GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
73
GitHub Actions
53
Go
4,029
Maven
5,000+
npm
5,000+
NuGet
976
pip
5,000+
Pub
13
RubyGems
1,070
Rust
1,404
Swift
61
Unreviewed advisories
All unreviewed
5,000+
31,068 advisories
Filter by severity
Sandbox Breakout / Arbitrary Code Execution in @zhaoyao91/eval-in-vm
Critical
GHSA-jp99-5h8w-gmxc
was published
for
@zhaoyao91/eval-in-vm
(npm)
Sep 4, 2020
Malicious Package in babel-loqder
Critical
GHSA-9cph-cqqh-36pw
was published
for
babel-loqder
(npm)
Sep 4, 2020
Malicious Package in bitcroe-lib
Critical
GHSA-4m3p-x2hp-2pgx
was published
for
bitcroe-lib
(npm)
Sep 4, 2020
Malicious Package in bitcionjslib
Critical
GHSA-p4mf-4qvh-w8g5
was published
for
bitcionjslib
(npm)
Sep 4, 2020
Sandbox Breakout / Arbitrary Code Execution in pitboss-ng
Critical
GHSA-3gpc-w23c-w59w
was published
for
pitboss-ng
(npm)
Sep 4, 2020
Malicious Package in bitcionjs
Critical
GHSA-qmgf-fp85-55gr
was published
for
bitcionjs
(npm)
Sep 4, 2020
Malicious Package in conistring
Critical
GHSA-cfc5-x58f-869w
was published
for
conistring
(npm)
Sep 3, 2020
Command Injection in gnuplot
Critical
GHSA-cfwc-xjfp-44jg
was published
for
gnuplot
(npm)
Sep 4, 2020
Malicious Package in coinstrng
Critical
GHSA-hj5w-xgw9-w4rj
was published
for
coinstrng
(npm)
Sep 3, 2020
Malicious Package in coinstirng
Critical
GHSA-ff6g-gm92-rf32
was published
for
coinstirng
(npm)
Sep 3, 2020
Command Injection in npm-git-publish
Critical
GHSA-49mg-94fc-2fx6
was published
for
npm-git-publish
(npm)
Sep 4, 2020
Malicious Package in wallet-address-vaildator
Critical
GHSA-m6q2-9pfm-2wvr
was published
for
wallet-address-vaildator
(npm)
Sep 3, 2020
Malicious Package in ripmed160
Critical
GHSA-gmjp-776j-2394
was published
for
ripmed160
(npm)
Sep 3, 2020
Malicious Package in fs-extar
Critical
GHSA-435c-qcpm-wjw5
was published
for
fs-extar
(npm)
Sep 3, 2020
Malicious Package in angular-bmap
Critical
GHSA-w8hg-mxvh-9h57
was published
for
angular-bmap
(npm)
Sep 1, 2020
ProTip!
Advisories are also available from the
GraphQL API