GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,293
Erlang
31
GitHub Actions
21
Go
2,061
Maven
5,000+
npm
3,744
NuGet
668
pip
3,423
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
66 advisories
Filter by severity
Race condition in Tunnelblick 3.3beta20 and earlier allows local users to kill unintended...
Low
Unreviewed
CVE-2012-3487
was published
May 17, 2022
Multiple race conditions in Comodo Internet Security before 5.8.213334.2131 allow local users to...
Low
Unreviewed
CVE-2011-5118
was published
May 17, 2022
Multiple race conditions in Comodo Internet Security before 5.8.211697.2124 allow local users to...
Low
Unreviewed
CVE-2011-5119
was published
May 17, 2022
ProFTPD before 1.3.5rc1, when using the UserOwner directive, allows local users to modify the...
Low
Unreviewed
CVE-2012-6095
was published
May 17, 2022
Passcode Lock in Apple iOS before 7 does not properly manage the lock state, which allows...
Low
Unreviewed
CVE-2013-5147
was published
May 17, 2022
Multiple race conditions in the Phone app in Apple iOS before 7.0.3 allow physically proximate...
Low
Unreviewed
CVE-2013-5164
was published
May 17, 2022
Race condition in fs/ext4/extents.c in the Linux kernel before 3.4.16 allows local users to...
Low
Unreviewed
CVE-2012-4508
was published
May 17, 2022
Race condition in the post-installation script (mysql-server-5.5.postinst) for MySQL Server 5.5...
Low
Unreviewed
CVE-2013-2162
was published
May 17, 2022
Race condition in the virNetServerClientStartKeepAlive function in libvirt before 1.2.1 allows...
Low
Unreviewed
CVE-2014-1447
was published
May 17, 2022
Race condition in the handle_to_path function in fs/fhandle.c in the Linux kernel through 3.19.1...
Low
Unreviewed
CVE-2015-1420
was published
May 17, 2022
Race condition in the _get_masked_mode function in Lib/os.py in Python 3.2 through 3.5, when...
Low
Unreviewed
CVE-2014-2667
was published
May 17, 2022
Race condition in Passcode Lock in Apple iOS before 4 on the iPhone and iPod touch allows...
Low
Unreviewed
CVE-2010-1775
was published
May 17, 2022
The user_change_icon_file_authorized_cb function in /usr/libexec/accounts-daemon in...
Low
Unreviewed
CVE-2012-2737
was published
May 17, 2022
scripts/annotate-output.sh in devscripts before 2.12.2, as used in rpmdevtools before 8.3, allows...
Low
Unreviewed
CVE-2012-3500
was published
May 17, 2022
Race condition in the App Installation feature in Apple iOS before 8 allows local users to gain...
Low
Unreviewed
CVE-2014-4386
was published
May 17, 2022
Race condition in pxz 4.999.99 Beta 3 uses weak file permissions for the output file when...
Low
Unreviewed
CVE-2015-1200
was published
May 17, 2022
D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1.9.10 does not...
Low
Unreviewed
CVE-2015-0245
was published
May 14, 2022
Race condition in the Mozilla Maintenance Service in Mozilla Firefox before 40.0 and Firefox ESR...
Low
Unreviewed
CVE-2015-4481
was published
May 14, 2022
WebKit in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before 9.2.2 allows remote...
Low
Unreviewed
CVE-2016-4583
was published
May 14, 2022
Race condition in Luci 0.26.0 creates /var/lib/luci/etc/luci.ini with world-readable permissions...
Low
Unreviewed
CVE-2013-4481
was published
May 14, 2022
** DISPUTED ** The Linux kernel through 5.0.7, when CONFIG_IA32_AOUT is enabled and ia32_aout is...
Low
Unreviewed
CVE-2019-11191
was published
May 14, 2022
Race condition in Puppet Server 0.2.0 allows local users to obtain sensitive information by...
Low
Unreviewed
CVE-2014-7170
was published
May 14, 2022
Race condition in the tlv handler functionality in the snd_ctl_elem_user_tlv function in sound...
Low
Unreviewed
CVE-2014-4652
was published
May 13, 2022
The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to change...
Low
Unreviewed
CVE-2011-4029
was published
May 13, 2022
manifests/base.pp in the puppetlabs-cinder module, as used in PackStack, uses world-readable...
Low
Unreviewed
CVE-2013-0266
was published
May 5, 2022
ProTip!
Advisories are also available from the
GraphQL API