GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,507
Maven
5,000+
npm
4,149
NuGet
736
pip
3,949
Pub
12
RubyGems
946
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,610 advisories
Filter by severity
Improper Key Verification in ipns
High
GHSA-j59f-6m4q-62h6
was published
for
ipns
(npm)
May 30, 2019
Arbitrary File Overwrite in fstream
High
CVE-2019-13173
was published
for
fstream
(npm)
May 30, 2019
Server-Side Request Forgery in terriajs-server
High
GHSA-p72p-rjr2-r439
was published
for
terriajs-server
(npm)
May 29, 2019
Improper Input Validation and Buffer Over-read in mqtt-packet
High
CVE-2019-5432
was published
for
mqtt-packet
(npm)
May 14, 2019
Path Traversal in http-live-simulator
High
CVE-2019-5423
was published
for
http-live-simulator
(npm)
Apr 8, 2019
Path Traversal in localhost-now
High
CVE-2019-5416
was published
for
localhost-now
(npm)
Mar 25, 2019
Regular Expression Denial of Service in highcharts
High
CVE-2018-20801
was published
for
highcharts
(npm)
Mar 18, 2019
DoS due to excessively large websocket message in ws
High
CVE-2016-10542
was published
for
ws
(npm)
Feb 18, 2019
chromedriver Downloads Resources over HTTP
High
CVE-2016-10579
was published
for
chromedriver
(npm)
Feb 18, 2019
closure-util downloads Resources over HTTP
High
CVE-2016-10583
was published
for
closure-util
(npm)
Feb 18, 2019
Downloads Resources over HTTP in broccoli-closure
High
CVE-2016-10635
was published
for
broccoli-closure
(npm)
Feb 18, 2019
dwebp-bin downloads Resources over HTTP
High
CVE-2016-10633
was published
for
dwebp-bin
(npm)
Feb 18, 2019
Downloads Resources over HTTP in jvminstall
High
CVE-2016-10631
was published
for
jvminstall
(npm)
Feb 18, 2019
nw-with-arm downloads Resources over HTTP
High
CVE-2016-10629
was published
for
nw-with-arm
(npm)
Feb 18, 2019
ProTip!
Advisories are also available from the
GraphQL API