GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,347
Erlang
31
GitHub Actions
22
Go
2,117
Maven
5,000+
npm
3,768
NuGet
680
pip
3,457
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
685 advisories
Filter by severity
PAX Technology PAX A920 Pro PayDroid 8.1suffers from a Race Condition vulnerability, which allows...
High
Unreviewed
CVE-2023-26980
was published
Apr 14, 2023
It was discovered freeradius up to and including version 3.0.19 does not correctly configure...
High
Unreviewed
CVE-2019-10143
was published
May 24, 2022
Sudo through 1.8.29 allows local users to escalate to root if they have write access to file...
High
Unreviewed
CVE-2019-18684
was published
May 24, 2022
A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through...
High
Unreviewed
CVE-2021-44733
was published
Dec 23, 2021
An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvbdev.c has a...
High
Unreviewed
CVE-2022-45884
was published
Nov 25, 2022
An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvb_net.c has a...
High
Unreviewed
CVE-2022-45886
was published
Nov 25, 2022
An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvb_frontend.c...
High
Unreviewed
CVE-2022-45885
was published
Nov 25, 2022
xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a...
High
Unreviewed
CVE-2014-5255
was published
May 17, 2022
The groonga-httpd package 6.1.5-1 for Debian sets the /var/log/groonga ownership to the groonga...
High
Unreviewed
CVE-2019-11675
was published
May 24, 2022
An improper authentication vulnerability can be exploited through a race condition that occurs in...
High
Unreviewed
CVE-2019-8978
was published
May 24, 2022
In Docker through 18.06.1-ce-rc2, the API endpoints behind the 'docker cp' command are vulnerable...
High
Unreviewed
CVE-2018-15664
was published
May 24, 2022
An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2. daemon/gvfsbackendadmin.c has race...
High
Unreviewed
CVE-2019-12448
was published
May 24, 2022
In callGenIDChangeListeners and related functions of SkPixelRef.cpp, there is a possible use...
High
Unreviewed
CVE-2019-2095
was published
May 24, 2022
modules/luksbootkeyfile/main.py in Calamares through 3.2.4 has a race condition between the time...
High
Unreviewed
CVE-2019-13178
was published
May 24, 2022
deepin-clone before 1.1.3 uses a predictable path /tmp/.deepin-clone/mount/<block-dev-basename>...
High
Unreviewed
CVE-2019-13226
was published
May 24, 2022
In arch/x86/lib/insn-eval.c in the Linux kernel before 5.1.9, there is a use-after-free for...
High
Unreviewed
CVE-2019-13233
was published
May 24, 2022
A race condition occurs while processing perf-event which can lead to a use after free condition...
High
Unreviewed
CVE-2019-2260
was published
May 24, 2022
A race condition in the one-pass compression functions of Zstandard prior to version 1.3.8 could...
High
Unreviewed
CVE-2019-11922
was published
May 24, 2022
Race condition while accessing DMA buffer in jpeg driver in Snapdragon Auto, Snapdragon...
High
Unreviewed
CVE-2019-2345
was published
May 24, 2022
In ActivityManagerService.attachApplication of ActivityManagerService, there is a possible race...
High
Unreviewed
CVE-2019-2121
was published
May 24, 2022
The Mozilla Maintenance Service does not guard against files being hardlinked to another file in...
High
Unreviewed
CVE-2019-11736
was published
May 24, 2022
Certain detection module of P30, P30 Pro, Honor V20 smartphone whith Versions earlier than ELLE...
High
Unreviewed
CVE-2019-5228
was published
May 24, 2022
log.c in Squid Analysis Report Generator (sarg) through 2.3.11 allows local privilege escalation....
High
Unreviewed
CVE-2019-18932
was published
May 24, 2022
A Race Condition exists in the Qualys Cloud Agent for Windows
platform in versions from 3.1.3.34...
High
Unreviewed
CVE-2023-28142
was published
Apr 18, 2023
ProTip!
Advisories are also available from the
GraphQL API