GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
77 advisories
Filter by severity
Race condition in the Mozilla Maintenance Service in Mozilla Firefox before 40.0 and Firefox ESR...
Low
Unreviewed
CVE-2015-4481
was published
May 14, 2022
WebKit in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before 9.2.2 allows remote...
Low
Unreviewed
CVE-2016-4583
was published
May 14, 2022
Race condition in Luci 0.26.0 creates /var/lib/luci/etc/luci.ini with world-readable permissions...
Low
Unreviewed
CVE-2013-4481
was published
May 14, 2022
** DISPUTED ** The Linux kernel through 5.0.7, when CONFIG_IA32_AOUT is enabled and ia32_aout is...
Low
Unreviewed
CVE-2019-11191
was published
May 14, 2022
Race condition in Puppet Server 0.2.0 allows local users to obtain sensitive information by...
Low
Unreviewed
CVE-2014-7170
was published
May 14, 2022
Race condition in the tlv handler functionality in the snd_ctl_elem_user_tlv function in sound...
Low
Unreviewed
CVE-2014-4652
was published
May 13, 2022
The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to change...
Low
Unreviewed
CVE-2011-4029
was published
May 13, 2022
manifests/base.pp in the puppetlabs-cinder module, as used in PackStack, uses world-readable...
Low
Unreviewed
CVE-2013-0266
was published
May 5, 2022
Race condition in the find_keyring_by_name function in security/keys/keyring.c in the Linux...
Low
Unreviewed
CVE-2010-1437
was published
May 2, 2022
Race condition in GNU nano before 2.2.4, when run by root to edit a file that is not owned by...
Low
Unreviewed
CVE-2010-1161
was published
May 2, 2022
Chip Salzenberg Deliver does not properly associate a lockfile with the user who created the file...
Low
Unreviewed
CVE-2010-1123
was published
May 2, 2022
Race condition in the Sun Lightweight Availability Collection Tool 3.0 on Solaris 7 through 10...
Low
Unreviewed
CVE-2009-2314
was published
May 2, 2022
The inode double locking code in fs/ocfs2/file.c in the Linux kernel 2.6.30 before 2.6.30-rc3, 2...
Low
Unreviewed
CVE-2009-1961
was published
May 2, 2022
Race condition in the Reset Safari implementation in Apple Safari before 4.0 on Windows might...
Low
Unreviewed
CVE-2009-1707
was published
May 2, 2022
Race condition in GNU screen 4.0.3 allows local users to create or overwrite arbitrary files via...
Low
Unreviewed
CVE-2009-1215
was published
May 2, 2022
Race condition in AFP Server in Apple Mac OS X 10.5.6 allows local users to cause a denial of...
Low
Unreviewed
CVE-2009-0142
was published
May 2, 2022
Race condition in the Passcode Lock feature in Apple iPhone OS 2.0 through 2.1 and iPhone OS for...
Low
Unreviewed
CVE-2008-4229
was published
May 2, 2022
Race condition in daemon/slave.c in gdm before 2.14.1 allows local users to gain privileges via a...
Low
Unreviewed
CVE-2006-1057
was published
May 1, 2022
Akfingerd 0.5 and earlier versions allow local users to cause a denial of service (crash) via a ...
Low
Unreviewed
CVE-2002-2244
was published
Apr 30, 2022
Race condition in the SSL ISAPI filter in IIS and other servers may leak information in plaintext.
Low
Unreviewed
CVE-1999-0861
was published
Apr 30, 2022
A race condition in Opera web browser 7.53 Build 3850 causes Opera to fill in the address bar...
Low
Unreviewed
CVE-2004-2491
was published
Apr 29, 2022
Multiple race conditions in the (1) mount.cifs and (2) umount.cifs programs in Samba 3.6 allow...
Low
Unreviewed
CVE-2011-3585
was published
Apr 22, 2022
The AnyComment WordPress plugin before 0.2.18 is affected by a race condition when liking...
Low
Unreviewed
CVE-2022-0279
was published
Feb 22, 2022
gobase subject to Incorrect routing of some HTTP requests when using httpauth due to a race condition
Low
GHSA-h2x7-2ff6-v32p
was published
for
github.com/ntbosscher/gobase
(Go)
Feb 11, 2022
Exposure of Resource to Wrong Sphere and Insecure Temporary File in Ansible
Low
CVE-2020-10744
was published
for
ansible
(pip)
Feb 9, 2022
ProTip!
Advisories are also available from the
GraphQL API