GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,293
Erlang
31
GitHub Actions
21
Go
2,061
Maven
5,000+
npm
3,744
NuGet
668
pip
3,423
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
532 advisories
Filter by severity
The DBD::mysql module through 4.043 for Perl allows remote attackers to cause a denial of service...
Critical
Unreviewed
CVE-2017-10788
was published
May 17, 2022
Use after free in storage in Google Chrome prior to 100.0.4896.88 allowed an attacker who...
Critical
Unreviewed
CVE-2022-1312
was published
Jul 26, 2022
/ext/phar/phar_object.c in PHP 7.0.7 and 5.6.x allows remote attackers to execute arbitrary code....
Critical
Unreviewed
CVE-2016-4473
was published
May 17, 2022
The Web Cryptography API (aka WebCrypto) implementation in Blink, as used in Google Chrome before...
Critical
Unreviewed
CVE-2016-5142
was published
May 17, 2022
Use-after-free vulnerability in the my_login function in DBD::mysql before 4.033_01 allows...
Critical
Unreviewed
CVE-2015-8949
was published
May 17, 2022
Use after free in Browser UI in Google Chrome on Chrome OS prior to 99.0.4844.74 allowed a remote...
Critical
Unreviewed
CVE-2022-0977
was published
Jul 22, 2022
IBM BigFix Platform could allow a remote attacker to execute arbitrary code on the system, caused...
Critical
Unreviewed
CVE-2016-6082
was published
May 17, 2022
The netjoin processing in Irssi 1.x before 1.0.2 allows attackers to cause a denial of service ...
Critical
Unreviewed
CVE-2017-7191
was published
May 17, 2022
Use-after-free vulnerability in Citrix Provisioning Services before 7.12 allows attackers to...
Critical
Unreviewed
CVE-2016-9678
was published
May 17, 2022
PHP through 5.6.27 and 7.x through 7.0.12 mishandles property modification during __wakeup...
Critical
Unreviewed
CVE-2016-9138
was published
May 17, 2022
A use-after-free in AnimationController::endAnimationUpdate in Google Chrome.
Critical
Unreviewed
CVE-2013-6647
was published
May 17, 2022
Use after free in Indexed DB in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to...
Critical
Unreviewed
CVE-2022-1853
was published
Jul 28, 2022
An issue was discovered in the Linux kernel before 5.0.9. There is a use-after-free in...
Critical
Unreviewed
CVE-2019-15292
was published
May 24, 2022
libical allows remote attackers to cause a denial of service (use-after-free) and possibly read...
Critical
Unreviewed
CVE-2016-9584
was published
May 17, 2022
Use-after-free vulnerability in Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat...
Critical
Unreviewed
CVE-2016-6938
was published
May 17, 2022
Use-after-free vulnerability in DBD::mysql before 4.029 allows attackers to cause a denial of...
Critical
Unreviewed
CVE-2014-9906
was published
May 17, 2022
A use-after-free vulnerability was observed in Rp_toString function of Artifex Software, Inc....
Critical
Unreviewed
CVE-2016-7504
was published
May 17, 2022
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable use after free...
Critical
Unreviewed
CVE-2017-3071
was published
May 13, 2022
Use After Free in Remote logging (which is disabled by default) in McAfee McAfee Agent (MA) 5.x...
Critical
Unreviewed
CVE-2018-6703
was published
May 13, 2022
Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable use after free...
Critical
Unreviewed
CVE-2017-2937
was published
May 14, 2022
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable...
Critical
Unreviewed
CVE-2016-7880
was published
May 14, 2022
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable...
Critical
Unreviewed
CVE-2016-7877
was published
May 14, 2022
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable...
Critical
Unreviewed
CVE-2016-7879
was published
May 14, 2022
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable...
Critical
Unreviewed
CVE-2016-7878
was published
May 14, 2022
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable...
Critical
Unreviewed
CVE-2016-7881
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API