GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,732
Erlang
35
GitHub Actions
29
Go
2,310
Maven
5,000+
npm
3,949
NuGet
711
pip
3,728
Pub
12
RubyGems
920
Rust
964
Swift
38
Unreviewed advisories
All unreviewed
5,000+
216 advisories
Filter by severity
kernel/module.c in the Linux kernel before 5.12.14 mishandles Signature Verification, aka CID...
High
Unreviewed
CVE-2021-35039
was published
May 24, 2022
Regression in JWT Signature Validation
High
CVE-2020-15240
was published
for
omniauth-auth0
(RubyGems)
Nov 3, 2020
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow...
High
Unreviewed
CVE-2019-1811
was published
May 24, 2022
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow...
High
Unreviewed
CVE-2019-1812
was published
May 24, 2022
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow...
High
Unreviewed
CVE-2019-1813
was published
May 24, 2022
Signature verification vulnerability in Stark Bank ecdsa libraries
High
GHSA-9wx7-jrvc-28mm
was published
for
com.starkbank:ecdsa-java
(Maven)
Nov 8, 2021
In the Android operating system, there is a possible way to replace a boot partition due to...
High
Unreviewed
CVE-2023-20940
was published
Feb 28, 2023
Dell Command | Update, Dell Update, and Alienware Update versions prior to 4.7 contain a improper...
High
Unreviewed
CVE-2022-34459
was published
Feb 1, 2023
Improper Verification of Cryptographic Signature in golang.org/x/crypto
High
CVE-2020-9283
was published
for
golang.org/x/crypto
(Go)
May 18, 2021
CRYSTALS-DILITHIUM (in Post-Quantum Cryptography Selected Algorithms 2022) in PQClean d03da30 may...
High
Unreviewed
CVE-2023-24025
was published
Jan 20, 2023
redhat-upgrade-tool: Does not check GPG signatures when upgrading versions
High
Unreviewed
CVE-2014-3585
was published
May 17, 2022
Improper verification of signature threshold in tough
High
CVE-2020-15093
was published
for
tough
(Rust)
Aug 25, 2021
A CWE-347: Improper Verification of Cryptographic Signature vulnerability exists that allows...
High
Unreviewed
CVE-2022-41666
was published
Nov 4, 2022
Local privilege escalation due to unrestricted loading of unsigned libraries. The following...
High
Unreviewed
CVE-2022-24115
was published
Feb 11, 2022
A vulnerability in Cisco NX-OS System Software could allow an authenticated, local attacker to...
High
Unreviewed
CVE-2017-12331
was published
May 17, 2022
A vulnerability has been identified in SIMATIC S7-400 (incl. F) V6 and below (All versions),...
High
Unreviewed
CVE-2018-16557
was published
May 13, 2022
Dendrite signature checks not applied to some retrieved missing events
High
CVE-2022-39200
was published
for
github.com/matrix-org/dendrite
(Go)
Sep 15, 2022
Improper Verification of Cryptographic Signature in Apache Netbeans
High
CVE-2019-17561
was published
for
org.codehaus.mevenide:netbeans
(Maven)
May 24, 2022
Hyperledger Iroha versions v1.0_beta and v1.0.0_beta-1 are vulnerable to transaction and block...
High
Unreviewed
CVE-2018-3756
was published
May 14, 2022
In verify_signed_hash() in lib/liboswkeys/signatures.c in Openswan before 2.6.50.1, the RSA...
High
Unreviewed
CVE-2018-15836
was published
May 14, 2022
The signature verification routine in Enigmail before 2.0.7 interprets user ids as status/control...
High
Unreviewed
CVE-2018-12019
was published
May 14, 2022
The Linux kernel, as used in Ubuntu 18.10 and when booted with UEFI Secure Boot enabled, allows...
High
Unreviewed
CVE-2018-18653
was published
May 13, 2022
An issue was discovered on Diqee Diqee360 devices. A firmware update process, integrated into the...
High
Unreviewed
CVE-2018-10988
was published
May 13, 2022
An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2...
High
Unreviewed
CVE-2017-11400
was published
May 13, 2022
A vulnerability in the Image Verification feature of Cisco IOS XE Software could allow an...
High
Unreviewed
CVE-2018-15374
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API