GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
265 advisories
Filter by severity
In the Titan M chip firmware, there is a possible disclosure of stack memory due to uninitialized...
Moderate
Unreviewed
CVE-2021-0450
was published
May 24, 2022
In the Titan M chip firmware, there is a possible disclosure of stack memory due to uninitialized...
Moderate
Unreviewed
CVE-2021-0449
was published
May 24, 2022
Improper initialization in the firmware for the Intel(R) Ethernet I210 Controller series of...
Moderate
Unreviewed
CVE-2020-0522
was published
May 24, 2022
Windows Installer Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2021-1661
was published
May 24, 2022
Macrium Reflect includes an OpenSSL component that specifies an OPENSSLDIR variable as C:\openssl...
High
Unreviewed
CVE-2020-10143
was published
May 24, 2022
A memory initialization issue was addressed. This issue is fixed in macOS Big Sur 11.0.1, watchOS...
High
Unreviewed
CVE-2020-27950
was published
May 24, 2022
OneCRL was non-functional in the new Firefox for Android due to a missing service initialization....
Moderate
Unreviewed
CVE-2020-26957
was published
May 24, 2022
Trusted Computing Group (TCG) Trusted Platform Module Library Family 2.0 Library Specification...
Moderate
Unreviewed
CVE-2020-26933
was published
May 24, 2022
Improper initialization in subsystem for Intel(R) CSME versions before12.0.70, 13.0.40, 13.30.10,...
High
Unreviewed
CVE-2020-8744
was published
May 24, 2022
Insecure default variable initialization in firmware for some Intel(R) NUCs may allow an...
High
Unreviewed
CVE-2020-12336
was published
May 24, 2022
Improper initialization in some Intel(R) Thunderbolt(TM) DCH drivers for Windows* before version...
Moderate
Unreviewed
CVE-2020-12326
was published
May 24, 2022
In rw_i93_sm_format of rw_i93.cc, there is a possible out of bounds read due to uninitialized...
Moderate
Unreviewed
CVE-2020-0450
was published
May 24, 2022
In the AIBinder_Class constructor of ibinder.cpp, there is a possible arbitrary code execution...
High
Unreviewed
CVE-2020-0438
was published
May 24, 2022
Multiple vulnerabilities in Cisco Webex Network Recording Player for Windows and Cisco Webex...
High
Unreviewed
CVE-2020-3573
was published
May 24, 2022
A Red Hat only CVE-2020-12352 regression issue was found in the way the Linux kernel's Bluetooth...
Moderate
Unreviewed
CVE-2020-25662
was published
May 24, 2022
Uninitialized data in PDFium in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to...
Moderate
Unreviewed
CVE-2020-15989
was published
May 24, 2022
A memory initialization issue was addressed with improved memory handling. This issue is fixed in...
High
Unreviewed
CVE-2020-9863
was published
May 24, 2022
Acronis Cyber Backup 12.5 and Cyber Protect 15 include an OpenSSL component that specifies an...
High
Unreviewed
CVE-2020-10138
was published
May 24, 2022
Acronis True Image 2021 includes an OpenSSL component that specifies an OPENSSLDIR variable as a...
High
Unreviewed
CVE-2020-10139
was published
May 24, 2022
A memory initialization issue was addressed with improved memory handling. This issue is fixed in...
Moderate
Unreviewed
CVE-2020-9964
was published
May 24, 2022
An information disclosure vulnerability exists when the Windows kernel improperly initializes...
Moderate
Unreviewed
CVE-2020-16901
was published
May 24, 2022
In libhwbinder, there is a possible information disclosure due to uninitialized data. This could...
Moderate
Unreviewed
CVE-2020-0272
was published
May 24, 2022
An information disclosure vulnerability exists when the Windows kernel improperly initializes...
Low
Unreviewed
CVE-2020-1592
was published
May 24, 2022
A flaw was found in the way xserver memory was not properly initialized. This could leak parts of...
Low
Unreviewed
CVE-2020-14347
was published
May 24, 2022
qmail-verify as used in netqmail 1.06 is prone to a mail-address verification bypass vulnerability.
High
Unreviewed
CVE-2020-3811
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API