GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,021 advisories
Filter by severity
Out-of-bounds Write and Race Condition in metrics-util
High
CVE-2021-45704
was published
for
metrics-util
(Rust)
Jan 6, 2022
Out of bounds read in lazy-init
Moderate
CVE-2021-25901
was published
for
lazy-init
(Rust)
Aug 25, 2021
Mutable reference with immutable provenance in image
Moderate
CVE-2020-35916
was published
for
image
(Rust)
Aug 25, 2021
Integer Overflow/Infinite Loop in the http crate
High
CVE-2020-25574
was published
for
http
(Rust)
Aug 25, 2021
Mishandling of format strings in ncurses
High
CVE-2019-15547
was published
for
ncurses
(Rust)
Aug 25, 2021
nb-connect invalidly assumes the memory layout of std::net::SocketAddr
Critical
CVE-2021-27376
was published
for
nb-connect
(Rust)
Aug 25, 2021
The `total_size` function for partial read the length of any `FixVec` is incorrect in molecule.
Critical
CVE-2021-45697
was published
for
molecule
(Rust)
Jan 6, 2022
Incorrect reliance on Trait memory layout in mopa
Critical
CVE-2021-45695
was published
for
mopa
(Rust)
Jan 6, 2022
Out-of-bounds write in nix::unistd::getgrouplist
High
GHSA-wgrg-5h56-jg27
was published
for
nix
(Rust)
Jun 17, 2022
Use after free in Neon external buffers
High
GHSA-8mj7-wxmc-f424
was published
for
neon
(Rust)
Jun 17, 2022
ProTip!
Advisories are also available from the
GraphQL API