GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,206
Erlang
31
GitHub Actions
19
Go
1,988
Maven
5,000+
npm
3,704
NuGet
661
pip
3,332
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
342 advisories
Filter by severity
CVE-2024-40619 IMPACT
A denial-of-service vulnerability exists in the affected products. The...
High
Unreviewed
CVE-2024-40619
was published
Aug 14, 2024
Improper conditions check in Linux kernel mode driver for some Intel(R) Ethernet Network...
Moderate
Unreviewed
CVE-2024-21806
was published
Aug 14, 2024
A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an...
Moderate
Unreviewed
CVE-2024-7006
was published
Aug 12, 2024
Jenkins Remoting library arbitrary file read vulnerability
Critical
CVE-2024-43044
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
Aug 7, 2024
Mattermost allows a remote actor to permanently delete local data by abusing dangerous error handling
Moderate
CVE-2024-39832
was published
for
github.com/mattermost/mattermost/server/v8
(Go)
Aug 1, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: dsa: mv88e6xxx: Correct...
High
Unreviewed
CVE-2024-42224
was published
Jul 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
scsi: mpi3mr: Sanitise...
High
Unreviewed
CVE-2024-42159
was published
Jul 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
f2fs: check validation of...
High
Unreviewed
CVE-2024-42160
was published
Jul 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
tcp_metrics: validate source...
Critical
Unreviewed
CVE-2024-42154
was published
Jul 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
gve: Account for stopped...
High
Unreviewed
CVE-2024-42162
was published
Jul 30, 2024
XMP Toolkit's `XmpFile::close` can trigger undefined behavior
Low
GHSA-66fw-43h8-f8p3
was published
for
xmp_toolkit
(Rust)
Jul 26, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding...
High
Unreviewed
CVE-2024-39540
was published
Jul 11, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the the IKE daemon (iked...
High
Unreviewed
CVE-2024-39545
was published
Jul 11, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding...
High
Unreviewed
CVE-2024-39535
was published
Jul 11, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the chassis management...
High
Unreviewed
CVE-2024-39530
was published
Jul 11, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding...
High
Unreviewed
CVE-2024-39519
was published
Jul 11, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the flow daemon (flowd)...
Moderate
Unreviewed
CVE-2024-39561
was published
Jul 11, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in packet processing of...
High
Unreviewed
CVE-2024-39559
was published
Jul 11, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Layer 2 Address...
High
Unreviewed
CVE-2024-39517
was published
Jul 11, 2024
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1)....
High
Unreviewed
CVE-2024-39869
was published
Jul 9, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding...
High
Unreviewed
CVE-2024-21586
was published
Jul 1, 2024
In the Linux kernel, the following vulnerability has been resolved:
tracing/probes: fix error...
Moderate
Unreviewed
CVE-2024-36481
was published
Jun 21, 2024
socket.io has an unhandled 'error' event
High
CVE-2024-38355
was published
for
socket.io
(npm)
Jun 19, 2024
LNbits improperly handles potential network and payment failures when using Eclair backend
High
CVE-2024-34694
was published
for
lnbits
(pip)
Jun 17, 2024
irodsServerMonPerf in iRODS before 4.3.2 attempts to proceed with use of a path even if it is not...
High
Unreviewed
CVE-2024-38461
was published
Jun 16, 2024
ProTip!
Advisories are also available from the
GraphQL API