GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,266
Erlang
31
GitHub Actions
21
Go
2,035
Maven
5,000+
npm
3,732
NuGet
662
pip
3,413
Pub
12
RubyGems
891
Rust
865
Swift
36
Unreviewed advisories
All unreviewed
5,000+
325 advisories
Filter by severity
In ion, there is a possible escalation of privilege due to improper locking. This could lead to...
Moderate
Unreviewed
CVE-2023-20623
was published
Mar 7, 2023
A race condition was addressed with additional validation. This issue is fixed in macOS Ventura...
Moderate
Unreviewed
CVE-2023-23520
was published
Feb 27, 2023
Race Condition Enabling Link Following and Time-of-check Time-of-use (TOCTOU) Race Condition in remove_dir_all
Low
GHSA-mc8h-8q98-g5hr
was published
for
remove_dir_all
(Rust)
Feb 24, 2023
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. DMA attacks on the...
High
Unreviewed
CVE-2022-32469
was published
Feb 15, 2023
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. DMA attacks on the...
High
Unreviewed
CVE-2022-32475
was published
Feb 15, 2023
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. DMA attacks on the...
High
Unreviewed
CVE-2022-32477
was published
Feb 15, 2023
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. DMA attacks on the...
High
Unreviewed
CVE-2022-32478
was published
Feb 15, 2023
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. DMA attacks on the...
High
Unreviewed
CVE-2022-32474
was published
Feb 15, 2023
An issue was discovered in Insyde InsydeH2O with kernel 5.1 through 5.5. DMA attacks on the...
High
Unreviewed
CVE-2022-32954
was published
Feb 15, 2023
An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. The IhisiDxe...
High
Unreviewed
CVE-2022-32471
was published
Feb 15, 2023
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. DMA attacks on the...
High
Unreviewed
CVE-2022-32955
was published
Feb 15, 2023
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. DMA attacks on the...
High
Unreviewed
CVE-2022-32473
was published
Feb 15, 2023
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. DMA attacks on the...
High
Unreviewed
CVE-2022-32470
was published
Feb 15, 2023
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. DMA attacks on the...
High
Unreviewed
CVE-2022-32953
was published
Feb 15, 2023
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. DMA attacks on the...
High
Unreviewed
CVE-2022-32476
was published
Feb 15, 2023
A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP...
High
Unreviewed
CVE-2022-43779
was published
Feb 12, 2023
A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in the BIOS...
High
Unreviewed
CVE-2022-27538
was published
Feb 1, 2023
Dell BIOS contains a Time-of-check Time-of-use vulnerability. A local authenticated malicious...
High
Unreviewed
CVE-2022-34398
was published
Feb 1, 2023
A vulnerability exists in Trend Micro Maximum Security 2022 (17.7) wherein a low-privileged user...
High
Unreviewed
CVE-2022-48191
was published
Jan 20, 2023
An Allocation of Resources Without Limits or Throttling weakness in the memory management of the...
Moderate
Unreviewed
CVE-2023-22397
was published
Jan 13, 2023
TOCTOU in the ASP may allow a physical attacker to write beyond the buffer bounds, potentially...
Moderate
Unreviewed
CVE-2023-20523
was published
Jan 11, 2023
A TOCTOU (time-of-check to time-of-use) vulnerability exists where an attacker may use a...
Moderate
Unreviewed
CVE-2021-46795
was published
Jan 11, 2023
Memory corruption in Multimedia Framework due to unsafe access to the data members
High
Unreviewed
CVE-2022-25716
was published
Jan 9, 2023
In isp, there is a possible out of bounds write due to a race condition. This could lead to local...
Moderate
Unreviewed
CVE-2022-32638
was published
Jan 3, 2023
A Time-of-Check Time-of-Use bug existed in the Maintenance (Updater) Service that could be abused...
High
Unreviewed
CVE-2022-22753
was published
Dec 22, 2022
ProTip!
Advisories are also available from the
GraphQL API