GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,016 advisories
Filter by severity
Prototype Pollution in doc-path
Critical
CVE-2020-7772
was published
for
doc-path
(npm)
May 10, 2021
Command injection in nodemailer
Critical
CVE-2020-7769
was published
for
nodemailer
(npm)
May 10, 2021
OS Command Injection in pomelo-monitor
Critical
CVE-2020-7620
was published
for
pomelo-monitor
(npm)
May 10, 2021
Command Injection in geojson2kml
Critical
CVE-2020-28429
was published
for
geojson2kml
(npm)
May 10, 2021
Prototype Pollution in tiny-conf
Critical
CVE-2020-7724
was published
for
tiny-conf
(npm)
May 10, 2021
Command injection in get-git-data
Critical
CVE-2020-7619
was published
for
get-git-data
(npm)
May 10, 2021
TypeORM vulnerable to MAID and Prototype Pollution
Critical
CVE-2020-8158
was published
for
typeorm
(npm)
May 7, 2021
OS Command Injection in pulverizr
Critical
CVE-2020-7604
was published
for
pulverizr
(npm)
May 7, 2021
OS Command Injection in node-prompt-here
Critical
CVE-2020-7602
was published
for
node-prompt-here
(npm)
May 7, 2021
OS Command Injection in closure-compiler-stream
Critical
CVE-2020-7603
was published
for
closure-compiler-stream
(npm)
May 7, 2021
OS Command Injection in gulp-scss-lint
Critical
CVE-2020-7601
was published
for
gulp-scss-lint
(npm)
May 7, 2021
OS Command Injection in gulp-tape
Critical
CVE-2020-7605
was published
for
gulp-tape
(npm)
May 7, 2021
OS Command Injection in gulkp-styledocco
Critical
CVE-2020-7607
was published
for
gulp-styledocco
(npm)
May 7, 2021
OS Command Injection in docker-compose-remote-api
Critical
CVE-2020-7606
was published
for
docker-compose-remote-api
(npm)
May 7, 2021
Command Injection in ps-visitor
Critical
CVE-2021-23374
was published
for
ps-visitor
(npm)
May 7, 2021
Command Injection in onion-oled-js
Critical
CVE-2021-23377
was published
for
onion-oled-js
(npm)
May 7, 2021
Deserialization of Untrusted Data in bson
Critical
CVE-2020-7610
was published
for
bson
(npm)
May 7, 2021
Prototype Pollution in safe-object2
Critical
CVE-2020-7726
was published
for
safe-object2
(npm)
May 6, 2021
Prototype Pollution in worksmith
Critical
CVE-2020-7725
was published
for
worksmith
(npm)
May 6, 2021
Prototype Pollution in nodee-utils
Critical
CVE-2020-7722
was published
for
nodee-utils
(npm)
May 6, 2021
ProTip!
Advisories are also available from the
GraphQL API