GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,021 advisories
Filter by severity
Uninitialized memory access in toodee
High
CVE-2021-28029
was published
for
toodee
(Rust)
Sep 1, 2021
`net2` invalidly assumes the memory layout of std::net::SocketAddr
Moderate
CVE-2020-35919
was published
for
net2
(Rust)
May 24, 2022
Null pointer deference in openssl-src
High
CVE-2020-1967
was published
for
openssl-src
(Rust)
Aug 25, 2021
memoffset allows reading uninitialized memory
Moderate
GHSA-wfg4-322g-9vqv
was published
for
memoffset
(Rust)
Jun 21, 2023
Use of Uninitialized Resource in gfx-auxil
Critical
CVE-2021-45689
was published
for
gfx-auxil
(Rust)
Jan 6, 2022
Algorithms compute incorrect results in blake2
Critical
CVE-2019-16143
was published
for
blake2
(Rust)
Aug 25, 2021
Improper `Sync` implementation on `FuturesUnordered` in futures-utils can cause data corruption
Moderate
CVE-2020-35908
was published
for
futures-util
(Rust)
May 24, 2022
Wrong memory orderings violates mutual exclusion in spin
High
CVE-2019-16137
was published
for
spin
(Rust)
Aug 25, 2021
Use After Free in tremor-script
Critical
CVE-2021-45701
was published
for
tremor-script
(Rust)
Jan 6, 2022
cyfs-base vulnerable to misaligned pointer dereference in `ChunkId::new`
Moderate
GHSA-g753-ghr7-q33w
was published
for
cyfs-base
(Rust)
Jun 22, 2023
ProTip!
Advisories are also available from the
GraphQL API