GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,248
Erlang
31
GitHub Actions
21
Go
2,012
Maven
5,000+
npm
3,720
NuGet
662
pip
3,393
Pub
11
RubyGems
889
Rust
852
Swift
36
Unreviewed advisories
All unreviewed
5,000+
323 advisories
Filter by severity
Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Ricard Torres Thumbs Rating...
Moderate
Unreviewed
CVE-2022-45809
was published
Dec 19, 2023
A race condition in GitHub Enterprise Server allows an outside collaborator to be added while a...
Moderate
Unreviewed
CVE-2023-6803
was published
Dec 21, 2023
A race condition in GitHub Enterprise Server was identified that could allow an attacker...
Moderate
Unreviewed
CVE-2023-46649
was published
Dec 21, 2023
A race condition in GitHub Enterprise Server allowed an existing admin to maintain permissions on...
Low
Unreviewed
CVE-2023-6690
was published
Dec 21, 2023
A TOCTOU race condition in Samsung Mobile Processor Exynos 9820, Exynos 980, Exynos 1080, Exynos...
Moderate
Unreviewed
CVE-2023-42483
was published
Dec 13, 2023
TOCTOU race-condition vulnerability in Insyde InsydeH2O with Kernel 5.2 before version 05.27.29,...
Moderate
Unreviewed
CVE-2022-24351
was published
Dec 16, 2023
Buildkite Elastic CI for AWS time-of-check-time-of-use race condition vulnerability
High
CVE-2023-43741
was published
for
github.com/buildkite/elastic-ci-stack-for-aws/v6
(Go)
Dec 22, 2023
An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly...
High
Unreviewed
CVE-2020-1337
was published
May 24, 2022
External service lookups for a number of protocols were vulnerable to a time-of-check/time-of-use...
Low
Unreviewed
CVE-2023-26438
was published
Aug 2, 2023
The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of...
High
Unreviewed
CVE-2023-2007
was published
Apr 25, 2023
A vulnerability in Cisco IOS XR Software image verification checks could allow an authenticated,...
High
Unreviewed
CVE-2023-20135
was published
Sep 13, 2023
Time-of-check Time-of-use (TOCTOU) Race Condition in league/flysystem
Critical
CVE-2021-32708
was published
for
league/flysystem
(Composer)
Jun 29, 2021
A multi-threaded race condition in the Windows RPC DCOM functionality with the MS03-039 patch...
Moderate
Unreviewed
CVE-2003-0813
was published
Apr 29, 2022
Microsoft Internet Explorer 7 through 11 allows remote attackers to gain privileges via a crafted...
Moderate
Unreviewed
CVE-2015-1743
was published
May 14, 2022
Memory corruption in Trusted Execution Environment while deinitializing an object used for...
High
Unreviewed
CVE-2023-33046
was published
Feb 6, 2024
A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in telemetry processing of...
Moderate
Unreviewed
CVE-2023-44188
was published
Oct 11, 2023
TOCTOU in the ASP Bootloader may allow an attacker with physical access to tamper with SPI ROM...
Moderate
Unreviewed
CVE-2023-20521
was published
Nov 14, 2023
The memory_limit functionality in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, under certain...
Moderate
Unreviewed
CVE-2004-0594
was published
Apr 29, 2022
Razer Synapse through 3.7.1209.121307 allows privilege escalation due to an unsafe installation...
High
Unreviewed
CVE-2022-47631
was published
Sep 15, 2023
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.1, watchOS...
High
Unreviewed
CVE-2022-48618
was published
Jan 9, 2024
Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain a TOCTOU race condition...
Moderate
Unreviewed
CVE-2024-0163
was published
Mar 13, 2024
Race condition in the installer for Zoom Rooms Client for Windows before version 5.17.5 may allow...
Moderate
Unreviewed
CVE-2024-24692
was published
Mar 13, 2024
Race condition in BIOS firmware for some Intel(R) Processors may allow a privileged user to...
High
Unreviewed
CVE-2023-32282
was published
Mar 14, 2024
Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in openEuler iSulad on Linux...
High
Unreviewed
CVE-2021-33632
was published
Mar 25, 2024
libuser 0.56 and 0.57 has a TOCTOU (time-of-check time-of-use) race condition when copying and...
Moderate
Unreviewed
CVE-2012-5630
was published
Apr 23, 2022
ProTip!
Advisories are also available from the
GraphQL API