GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,298
Erlang
31
GitHub Actions
21
Go
2,063
Maven
5,000+
npm
3,744
NuGet
668
pip
3,424
Pub
12
RubyGems
892
Rust
876
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
170 advisories
Filter by severity
liveMedia/FramedSource.cpp in Live555 through 1.08 allows an assertion failure and application...
Moderate
Unreviewed
CVE-2021-39283
was published
May 24, 2022
An issue was discovered in PJSIP in Asterisk before 16.19.1 and before 18.5.1. To exploit, a re...
Moderate
Unreviewed
CVE-2021-31878
was published
May 24, 2022
Mikrotik RouterOs before 6.47 (stable tree) suffers from an assertion failure vulnerability in...
Moderate
Unreviewed
CVE-2020-20262
was published
May 24, 2022
Mikrotik RouterOs 6.44.5 (long-term tree) suffers from an assertion failure vulnerability in the ...
Moderate
Unreviewed
CVE-2020-20211
was published
May 24, 2022
Mikrotik RouterOs before 6.47 (stable tree) suffers from an assertion failure vulnerability in...
Moderate
Unreviewed
CVE-2020-20225
was published
May 24, 2022
An assertion abort was found in upx MemBuffer::alloc() in mem.cpp, in version UPX 4.0.0. The flow...
Moderate
Unreviewed
CVE-2021-30501
was published
May 24, 2022
A flaw was found in the Red Hat Ceph Storage RGW in versions before 14.2.21. When processing a...
Moderate
Unreviewed
CVE-2021-3531
was published
May 24, 2022
Mikrotik RouterOs 6.44.6 (long-term tree) suffers from an assertion failure vulnerability in the...
Moderate
Unreviewed
CVE-2020-20214
was published
May 24, 2022
Mikrotik RouterOs before 6.47 (stable tree) suffers from a memory corruption vulnerability in the...
Moderate
Unreviewed
CVE-2020-20265
was published
May 24, 2022
In BIND 9.8.5 -> 9.8.8, 9.9.3 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11...
Moderate
Unreviewed
CVE-2021-25214
was published
May 24, 2022
A denial of service vulnerability was discovered in nbdkit. A client issuing a certain sequence...
Moderate
Unreviewed
CVE-2019-14851
was published
May 24, 2022
A flaw was found in libnbd 1.7.3. An assertion failure in nbd_unlocked_opt_go in ilb/opt.c may...
Moderate
Unreviewed
CVE-2021-20286
was published
May 24, 2022
Context-specific code was included in a shared jump table; resulting in assertions being...
Moderate
Unreviewed
CVE-2021-23970
was published
May 24, 2022
A reachable assertion issue was found in the USB EHCI emulation code of QEMU. It could occur...
Moderate
Unreviewed
CVE-2020-25723
was published
May 24, 2022
eth_get_gso_type in net/eth.c in QEMU 4.2.1 allows guest OS users to trigger an assertion failure...
Moderate
Unreviewed
CVE-2020-27617
was published
May 24, 2022
Receipt of a specifically malformed NDP packet sent from the local area network (LAN) to a device...
Moderate
Unreviewed
CVE-2020-1681
was published
May 24, 2022
An exploitable denial of service vulnerability exists in the atftpd daemon functionality of atftp...
Moderate
Unreviewed
CVE-2020-6097
was published
May 24, 2022
In BIND 9.14.0 -> 9.16.5, 9.17.0 -> 9.17.3, If a server is configured with both QNAME...
Moderate
Unreviewed
CVE-2020-8621
was published
May 24, 2022
In BIND 9.10.0 -> 9.11.21, 9.12.0 -> 9.16.5, 9.17.0 -> 9.17.3, also affects 9.10.5-S1 -> 9.11.21...
Moderate
Unreviewed
CVE-2020-8623
was published
May 24, 2022
In BIND 9.15.6 -> 9.16.5, 9.17.0 -> 9.17.3, An attacker who can establish a TCP connection with...
Moderate
Unreviewed
CVE-2020-8620
was published
May 24, 2022
In BIND 9.0.0 -> 9.11.21, 9.12.0 -> 9.16.5, 9.17.0 -> 9.17.3, also affects 9.9.3-S1 -> 9.11.21-S1...
Moderate
Unreviewed
CVE-2020-8622
was published
May 24, 2022
In QEMU through 5.0.0, an assertion failure can occur in the network packet processing. This...
Moderate
Unreviewed
CVE-2020-16092
was published
May 24, 2022
An attacker who is permitted to send zone data to a server via zone transfer can exploit this to...
Moderate
Unreviewed
CVE-2020-8618
was published
May 24, 2022
An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions...
Moderate
Unreviewed
CVE-2020-10761
was published
May 24, 2022
Using a specially-crafted message, an attacker may potentially cause a BIND server to reach an...
Moderate
Unreviewed
CVE-2020-8617
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API