GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,866
Erlang
36
GitHub Actions
36
Go
2,491
Maven
5,000+
npm
4,110
NuGet
735
pip
3,933
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
319 advisories
Filter by severity
In pinReplyNative of com_android_bluetooth_btservice_AdapterService.cpp, there is a possible out...
High
Unreviewed
CVE-2022-20461
was published
Jan 26, 2023
A flaw in Thunderbird's implementation of iCal causes a type confusion in...
High
Unreviewed
CVE-2019-11706
was published
May 24, 2022
A Red Hat only CVE-2020-12351 regression issue was found in the way the Linux kernel's Bluetooth...
High
Unreviewed
CVE-2020-25661
was published
May 24, 2022
JIT optimizations involving the Javascript arguments object could confuse later optimizations....
High
Unreviewed
CVE-2020-15656
was published
May 24, 2022
Type Confusion in ServiceWorker API in Google Chrome prior to 109.0.5414.119 allowed a remote...
High
Unreviewed
CVE-2023-0473
was published
Jan 30, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2019-13329
was published
May 24, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2019-13330
was published
May 24, 2022
libxslt Type Confusion vulnerability that affects Nokogiri
High
CVE-2019-13118
was published
for
nokogiri
(RubyGems)
May 24, 2022
Type confusion in CSS in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to...
High
Unreviewed
CVE-2023-1215
was published
Mar 8, 2023
Type confusion in V8 in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to...
High
Unreviewed
CVE-2023-1214
was published
Mar 8, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2022-37377
was published
Mar 29, 2023
Duplicate advisory: Sequelize - Unsafe fall-through in getWhereConditions
High
GHSA-r3vq-92c6-3mqf
was published
for
@sequelize/core
(npm)
Feb 16, 2023
•
withdrawn
Type confusion in V8 in Google Chrome prior to 107.0.5304.87 allowed a remote attacker to...
High
Unreviewed
CVE-2022-3723
was published
Nov 2, 2022
A type confusion issue was addressed with improved state handling. This issue is fixed in Safari...
High
Unreviewed
CVE-2022-42856
was published
Dec 15, 2022
Type confusion in V8 in Google Chrome prior to 100.0.4896.60 allowed a remote attacker to...
High
Unreviewed
CVE-2022-1134
was published
Jul 24, 2022
In the code that verifies the file size in the ark library, it is possible to manipulate the...
High
Unreviewed
CVE-2021-26635
was published
Jun 3, 2022
Nokogiri implementation of libxslt vulnerable to heap corruption
High
CVE-2019-5815
was published
for
nokogiri
(RubyGems)
May 24, 2022
A type confusion issue was addressed with improved checks. This issue is fixed in macOS Ventura...
High
Unreviewed
CVE-2023-23529
was published
Feb 27, 2023
Type confusion in DevTools in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who...
High
Unreviewed
CVE-2023-0703
was published
Feb 7, 2023
Type confusion in Data Transfer in Google Chrome prior to 110.0.5481.77 allowed a remote attacker...
High
Unreviewed
CVE-2023-0702
was published
Feb 7, 2023
ChakraCore RCE Vulnerability
High
CVE-2018-8133
was published
for
Microsoft.ChakraCore
(NuGet)
May 13, 2022
ChakraCore RCE Vulnerability
High
CVE-2018-8229
was published
for
Microsoft.ChakraCore
(NuGet)
May 13, 2022
ChakraCore RCE Vulnerability
High
CVE-2018-8291
was published
for
Microsoft.ChakraCore
(NuGet)
May 13, 2022
ChakraCore RCE Vulnerability
High
CVE-2018-8298
was published
for
Microsoft.ChakraCore
(NuGet)
May 13, 2022
ChakraCore RCE Vulnerability
High
CVE-2018-8384
was published
for
Microsoft.ChakraCore
(NuGet)
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API