GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,293
Erlang
31
GitHub Actions
21
Go
2,061
Maven
5,000+
npm
3,744
NuGet
668
pip
3,423
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
433 advisories
Filter by severity
Any git operation is passed through Jetty and a session is created. No expiry is set for the...
High
Unreviewed
CVE-2021-22553
was published
May 24, 2022
On Juniper Networks Junos EX series, QFX Series and SRX branch series devices, a memory leak...
Moderate
Unreviewed
CVE-2021-0215
was published
May 24, 2022
smtpd/table.c in OpenSMTPD before 6.8.0p1 lacks a certain regfree, which might allow attackers to...
High
Unreviewed
CVE-2020-35679
was published
May 24, 2022
In version 15.1.0-15.1.0.5, 14.1.0-14.1.3, 13.1.0-13.1.3.4, 12.1.0-12.1.5.2, and 11.6.1-11.6.5.2...
Moderate
Unreviewed
CVE-2020-27725
was published
May 24, 2022
Various memory and file descriptor leaks were found in apt-python files python/arfile.cc, python...
Low
Unreviewed
CVE-2020-27351
was published
May 24, 2022
A flaw was found in libvirt, where it leaked a file descriptor for `/dev/mapper/control` into the...
High
Unreviewed
CVE-2020-14339
was published
May 24, 2022
On Juniper Networks Junos OS and Junos OS Evolved platforms with EVPN configured, receipt of...
Moderate
Unreviewed
CVE-2020-1678
was published
May 24, 2022
A memory leak in the TFTP service in B&R Automation Runtime versions <N4.26, <N4.34, <F4.45, <E4...
High
Unreviewed
CVE-2020-11637
was published
May 24, 2022
In BIG-IP APM versions 12.1.0-12.1.5.1 and 11.6.1-11.6.5.2, RADIUS authentication leaks memory...
Moderate
Unreviewed
CVE-2020-5924
was published
May 24, 2022
IBM MQ, IBM MQ Appliance, IBM MQ for HPE NonStop 8.0, 9.1 CD, and 9.1 LTS could allow an attacker...
Moderate
Unreviewed
CVE-2020-4375
was published
May 24, 2022
On Juniper Networks Junos OS devices, a stream of TCP packets sent to the Routing Engine (RE) may...
Moderate
Unreviewed
CVE-2020-1653
was published
May 24, 2022
In the Linux kernel through 5.7.6, usbtest_disconnect in drivers/usb/misc/usbtest.c has a memory...
Low
Unreviewed
CVE-2020-15393
was published
May 24, 2022
Huawei products NIP6800;Secospace USG6600;USG9500 have a memory leak vulnerability. An attacker...
Moderate
Unreviewed
CVE-2020-1883
was published
May 24, 2022
go7007_snd_init in drivers/media/usb/go7007/snd-go7007.c in the Linux kernel before 5.6 does not...
Moderate
Unreviewed
CVE-2019-20810
was published
May 24, 2022
CloudEngine 12800 products with versions of V200R019C00, V200R019C10SPC800, V200R019C00SPC600,...
Moderate
Unreviewed
CVE-2020-1870
was published
May 24, 2022
In FreeBSD 12.1-STABLE before r360973, 12.1-RELEASE before p5, 11.4-STABLE before r360973, 11.4...
Moderate
Unreviewed
CVE-2020-7455
was published
May 24, 2022
An issue was discovered in the Linux kernel before 5.6. svm_cpu_uninit in arch/x86/kvm/svm.c has...
Low
Unreviewed
CVE-2020-12768
was published
May 24, 2022
An issue was discovered in the Linux kernel 4.18 through 5.6.11 when unprivileged user namespaces...
Moderate
Unreviewed
CVE-2019-20794
was published
May 24, 2022
gss_mech_free in net/sunrpc/auth_gss/gss_mech_switch.c in the rpcsec_gss_krb5 implementation in...
Low
Unreviewed
CVE-2020-12656
was published
May 24, 2022
On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2.3, 14.0.0-14.0.1, and 13.1.0-13.1.3.1, when a virtual...
Moderate
Unreviewed
CVE-2020-5883
was published
May 24, 2022
IBM MQ and MQ Appliance 8.0, 9.1 LTS, and 9.1 CD could allow an authenticated user cause a denial...
Moderate
Unreviewed
CVE-2020-4267
was published
May 24, 2022
Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and...
Moderate
Unreviewed
CVE-2020-1815
was published
May 24, 2022
vg_lookup in daemons/lvmetad/lvmetad-core.c in LVM2 2.02 mismanages memory, leading to an lvmetad...
Moderate
Unreviewed
CVE-2020-8991
was published
May 24, 2022
An ni_dhcp4_fsm_process_dhcp4_packet memory leak in openSUSE wicked 0.6.55 and earlier allows...
Moderate
Unreviewed
CVE-2020-7217
was published
May 24, 2022
An ni_dhcp4_parse_response memory leak in openSUSE wicked 0.6.55 and earlier allows network...
Moderate
Unreviewed
CVE-2020-7216
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API