GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,081
Erlang
29
GitHub Actions
19
Go
1,909
Maven
5,000+
npm
3,642
NuGet
638
pip
3,258
Pub
10
RubyGems
869
Rust
820
Swift
35
Unreviewed advisories
All unreviewed
5,000+
370 advisories
Filter by severity
Google V8, as used in Google Chrome before 14.0.835.163, does not properly perform object sealing...
Moderate
Unreviewed
CVE-2011-2875
was published
May 13, 2022
An elevation of privilege vulnerability in the Upstream kernel bluez. Product: Android. Versions:...
High
Unreviewed
CVE-2017-13220
was published
May 13, 2022
AP4_VisualSampleEntry::ReadFields in Core/Ap4SampleEntry.cpp in Bento4 1.5.0-617 uses incorrect...
High
Unreviewed
CVE-2017-14639
was published
May 13, 2022
In all Qualcomm products with Android releases from CAF using the Linux kernel, while processing...
High
Unreviewed
CVE-2017-15860
was published
May 13, 2022
A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 13...
Moderate
Unreviewed
CVE-2020-9800
was published
May 24, 2022
Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and...
High
Unreviewed
CVE-2016-0985
was published
May 17, 2022
Type confusion in V8 in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to...
High
Unreviewed
CVE-2022-3889
was published
Nov 9, 2022
Type confusion in V8 in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to...
High
Unreviewed
CVE-2022-2295
was published
Jul 29, 2022
Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to...
High
Unreviewed
CVE-2021-38012
was published
Dec 24, 2021
Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to...
High
Unreviewed
CVE-2021-38007
was published
Dec 24, 2021
The HwNearbyMain module has a Data Processing Errors vulnerability.Successful exploitation of...
High
Unreviewed
CVE-2021-39987
was published
Jan 4, 2022
There is a Vulnerability of accessing resources using an incompatible type (type confusion) in...
Moderate
Unreviewed
CVE-2021-40037
was published
Jan 11, 2022
This vulnerability allows local attackers to escalate privileges on affected installations of...
High
Unreviewed
CVE-2021-34866
was published
Jan 26, 2022
Type confusion leading to segfault in Tensorflow
Moderate
CVE-2022-21731
was published
for
tensorflow
(pip)
Feb 10, 2022
`CHECK`-failures in Tensorflow
Moderate
CVE-2022-21734
was published
for
tensorflow
(pip)
Feb 10, 2022
A vulnerability has been identified in Simcenter Femap V2020.2 (All versions), Simcenter Femap...
High
Unreviewed
CVE-2021-46152
was published
Feb 10, 2022
Type confusion in V8 in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to...
High
Unreviewed
CVE-2022-0102
was published
Feb 13, 2022
njs through 0.7.1, used in NGINX, was discovered to contain a control flow hijack caused by a...
Critical
Unreviewed
CVE-2021-46463
was published
Feb 15, 2022
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X...
High
Unreviewed
CVE-2016-4225
was published
May 14, 2022
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X...
High
Unreviewed
CVE-2016-4223
was published
May 14, 2022
MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit...
High
Unreviewed
CVE-2022-2971
was published
Sep 25, 2022
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X...
High
Unreviewed
CVE-2016-4224
was published
May 14, 2022
A type confusion issue was addressed with improved checks. This issue is fixed in macOS Ventura...
High
Unreviewed
CVE-2022-32915
was published
Nov 2, 2022
In Gitlab EE/CE before 15.6.1, 15.5.5 and 15.4.6 using a branch with a hexadecimal name could...
High
Unreviewed
CVE-2022-4205
was published
Jan 28, 2023
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X...
High
Unreviewed
CVE-2016-1015
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API