GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,760
NuGet
678
pip
3,446
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
1,509 advisories
Filter by severity
Use after free condition can occur in wired connectivity due to a race condition while creating...
Moderate
Unreviewed
CVE-2021-30313
was published
Jan 14, 2022
All versions of Samba prior to 4.13.16 are vulnerable to a malicious client using an SMB1 or NFS...
Low
Unreviewed
CVE-2021-43566
was published
Jan 12, 2022
Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-21879.
High
Unreviewed
CVE-2022-21881
was published
Jan 12, 2022
Windows DWM Core Library Elevation of Privilege Vulnerability. This CVE ID is unique from CVE...
High
Unreviewed
CVE-2022-21896
was published
Jan 12, 2022
Out-of-bounds Write and Race Condition in metrics-util
High
CVE-2021-45704
was published
for
metrics-util
(Rust)
Jan 6, 2022
In vow driver, there is a possible memory corruption due to a race condition. This could lead to...
Moderate
Unreviewed
CVE-2022-20013
was published
Jan 5, 2022
Location-related APIs exists a Race Condition vulnerability.Successful exploitation of this...
High
Unreviewed
CVE-2021-37134
was published
Jan 4, 2022
A race condition was addressed with additional validation. This issue is fixed in tvOS 11.2, iOS...
High
Unreviewed
CVE-2017-13905
was published
Dec 24, 2021
A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through...
High
Unreviewed
CVE-2021-44733
was published
Dec 23, 2021
An issue in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via false member down event messages.
Moderate
CVE-2020-35216
was published
for
io.atomix:atomix
(Maven)
Dec 17, 2021
In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition....
Moderate
Unreviewed
CVE-2021-0920
was published
Dec 16, 2021
In pf_write_buf of FuseDaemon.cpp, there is possible memory corruption due to a race condition....
High
Unreviewed
CVE-2021-0955
was published
Dec 16, 2021
In synchronous_process_io_entries of lwis_ioctl.c, there is a possible out of bounds write due to...
Moderate
Unreviewed
CVE-2021-39642
was published
Dec 16, 2021
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this...
High
Unreviewed
CVE-2021-37069
was published
Dec 9, 2021
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this...
High
Unreviewed
CVE-2021-37074
was published
Dec 9, 2021
Multiple vulnerabilities in the authentication mechanism of confd in FortiWeb versions 6.4.1, 6.4...
Critical
Unreviewed
CVE-2021-41025
was published
Dec 9, 2021
By misusing a race in our notification code, an attacker could have forcefully hidden the...
Moderate
Unreviewed
CVE-2021-43538
was published
Dec 9, 2021
Insecure creation of temporary directories in tmate-ssh-server 2.3.0 allows a local attacker to...
High
Unreviewed
CVE-2021-44513
was published
Dec 8, 2021
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this...
Moderate
Unreviewed
CVE-2021-37073
was published
Dec 8, 2021
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this...
Moderate
Unreviewed
CVE-2021-37082
was published
Dec 8, 2021
There is a Encoding timing vulnerability in Huawei Smartphone.Successful exploitation of this...
High
Unreviewed
CVE-2021-37085
was published
Dec 8, 2021
Improper Synchronization and Race Condition in vm-memory
High
CVE-2020-13759
was published
for
vm-memory
(Rust)
Aug 25, 2021
Observable Discrepancy in libsecp256k1-rs
Moderate
CVE-2019-20399
was published
for
libsecp256k1-rs
(Rust)
Aug 25, 2021
crossbeam-deque Data Race before v0.7.4 and v0.8.1
Critical
CVE-2021-32810
was published
for
crossbeam-deque
(Rust)
Aug 25, 2021
ProTip!
Advisories are also available from the
GraphQL API