GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,238
Erlang
31
GitHub Actions
21
Go
2,005
Maven
5,000+
npm
3,716
NuGet
661
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
149 advisories
Filter by severity
An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding...
High
Unreviewed
CVE-2023-28976
was published
Apr 18, 2023
An Improper Check or Handling of Exceptional Conditions within the storm control feature of...
High
Unreviewed
CVE-2023-28965
was published
Apr 18, 2023
libiec61850 v1.5.1 was discovered to contain a segmentation violation via the function...
High
Unreviewed
CVE-2023-27772
was published
Apr 13, 2023
HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0...
High
Unreviewed
CVE-2021-32846
was published
Feb 18, 2023
Improper conditions check in the Intel(R) SUR software before version 2.4.8902 may allow an...
High
Unreviewed
CVE-2022-30692
was published
Feb 16, 2023
An Improper Check for Unusual or Exceptional Conditions vulnerability in BGP route processing of...
High
Unreviewed
CVE-2023-22393
was published
Jan 13, 2023
An improper check for unusual or exceptional conditions in the HTTP request processing function...
High
Unreviewed
CVE-2022-43393
was published
Jan 11, 2023
Improper Check for Unusual or Exceptional Conditions vulnerability handling requests in Apache...
High
Unreviewed
CVE-2022-32749
was published
Dec 19, 2022
Incorrect pointer checks within the NvmExpressDxe driver can allow tampering with SMRAM and OS...
High
Unreviewed
CVE-2022-29278
was published
Nov 16, 2022
Improper conditions check in some Intel(R) XMM(TM) 7560 Modem software before version...
High
Unreviewed
CVE-2022-26079
was published
Nov 11, 2022
On SRX Series devices, an Improper Check for Unusual or Exceptional Conditions when using...
High
Unreviewed
CVE-2022-22218
was published
Oct 18, 2022
fastify vulnerable to denial of service via malicious Content-Type
High
CVE-2022-39288
was published
for
fastify
(npm)
Oct 11, 2022
A vulnerability in the DNS application layer gateway (ALG) functionality that is used by Network...
High
Unreviewed
CVE-2022-20837
was published
Oct 11, 2022
An issue was discovered in wolfSSL before 5.5.0. When a TLS 1.3 client connects to a wolfSSL...
High
Unreviewed
CVE-2022-38152
was published
Sep 1, 2022
An unauthenticated user can overload a part of HCL VersionVault Express and cause a denial of...
High
Unreviewed
CVE-2022-27563
was published
Aug 31, 2022
An issue was discovered in Nginx NJS v0.7.5. The JUMP offset for a break instruction was not set...
High
Unreviewed
CVE-2022-35173
was published
Aug 19, 2022
Improper handling of CSS at-rules in lettersanitizer
High
CVE-2022-31103
was published
for
lettersanitizer
(npm)
Jun 23, 2022
Improper Handling of `callbackUrl` parameter in next-auth
High
CVE-2022-31093
was published
for
next-auth
(npm)
Jun 21, 2022
Improper Check for Unusual or Exceptional Conditions in Elasticsearch
High
CVE-2022-23712
was published
for
org.elasticsearch:elasticsearch
(Maven)
Jun 7, 2022
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in PLC...
High
Unreviewed
CVE-2020-7538
was published
May 24, 2022
In the CODESYS V2 web server prior to V1.1.9.22 crafted web server requests can trigger a parser...
High
Unreviewed
CVE-2021-34585
was published
May 24, 2022
An Improper Check for Unusual or Exceptional Conditions in packet processing on the MS-MPC/MS-MIC...
High
Unreviewed
CVE-2021-31351
was published
May 24, 2022
The time check operation of PepeAuctionSale 1.0 can be rendered ineffective by assigning a large...
High
Unreviewed
CVE-2020-19766
was published
May 24, 2022
In Contiki 3.0, Telnet option negotiation is mishandled. During negotiation between a server and...
High
Unreviewed
CVE-2021-40523
was published
May 24, 2022
Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers before...
High
Unreviewed
CVE-2021-0002
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API