GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,272
Erlang
31
GitHub Actions
21
Go
2,047
Maven
5,000+
npm
3,739
NuGet
668
pip
3,415
Pub
12
RubyGems
891
Rust
868
Swift
36
Unreviewed advisories
All unreviewed
5,000+
249 advisories
Filter by severity
A type confusion issue was addressed with improved memory handling. This issue is fixed in tvOS...
High
Unreviewed
CVE-2022-42823
was published
Nov 2, 2022
Type confusion in V8 in Google Chrome prior to 107.0.5304.87 allowed a remote attacker to...
High
Unreviewed
CVE-2022-3723
was published
Nov 2, 2022
Nokogiri Improperly Handles Unexpected Data Type
High
CVE-2022-29181
was published
for
nokogiri
(RubyGems)
May 23, 2022
Duplicate advisory: Sequelize - Unsafe fall-through in getWhereConditions
High
GHSA-r3vq-92c6-3mqf
was published
for
@sequelize/core
(npm)
Feb 16, 2023
•
withdrawn
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2022-37377
was published
Mar 29, 2023
Type confusion in V8 in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to...
High
Unreviewed
CVE-2023-1214
was published
Mar 8, 2023
Type confusion in CSS in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to...
High
Unreviewed
CVE-2023-1215
was published
Mar 8, 2023
libxslt Type Confusion vulnerability that affects Nokogiri
High
CVE-2019-13118
was published
for
nokogiri
(RubyGems)
May 24, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2019-13330
was published
May 24, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2019-13329
was published
May 24, 2022
Type Confusion in ServiceWorker API in Google Chrome prior to 109.0.5414.119 allowed a remote...
High
Unreviewed
CVE-2023-0473
was published
Jan 30, 2023
JIT optimizations involving the Javascript arguments object could confuse later optimizations....
High
Unreviewed
CVE-2020-15656
was published
May 24, 2022
A Red Hat only CVE-2020-12351 regression issue was found in the way the Linux kernel's Bluetooth...
High
Unreviewed
CVE-2020-25661
was published
May 24, 2022
A flaw in Thunderbird's implementation of iCal causes a type confusion in...
High
Unreviewed
CVE-2019-11706
was published
May 24, 2022
In pinReplyNative of com_android_bluetooth_btservice_AdapterService.cpp, there is a possible out...
High
Unreviewed
CVE-2022-20461
was published
Jan 26, 2023
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X...
High
Unreviewed
CVE-2016-1015
was published
May 14, 2022
In Gitlab EE/CE before 15.6.1, 15.5.5 and 15.4.6 using a branch with a hexadecimal name could...
High
Unreviewed
CVE-2022-4205
was published
Jan 28, 2023
A type confusion issue was addressed with improved checks. This issue is fixed in macOS Ventura...
High
Unreviewed
CVE-2022-32915
was published
Nov 2, 2022
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X...
High
Unreviewed
CVE-2016-4224
was published
May 14, 2022
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X...
High
Unreviewed
CVE-2016-4225
was published
May 14, 2022
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X...
High
Unreviewed
CVE-2016-4223
was published
May 14, 2022
MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit...
High
Unreviewed
CVE-2022-2971
was published
Sep 25, 2022
Type confusion in V8 in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to...
High
Unreviewed
CVE-2022-0102
was published
Feb 13, 2022
A vulnerability has been identified in Simcenter Femap V2020.2 (All versions), Simcenter Femap...
High
Unreviewed
CVE-2021-46152
was published
Feb 10, 2022
This vulnerability allows local attackers to escalate privileges on affected installations of...
High
Unreviewed
CVE-2021-34866
was published
Jan 26, 2022
ProTip!
Advisories are also available from the
GraphQL API