GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,122
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,020
Swift
39
Unreviewed advisories
All unreviewed
5,000+
159 advisories
Filter by severity
Use of Uninitialized Resource in binjs_io.
Critical
CVE-2021-45683
was published
for
binjs_io
(Rust)
Jan 6, 2022
Use of Uninitialized Resource in csv-sniffer.
Critical
CVE-2021-45686
was published
for
csv-sniffer
(Rust)
Jan 6, 2022
columnar: Read on uninitialized buffer may cause UB (ColumnarReadExt::read_typed_vec())
Critical
CVE-2021-45685
was published
for
columnar
(Rust)
Jan 6, 2022
Deserialization of Untrusted Data in rust-cpuid
Critical
CVE-2021-45687
was published
for
raw-cpuid
(Rust)
Jan 6, 2022
Use of Uninitialized Resource in ash.
Critical
CVE-2021-45688
was published
for
ash
(Rust)
Jan 6, 2022
Use of Uninitialized Resource in messagepack-rs.
Critical
CVE-2021-45693
was published
for
messagepack-rs
(Rust)
Jan 6, 2022
Use of Uninitialized Resource in messagepack-rs
Critical
CVE-2021-45691
was published
for
messagepack-rs
(Rust)
Jan 6, 2022
Use of Uninitialized Resource in messagepack-rs.
Critical
CVE-2021-45692
was published
for
messagepack-rs
(Rust)
Jan 6, 2022
Use of Uninitialized Resource in gfx-auxil
Critical
CVE-2021-45689
was published
for
gfx-auxil
(Rust)
Jan 6, 2022
Use of Uninitialized Resource in messagepack-rs.
Critical
CVE-2021-45690
was published
for
messagepack-rs
(Rust)
Jan 6, 2022
Incorrect reliance on Trait memory layout in mopa
Critical
CVE-2021-45695
was published
for
mopa
(Rust)
Jan 6, 2022
The `total_size` function for partial read the length of any `FixVec` is incorrect in molecule.
Critical
CVE-2021-45697
was published
for
molecule
(Rust)
Jan 6, 2022
Use After Free in tremor-script
Critical
CVE-2021-45701
was published
for
tremor-script
(Rust)
Jan 6, 2022
Use of Uninitialized Resource in tectonic_xdv
Critical
CVE-2021-45703
was published
for
tectonic_xdv
(Rust)
Jan 6, 2022
Pointer dereference in nanorand
Critical
CVE-2021-45705
was published
for
nanorand
(Rust)
Jan 6, 2022
Memory flaw in zeroize_derive
Critical
CVE-2021-45706
was published
for
zeroize_derive
(Rust)
Jan 6, 2022
Use of a Broken or Risky Cryptographic Algorithm in crypto2
Critical
CVE-2021-45709
was published
for
crypto2
(Rust)
Jan 6, 2022
Deno's static imports inside dynamically imported modules do not adhere to permission checks
Critical
CVE-2021-32619
was published
for
deno
(Rust)
Sep 23, 2021
Drop of uninitialized memory in stack_dst
Critical
CVE-2021-28035
was published
for
stack_dst
(Rust)
Sep 1, 2021
Process crashes when the cell used as DepGroup is not alive
Critical
GHSA-45p7-c959-rgcm
was published
for
ckb
(Rust)
Aug 25, 2021
crossbeam-deque Data Race before v0.7.4 and v0.8.1
Critical
CVE-2021-32810
was published
for
crossbeam-deque
(Rust)
Aug 25, 2021
ProTip!
Advisories are also available from the
GraphQL API