GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,354
Erlang
31
GitHub Actions
22
Go
2,120
Maven
5,000+
npm
3,779
NuGet
681
pip
3,460
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,404 advisories
Filter by severity
Memory corruption in WLAN Firmware while parsing receieved GTK Keys in GTK KDE.
Critical
Unreviewed
CVE-2023-28581
was published
Sep 5, 2023
SV_SteamAuthClient in various Activision Infinity Ward Call of Duty games before 2015-08-11 is...
Critical
Unreviewed
CVE-2018-20817
was published
May 24, 2022
IBM Personal Communications 14.0.6 through 15.0.1 includes a Windows service that is vulnerable...
Critical
Unreviewed
CVE-2024-25029
was published
Apr 6, 2024
Buffer-overflow in jsdtoa.c in Artifex MuJS in versions 1.0.1 to 1.1.1. An integer overflow...
Critical
Unreviewed
CVE-2021-33797
was published
Apr 18, 2023
Stack-based buffer overflow vulnerability in Easy Chat Server 3.1 version. An attacker could send...
Critical
Unreviewed
CVE-2023-4494
was published
Oct 4, 2023
Buffer overflow vulnerability in Easy Address Book Web Server 1.6 version. The exploitation of...
Critical
Unreviewed
CVE-2023-4491
was published
Oct 4, 2023
Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack...
Critical
Unreviewed
CVE-2023-44023
was published
Sep 27, 2023
Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack...
Critical
Unreviewed
CVE-2023-44022
was published
Sep 27, 2023
Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack...
Critical
Unreviewed
CVE-2023-44021
was published
Sep 27, 2023
Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack...
Critical
Unreviewed
CVE-2023-44020
was published
Sep 27, 2023
A heap-based buffer overflow vulnerability exists in the pictwread functionality of Accusoft...
Critical
Unreviewed
CVE-2023-35002
was published
Sep 25, 2023
An out-of-bounds write vulnerability exists in the tiff_planar_adobe functionality of Accusoft...
Critical
Unreviewed
CVE-2023-32284
was published
Sep 25, 2023
The SAP Web Dispatcher - versions WEBDISP 7.53, WEBDISP 7.54, WEBDISP 7.77, WEBDISP 7.85, WEBDISP...
Critical
Unreviewed
CVE-2023-35871
was published
Jul 11, 2023
Multiple vulnerabilities in Cisco IOS Software for Cisco 809 and 829 Industrial Integrated...
Critical
Unreviewed
CVE-2020-3258
was published
May 24, 2022
Multiple vulnerabilities in Cisco IOS Software for Cisco 809 and 829 Industrial Integrated...
Critical
Unreviewed
CVE-2020-3198
was published
May 24, 2022
The HTTP/2 experimental feature in Apache Traffic Server 5.3.x before 5.3.1 allows remote...
Critical
Unreviewed
CVE-2015-3249
was published
May 24, 2022
Buffer overflow in LabF nfsAxe FTP client 3.7 allows an attacker to execute code remotely.
Critical
Unreviewed
CVE-2017-14742
was published
May 24, 2022
Boa through 0.94.14rc21 allows remote attackers to trigger an out-of-memory (OOM) condition...
Critical
Unreviewed
CVE-2018-21027
was published
May 24, 2022
NetSarang XFTP Client 6.0149 and earlier version contains a buffer overflow vulnerability caused...
Critical
Unreviewed
CVE-2019-17320
was published
May 24, 2022
Insufficient boundary checks when formatting numbers in number_format allows read/write access to...
Critical
Unreviewed
CVE-2019-11929
was published
May 24, 2022
Insufficient boundary checks when processing the JPEG APP12 block marker in the GD extension...
Critical
Unreviewed
CVE-2019-11925
was published
May 24, 2022
Insufficient boundary checks when processing M_SOFx markers from JPEG headers in the GD extension...
Critical
Unreviewed
CVE-2019-11926
was published
May 24, 2022
Various Lexmark products have a Buffer Overflow (issue 2 of 3).
Critical
Unreviewed
CVE-2019-9932
was published
May 24, 2022
Various Lexmark products have a Buffer Overflow (issue 3 of 3).
Critical
Unreviewed
CVE-2019-9933
was published
May 24, 2022
ROBOTIS Dynamixel SDK through 3.7.11 has a buffer overflow via a large rxpacket.
Critical
Unreviewed
CVE-2019-15786
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API