
(npm)
Dec 10, 2020
Prototype Pollution in node-forge
High
CVE-2020-7720
was published
for
node-forge
(npm)
Sep 14, 2020
Prototype Pollution in mergify
Moderate
GHSA-3f95-w5h5-fq86
was published
for
mergify
(npm)
Sep 11, 2020
yargs-parser Vulnerable to Prototype Pollution
Moderate
CVE-2020-7608
was published
for
yargs-parser
(npm)
Sep 4, 2020
Prototype Pollution in @hapi/hoek
Low
GHSA-22h7-7wwg-qmgg
was published
for
@hapi/hoek
(npm)
Sep 4, 2020
Duplicate Advisory: Prototype Pollution in klona
High
GHSA-4r97-78gf-q24v
was published
for
klona
(npm)
Sep 4, 2020
•
withdrawn
Sandbox Breakout / Prototype Pollution in notevil
Moderate
GHSA-9gxr-rhx6-4jgv
was published
for
notevil
(npm)
Sep 4, 2020
Prototype Pollution in safe-object2
High
GHSA-qccf-q7p4-3q3j
was published
for
safe-object2
(npm)
Sep 4, 2020
Prototype Pollution in getsetdeep
High
GHSA-8j49-49jq-vwcq
was published
for
getsetdeep
(npm)
Sep 4, 2020
ProTip!
Advisories are also available from the
GraphQL API