GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,679
Erlang
34
GitHub Actions
26
Go
2,268
Maven
5,000+
npm
3,923
NuGet
705
pip
3,686
Pub
12
RubyGems
916
Rust
944
Swift
38
Unreviewed advisories
All unreviewed
5,000+
118 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
LoongArch: Update...
Moderate
Unreviewed
CVE-2024-26841
was published
Apr 17, 2024
In the Linux kernel, the following vulnerability has been resolved:
mm: zswap: fix missing folio...
Moderate
Unreviewed
CVE-2024-26832
was published
Apr 17, 2024
In the Linux kernel, the following vulnerability has been resolved:
nfc: nci: free...
Moderate
Unreviewed
CVE-2024-26825
was published
Apr 17, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: veth: clear GRO when...
Moderate
Unreviewed
CVE-2024-26803
was published
Apr 4, 2024
In the Linux kernel, the following vulnerability has been resolved:
md: Don't register...
Moderate
Unreviewed
CVE-2024-26756
was published
Apr 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
xen/events: close evtchn...
Moderate
Unreviewed
CVE-2024-26687
was published
Apr 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
drm/msm/dpu: check for valid...
Moderate
Unreviewed
CVE-2024-26667
was published
Apr 2, 2024
A vulnerability in the multicast DNS (mDNS) gateway feature of Cisco IOS XE Software for Wireless...
High
Unreviewed
CVE-2024-20303
was published
Mar 27, 2024
In the Linux kernel, the following vulnerability has been resolved:
scsi: target: core: Avoid...
Moderate
Unreviewed
CVE-2021-47178
was published
Mar 25, 2024
In the Linux kernel, the following vulnerability has been resolved:
net/smc: remove device from...
Moderate
Unreviewed
CVE-2021-47143
was published
Mar 25, 2024
In the Linux kernel, the following vulnerability has been resolved:
PCI: switchtec: Fix...
Moderate
Unreviewed
CVE-2023-52617
was published
Mar 18, 2024
In the Linux kernel, the following vulnerability has been resolved:
x86/kvm: Disable kvmclock on...
High
Unreviewed
CVE-2021-47110
was published
Mar 15, 2024
Improper cleanup in temporary file handling component in Devolutions Remote Desktop Manager 2024...
Moderate
Unreviewed
CVE-2024-2403
was published
Mar 13, 2024
Denial of Service via incomplete cleanup vulnerability in Apache Tomcat
Moderate
CVE-2024-23672
was published
for
org.apache.tomcat.embed:tomcat-embed-websocket
(Maven)
Mar 13, 2024
An unauthenticated remote attacker can gain service level privileges through an incomplete...
Moderate
Unreviewed
CVE-2024-26005
was published
Mar 12, 2024
A flaw was found in the grub2-set-bootflag utility of grub2. After the fix of CVE-2019-14865,...
Low
Unreviewed
CVE-2024-1048
was published
Feb 6, 2024
An Incomplete Cleanup vulnerability in Nonstop active routing (NSR) component of Juniper...
Moderate
Unreviewed
CVE-2024-21617
was published
Jan 12, 2024
Apache Struts Improper Control of Dynamically-Managed Code Resources vulnerability
High
CVE-2023-41835
was published
for
org.apache.struts:struts2-core
(Maven)
Dec 5, 2023
Incomplete cleanup for some Intel Unison software may allow an authenticated user to potentially...
Low
Unreviewed
CVE-2022-43477
was published
Nov 14, 2023
Incomplete cleanup for some Intel Unison software may allow a privileged user to potentially...
Low
Unreviewed
CVE-2022-46298
was published
Nov 14, 2023
Improper clearing of sensitive data in the ASP Bootloader may expose secret keys to a privileged...
Moderate
Unreviewed
CVE-2021-46766
was published
Nov 14, 2023
Apache Tomcat Incomplete Cleanup vulnerability
Moderate
CVE-2023-42794
was published
for
org.apache.tomcat:tomcat-coyote
(Maven)
Oct 10, 2023
Apache Tomcat Incomplete Cleanup vulnerability
Moderate
CVE-2023-42795
was published
for
org.apache.tomcat.embed:tomcat-embed-core
(Maven)
Oct 10, 2023
A double-free flaw was found in the Linux kernel’s NTFS3 subsystem in how a user triggers remount...
High
Unreviewed
CVE-2022-3238
was published
Jul 6, 2023
Upgrading doesn't prevent exploiting vulnerable XWiki documents
Critical
CVE-2023-36468
was published
for
org.xwiki.platform:xwiki-platform-oldcore
(Maven)
Jun 30, 2023
ProTip!
Advisories are also available from the
GraphQL API