GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,122
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,020
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
4,554 advisories
Filter by severity
A flaw was found in Caribou due to a regression of CVE-2020-25712 fix. An attacker could use this...
High
Unreviewed
CVE-2021-3567
was published
Mar 26, 2022
This vulnerability can be exploited by parsing maliciously crafted project files with Horner...
High
Unreviewed
CVE-2021-44462
was published
Mar 26, 2022
Improper Input Validation vulnerability in project file upload in Nozomi Networks Guardian and...
High
Unreviewed
CVE-2022-0551
was published
Mar 25, 2022
Improper Input Validation vulnerability in custom report logo upload in Nozomi Networks Guardian,...
High
Unreviewed
CVE-2022-0550
was published
Mar 25, 2022
Improper Input Validation vulnerability in request line parsing of Apache Traffic Server allows...
High
Unreviewed
CVE-2021-44040
was published
Mar 24, 2022
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.4 and...
High
Unreviewed
CVE-2022-22653
was published
Mar 19, 2022
Kerberos acceptors need easy access to stable AD identifiers (eg objectSid). Samba as an AD DC...
High
Unreviewed
CVE-2020-25721
was published
Mar 17, 2022
In serviceConnection of ControlsProviderLifecycleManager.kt, there is a possible way to keep...
High
Unreviewed
CVE-2021-39701
was published
Mar 17, 2022
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious...
High
Unreviewed
CVE-2022-24415
was published
Mar 12, 2022
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious...
High
Unreviewed
CVE-2022-24416
was published
Mar 12, 2022
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious...
High
Unreviewed
CVE-2022-24420
was published
Mar 12, 2022
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious...
High
Unreviewed
CVE-2022-24419
was published
Mar 12, 2022
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious...
High
Unreviewed
CVE-2022-24421
was published
Mar 12, 2022
A flaw was found in the way samba implemented DCE/RPC. If a client to a Samba server sent a very...
High
Unreviewed
CVE-2021-23192
was published
Mar 4, 2022
A vulnerability in the Cisco Fabric Services over IP (CFSoIP) feature of Cisco NX-OS Software...
High
Unreviewed
CVE-2022-20624
was published
Feb 24, 2022
snapd 2.54.2 fails to perform sufficient validation of snap content interface and layout paths,...
High
Unreviewed
CVE-2021-4120
was published
Feb 19, 2022
A flaw was found in the way Samba maps domain users to local users. An authenticated attacker...
High
Unreviewed
CVE-2020-25717
was published
Feb 19, 2022
A vulnerability in the checkpoint manager implementation of Cisco Redundancy Configuration...
High
Unreviewed
CVE-2022-20750
was published
Feb 18, 2022
Insufficient data validation in Mojo in Google Chrome prior to 96.0.4664.110 allowed a remote...
High
Unreviewed
CVE-2021-4098
was published
Feb 13, 2022
A CWE-20: Improper Input Validation vulnerability exists that could cause denial of service of...
High
Unreviewed
CVE-2021-22787
was published
Feb 12, 2022
A CWE-20: Improper Input Validation vulnerability exists that could cause a Denial of Service...
High
Unreviewed
CVE-2021-22800
was published
Feb 12, 2022
The LSP (Language Server Protocol) plugin in KDE Kate before 21.12.2 and KTextEditor before 5.91...
High
Unreviewed
CVE-2022-23853
was published
Feb 12, 2022
A CWE-20: Improper Input Validation vulnerability exists that could allow an unauthenticated...
High
Unreviewed
CVE-2022-22727
was published
Feb 11, 2022
Improper input validation in firmware for Intel(R) PROSet/Wireless Wi-Fi in multiple operating...
High
Unreviewed
CVE-2021-0066
was published
Feb 11, 2022
Improper input validation in the firmware for some Intel(R) Processors may allow an authenticated...
High
Unreviewed
CVE-2021-0156
was published
Feb 11, 2022
ProTip!
Advisories are also available from the
GraphQL API