GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,179
Erlang
31
GitHub Actions
19
Go
1,982
Maven
5,000+
npm
3,701
NuGet
656
pip
3,323
Pub
11
RubyGems
882
Rust
834
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
882 advisories
Filter by severity
An information leak was discovered on Yubico YubiKey 5 NFC devices 5.0.0 to 5.2.6 and 5.3.0 to 5...
Low
Unreviewed
CVE-2020-15001
was published
May 24, 2022
Mozilla Developer Nicolas Silva found that when using WebRender, Firefox would under certain...
Low
Unreviewed
CVE-2020-12407
was published
May 24, 2022
HUAWEI P30 with versions earlier than 10.1.0.160(C00E160R2P11) and HUAWEI P30 Pro with versions...
Low
Unreviewed
CVE-2020-1836
was published
May 24, 2022
In versions bundled with BIG-IP APM 12.1.0-12.1.5 and 11.6.1-11.6.5.2, Edge Client for Linux...
Low
Unreviewed
CVE-2020-5908
was published
May 24, 2022
VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202006401-SG and 6.5 before...
Low
Unreviewed
CVE-2020-3965
was published
May 24, 2022
VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202006401-SG and 6.5 before...
Low
Unreviewed
CVE-2020-3964
was published
May 24, 2022
Improper Access Control vulnerability in McAfee Advanced Threat Defense (ATD) prior to 4.10.0...
Low
Unreviewed
CVE-2020-7262
was published
May 24, 2022
System Services exports services without permission protect and can lead to information exposure...
Low
Unreviewed
CVE-2019-14092
was published
May 24, 2022
Payload size is not validated before reading memory that may cause issue of accessing invalid...
Low
Unreviewed
CVE-2019-10626
was published
May 24, 2022
A vulnerability in Cisco Webex Meetings Desktop App for Windows could allow an authenticated,...
Low
Unreviewed
CVE-2020-3347
was published
May 24, 2022
HUAWEI Mate 30 with versions earlier than 10.1.0.126(C00E125R5P3) have an information disclosure...
Low
Unreviewed
CVE-2020-1835
was published
May 24, 2022
In CISOfy Lynis 2.x through 2.7.5, the license key can be obtained by looking at the process list...
Low
Unreviewed
CVE-2019-13033
was published
May 24, 2022
Incomplete cleanup from specific special register read operations in some Intel(R) Processors may...
Low
Unreviewed
CVE-2020-0543
was published
May 24, 2022
Insufficient control flow management in firmware for some Intel(R) Data Center SSDs may allow a...
Low
Unreviewed
CVE-2020-0527
was published
May 24, 2022
A flaw was found in the Linux kernel's implementation of Userspace core dumps. This flaw allows...
Low
Unreviewed
CVE-2020-10732
was published
May 24, 2022
In getAllConfigFlags of SettingsProvider.cpp, there is a possible illegal read due to a missing...
Low
Unreviewed
CVE-2020-0178
was published
May 24, 2022
In OutputBuffersArray::realloc of CCodecBuffers.cpp, there is a possible heap disclosure due to a...
Low
Unreviewed
CVE-2020-0141
was published
May 24, 2022
In BnDrm::onTransact of IDrm.cpp, there is a possible information disclosure due to uninitialized...
Low
Unreviewed
CVE-2020-0134
was published
May 24, 2022
Under certain conditions SAP Business One (Backup service), versions 9.3, 10.0, allows an...
Low
Unreviewed
CVE-2020-6239
was published
May 24, 2022
An information disclosure vulnerability exists when Internet Explorer improperly handles objects...
Low
Unreviewed
CVE-2020-1315
was published
May 24, 2022
A vulnerability exists in the way the Windows Diagnostics & feedback settings app handles...
Low
Unreviewed
CVE-2020-1296
was published
May 24, 2022
An information disclosure vulnerability exists when the win32k component improperly provides...
Low
Unreviewed
CVE-2020-1290
was published
May 24, 2022
An information disclosure vulnerability exists when a Windows service improperly handles objects...
Low
Unreviewed
CVE-2020-1268
was published
May 24, 2022
An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles...
Low
Unreviewed
CVE-2020-1261
was published
May 24, 2022
An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles...
Low
Unreviewed
CVE-2020-1263
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API