GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,273
Erlang
31
GitHub Actions
21
Go
2,055
Maven
5,000+
npm
3,739
NuGet
668
pip
3,417
Pub
12
RubyGems
891
Rust
872
Swift
36
Unreviewed advisories
All unreviewed
5,000+
417 advisories
Filter by severity
Remote code execution in Microsoft.WindowsDesktop.App.Ref
High
CVE-2020-0606
was published
for
Microsoft.WindowsDesktop.App.Ref
(NuGet)
May 24, 2022
Remote code execution in ASP.NET Core
High
CVE-2020-0603
was published
for
Microsoft.AspNetCore.All
(NuGet)
May 24, 2022
Denial of service in ASP.NET Core
High
CVE-2019-0981
was published
for
System.Private.Uri
(NuGet)
May 24, 2022
Denial of service in ASP.NET Core
High
CVE-2019-0982
was published
for
Microsoft.AspNetCore.SignalR.Protocols.MessagePack
(NuGet)
May 24, 2022
Denial of service in ASP.NET Core
High
CVE-2019-0980
was published
for
System.Private.Uri
(NuGet)
May 24, 2022
SiteServer CMS RCE via unsafe file upload
High
CVE-2019-11401
was published
for
sscms
(NuGet)
May 24, 2022
Umbraco CMS vulnerable to CSRF
High
CVE-2015-8813
was published
for
Umbraco.CMS
(NuGet)
May 17, 2022
Umbraco CMS vulnerable to CSRF
High
CVE-2015-8814
was published
for
Umbraco.CMS
(NuGet)
May 17, 2022
ChakraCore RCE Vulnerability
High
CVE-2017-0224
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
ChakraCore RCE Vulnerability
High
CVE-2017-0235
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
ChakraCore RCE Vulnerability
High
CVE-2017-0234
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
ChakraCore RCE Vulnerability
High
CVE-2017-0236
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
ChakraCore RCE Vulnerability
High
CVE-2017-11797
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
ChakraCore RCE Vulnerability
High
CVE-2017-11801
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
ChakraCore RCE Vulnerability
High
CVE-2017-11792
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
ChakraCore RCE Vulnerability
High
CVE-2017-11821
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
ChakraCore RCE Vulnerability
High
CVE-2017-11806
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
ChakraCore RCE Vulnerability
High
CVE-2017-11807
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
ChakraCore RCE Vulnerability
High
CVE-2017-11796
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
ChakraCore RCE Vulnerability
High
CVE-2017-11805
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
Chakra Core vulnerable to privilege escalation due to type confusion
High
CVE-2017-11862
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
Chakra Core vulnerable to privilege escalation when writing to JavaScript null scope objects
High
CVE-2017-11870
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
Chakra Core vulnerable to privilege escalation due to reading an invalid pointer
High
CVE-2017-11871
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
Improper Input Validation in Microsoft.NETCore.App
High
CVE-2017-8585
was published
for
Microsoft.NETCore.App
(NuGet)
May 17, 2022
ChakraCore vulnerable to remote code execution due to insufficient InlineCache check
High
CVE-2017-11910
was published
for
Microsoft.ChakraCore
(NuGet)
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API