GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,067
Erlang
29
GitHub Actions
19
Go
1,891
Maven
5,000+
npm
3,624
NuGet
638
pip
3,235
Pub
10
RubyGems
857
Rust
818
Swift
35
Unreviewed advisories
All unreviewed
5,000+
3,767 advisories
Filter by severity
Microsoft Office Remote Code Execution Vulnerability.
High
Unreviewed
CVE-2022-21840
was published
Jan 12, 2022
Microsoft Word Remote Code Execution Vulnerability.
High
Unreviewed
CVE-2022-21842
was published
Jan 12, 2022
Microsoft Exchange Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE...
Critical
Unreviewed
CVE-2022-21846
was published
Jan 12, 2022
Windows Security Center API Remote Code Execution Vulnerability.
High
Unreviewed
CVE-2022-21874
was published
Jan 12, 2022
Windows Geolocation Service Remote Code Execution Vulnerability.
High
Unreviewed
CVE-2022-21878
was published
Jan 12, 2022
HEVC Video Extensions Remote Code Execution Vulnerability.
High
Unreviewed
CVE-2022-21917
was published
Jan 12, 2022
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability. This CVE ID is unique...
Moderate
Unreviewed
CVE-2022-21928
was published
Jan 12, 2022
A vulnerability using PendingIntent in Reminder prior to version 12.2.05.0 in Android R(11.0) and...
High
Unreviewed
CVE-2022-22285
was published
Jan 11, 2022
A vulnerability using PendingIntent in Bixby Routines prior to version 3.1.21.8 in Android R(11.0...
High
Unreviewed
CVE-2022-22286
was published
Jan 11, 2022
HHEE system has a Code Injection vulnerability.Successful exploitation of this vulnerability may...
Critical
Unreviewed
CVE-2021-39979
was published
Jan 4, 2022
NETGEAR R6400 devices before 1.0.1.70 are affected by server-side injection.
Moderate
Unreviewed
CVE-2021-45655
was published
Dec 27, 2021
Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00...
High
Unreviewed
CVE-2021-45657
was published
Dec 27, 2021
Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00...
High
Unreviewed
CVE-2021-45656
was published
Dec 27, 2021
Certain NETGEAR devices are affected by server-side injection. This affects RBK40 before 2.5.1.16...
High
Unreviewed
CVE-2021-45661
was published
Dec 27, 2021
Certain NETGEAR devices are affected by server-side injection. This affects RBK40 before 2.5.1.16...
High
Unreviewed
CVE-2021-45660
was published
Dec 27, 2021
Certain NETGEAR devices are affected by server-side injection. This affects RBK40 before 2.5.1.16...
High
Unreviewed
CVE-2021-45659
was published
Dec 27, 2021
vault-cli contains possible RCE when reading user-defined data
High
CVE-2021-43837
was published
for
vault-cli
(pip)
Dec 16, 2021
Microsoft Defender for IoT Remote Code Execution Vulnerability This CVE ID is unique from CVE...
High
Unreviewed
CVE-2021-41365
was published
Dec 16, 2021
Microsoft SharePoint Server Remote Code Execution Vulnerability This CVE ID is unique from CVE...
High
Unreviewed
CVE-2021-42294
was published
Dec 16, 2021
Microsoft Defender for IoT Remote Code Execution Vulnerability This CVE ID is unique from CVE...
Critical
Unreviewed
CVE-2021-42310
was published
Dec 16, 2021
Microsoft SharePoint Server Remote Code Execution Vulnerability This CVE ID is unique from CVE...
High
Unreviewed
CVE-2021-42309
was published
Dec 16, 2021
Microsoft Defender for IoT Remote Code Execution Vulnerability This CVE ID is unique from CVE...
Critical
Unreviewed
CVE-2021-42311
was published
Dec 16, 2021
Microsoft Defender for IoT Remote Code Execution Vulnerability This CVE ID is unique from CVE...
High
Unreviewed
CVE-2021-42314
was published
Dec 16, 2021
Microsoft Defender for IoT Remote Code Execution Vulnerability This CVE ID is unique from CVE...
High
Unreviewed
CVE-2021-42315
was published
Dec 16, 2021
ProTip!
Advisories are also available from the
GraphQL API