GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,274
Erlang
31
GitHub Actions
21
Go
2,056
Maven
5,000+
npm
3,740
NuGet
668
pip
3,419
Pub
12
RubyGems
891
Rust
872
Swift
36
Unreviewed advisories
All unreviewed
5,000+
382 advisories
Filter by severity
Malicious Package in ruffer-xor
Critical
GHSA-2mxc-m4c3-wqhq
was published
for
ruffer-xor
(npm)
Sep 3, 2020
Malicious Package in js-shas
Critical
GHSA-5wq6-v5cw-jvfr
was published
for
js-shas
(npm)
Sep 3, 2020
Malicious Package in sj-labc
Critical
GHSA-4fqg-89cc-5pv5
was published
for
sj-labc
(npm)
Sep 4, 2020
Malicious Package in js-cha3
Critical
GHSA-7xf9-74cp-8hx3
was published
for
js-cha3
(npm)
Sep 3, 2020
Malicious Package in bitconijs-lib
Critical
GHSA-74hh-4rcv-pp27
was published
for
bitconijs-lib
(npm)
Sep 4, 2020
Malicious Package in babel-loqder
Critical
GHSA-9cph-cqqh-36pw
was published
for
babel-loqder
(npm)
Sep 4, 2020
Malicious Package in bictoind-rpc
Critical
GHSA-jqvv-r4w3-8f7w
was published
for
bictoind-rpc
(npm)
Sep 4, 2020
Malicious Package in bitcionjs
Critical
GHSA-qmgf-fp85-55gr
was published
for
bitcionjs
(npm)
Sep 4, 2020
Malicious Package in bitcroe-lib
Critical
GHSA-4m3p-x2hp-2pgx
was published
for
bitcroe-lib
(npm)
Sep 4, 2020
Malicious Package in bitcionjslib
Critical
GHSA-p4mf-4qvh-w8g5
was published
for
bitcionjslib
(npm)
Sep 4, 2020
Malicious Package in conistring
Critical
GHSA-cfc5-x58f-869w
was published
for
conistring
(npm)
Sep 3, 2020
Malicious Package in coinstrng
Critical
GHSA-hj5w-xgw9-w4rj
was published
for
coinstrng
(npm)
Sep 3, 2020
Malicious Package in fs-extar
Critical
GHSA-435c-qcpm-wjw5
was published
for
fs-extar
(npm)
Sep 3, 2020
Malicious Package in ripmed160
Critical
GHSA-gmjp-776j-2394
was published
for
ripmed160
(npm)
Sep 3, 2020
Malicious Package in wallet-address-vaildator
Critical
GHSA-m6q2-9pfm-2wvr
was published
for
wallet-address-vaildator
(npm)
Sep 3, 2020
Malicious Package in coinstirng
Critical
GHSA-ff6g-gm92-rf32
was published
for
coinstirng
(npm)
Sep 3, 2020
ProTip!
Advisories are also available from the
GraphQL API