GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,690
Maven
5,000+
npm
4,320
NuGet
760
pip
4,096
Pub
12
RubyGems
958
Rust
1,063
Swift
45
Unreviewed advisories
All unreviewed
5,000+
5,659 advisories
Filter by severity
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2021-34931
was published
Jan 14, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2021-34933
was published
Jan 14, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2021-34936
was published
Jan 14, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2021-34937
was published
Jan 14, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2021-34939
was published
Jan 14, 2022
A Segmentation fault casued by heap use after free vulnerability exists in Gpac through 1.0.1 via...
Moderate
Unreviewed
CVE-2021-40566
was published
Jan 13, 2022
An issue was discovered in libde265 v1.0.8.There is a Heap-use-after-free in intrapred.h when...
Moderate
Unreviewed
CVE-2021-36408
was published
Jan 12, 2022
An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in...
Moderate
Unreviewed
CVE-2021-46141
was published
Jan 7, 2022
An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in...
Moderate
Unreviewed
CVE-2021-46142
was published
Jan 7, 2022
Use After Free in libpulse-binding
High
CVE-2018-25027
was published
for
libpulse-binding
(Rust)
Jan 6, 2022
Use After Free in libpulse-binding
High
CVE-2018-25028
was published
for
libpulse-binding
(Rust)
Jan 6, 2022
Use After Free in tremor-script
Critical
CVE-2021-45701
was published
for
tremor-script
(Rust)
Jan 6, 2022
Use After Free in tremor-script
High
CVE-2021-45702
was published
for
tremor-script
(Rust)
Jan 6, 2022
Use after free in tcpslice triggers AddressSanitizer, no other confirmed impact.
Moderate
Unreviewed
CVE-2021-41043
was published
Jan 6, 2022
Possible use after free when process shell memory is freed using IOCTL call and process...
High
Unreviewed
CVE-2021-30337
was published
Jan 4, 2022
Ghostscript GhostPDL 9.50 through 9.53.3 has a use-after-free in sampled_data_sample (called from...
Moderate
Unreviewed
CVE-2021-45944
was published
Jan 2, 2022
ProTip!
Advisories are also available from the
GraphQL API