GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,077
Erlang
29
GitHub Actions
19
Go
1,903
Maven
5,000+
npm
3,634
NuGet
638
pip
3,250
Pub
10
RubyGems
867
Rust
819
Swift
35
Unreviewed advisories
All unreviewed
5,000+
85 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
usb: xhci: Check for xhci-...
Moderate
Unreviewed
CVE-2024-45027
was published
Sep 11, 2024
In the Linux kernel, the following vulnerability has been resolved:
drm/i915/gt: Cleanup partial...
Moderate
Unreviewed
CVE-2022-48893
was published
Aug 21, 2024
Exposure of Resource to Wrong Sphere and Insecure Temporary File in Ansible
Moderate
CVE-2020-10685
was published
for
ansible
(pip)
Apr 7, 2021
Vulnerability of resources not being closed or released in the keystore module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-45445
was published
Sep 4, 2024
Incomplete cleanup when performing redactions in Conduit, allowing an attacker to check whether...
Low
Unreviewed
CVE-2024-6300
was published
Jun 25, 2024
Denial of Service via incomplete cleanup vulnerability in Apache Tomcat
Moderate
CVE-2024-23672
was published
for
org.apache.tomcat.embed:tomcat-embed-websocket
(Maven)
Mar 13, 2024
A flaw was found in the grub2-set-bootflag utility of grub2. After the fix of CVE-2019-14865,...
Low
Unreviewed
CVE-2024-1048
was published
Feb 6, 2024
Incomplete cleanup in Intel(R) Power Gadget software for macOS all versions may allow an...
Moderate
Unreviewed
CVE-2023-45846
was published
May 16, 2024
Apache Tomcat Incomplete Cleanup vulnerability
Moderate
CVE-2023-42795
was published
for
org.apache.tomcat.embed:tomcat-embed-core
(Maven)
Oct 10, 2023
Flarum mishandles invalidation of user email tokens
High
CVE-2019-11514
was published
for
flarum/flarum
(Composer)
May 24, 2022
Little Snitch versions 4.4.0 fixes a vulnerability in a privileged helper tool. However, the...
Moderate
Unreviewed
CVE-2019-13014
was published
May 24, 2022
A double-free flaw was found in the Linux kernel’s NTFS3 subsystem in how a user triggers remount...
High
Unreviewed
CVE-2022-3238
was published
Jul 6, 2023
Improper deletion of resource in the user management feature in Devolutions Server 2023.1.8 and...
Low
Unreviewed
CVE-2023-2400
was published
Jun 20, 2023
Incomplete cleanup in the Intel(R) IPP Cryptography software before version 2021.6 may allow a...
Moderate
Unreviewed
CVE-2022-40974
was published
May 10, 2023
The Sentinel LDK Run-Time Environment installer (Versions 7.6 and prior) adds a firewall rule...
Critical
Unreviewed
CVE-2021-32928
was published
May 24, 2022
Pydio Cells before 1.5.0 does incomplete cleanup of a user's data upon deletion. This allows a...
Moderate
Unreviewed
CVE-2019-12902
was published
May 24, 2022
** UNSUPPORTED WHEN ASSIGNED ** In OSS-RC systems of the release 18B and older during data...
Moderate
Unreviewed
CVE-2021-32571
was published
May 24, 2022
A vulnerability in the multicast DNS (mDNS) gateway feature of Cisco IOS XE Software for Wireless...
High
Unreviewed
CVE-2024-20303
was published
Mar 27, 2024
An unauthenticated remote attacker can gain service level privileges through an incomplete...
Moderate
Unreviewed
CVE-2024-26005
was published
Mar 12, 2024
PGP 6.x and 7.x does not clear Windows alternate data streams that are attached to files on NTFS...
Moderate
Unreviewed
CVE-2002-2069
was published
Apr 30, 2022
An interaction between PGP 7.0.3 with the "wipe deleted files" option, when used on Windows...
Low
Unreviewed
CVE-2002-0788
was published
Apr 30, 2022
ICQwebmail client for ICQ 2000A creates a world readable temporary file during login and does not...
Low
Unreviewed
CVE-2000-0552
was published
Apr 30, 2022
Eraser 5.3 does not clear Windows alternate data streams that are attached to files on NTFS file...
Moderate
Unreviewed
CVE-2002-2068
was published
Apr 30, 2022
Oracle Formsbuilder 9.0.4 stores database usernames and passwords in a temporary file, which is...
Low
Unreviewed
CVE-2005-2293
was published
May 1, 2022
SecureClean 3 build 2.0 does not clear Windows alternate data streams that are attached to files...
Moderate
Unreviewed
CVE-2002-2070
was published
Apr 30, 2022
ProTip!
Advisories are also available from the
GraphQL API