GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
256 advisories
Filter by severity
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core)....
Low
Unreviewed
CVE-2020-2748
was published
May 24, 2022
An information disclosure vulnerability exists when the Microsoft Windows Graphics Component...
Low
Unreviewed
CVE-2020-0987
was published
May 24, 2022
In crus_afe_get_param of msm-cirrus-playback.c, there is a possible out of bounds read due to an...
Low
Unreviewed
CVE-2020-0068
was published
May 24, 2022
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core)....
Low
Unreviewed
CVE-2020-2741
was published
May 24, 2022
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core)....
Low
Unreviewed
CVE-2020-2743
was published
May 24, 2022
Lack of boundary checks for data offsets received from HLOS can lead to out-of-bound read in...
Low
Unreviewed
CVE-2019-10574
was published
May 24, 2022
hw/pci/pci.c in QEMU 4.2.0 allows guest OS users to trigger an out-of-bounds access by providing...
Low
Unreviewed
CVE-2020-13791
was published
May 24, 2022
A vulnerability was found in DPDK versions 18.11 and above. The vhost-crypto library code is...
Low
Unreviewed
CVE-2020-10724
was published
May 24, 2022
Buffer over-read in ADSP parse function due to lack of check for availability of sufficient data...
Low
Unreviewed
CVE-2019-14038
was published
May 24, 2022
An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to...
Low
Unreviewed
CVE-2020-12864
was published
May 24, 2022
VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202006401-SG and 6.5 before...
Low
Unreviewed
CVE-2020-3965
was published
May 24, 2022
njs through 0.4.3, used in NGINX, has an out-of-bounds read in njs_lvlhsh_level_find in...
Low
Unreviewed
CVE-2020-24347
was published
May 24, 2022
A vulnerability in an Trend Micro Apex One dll may allow an attacker to manipulate it to cause an...
Low
Unreviewed
CVE-2020-24558
was published
May 24, 2022
njs through 0.4.3, used in NGINX, has an out-of-bounds read in njs_json_stringify_iterator in...
Low
Unreviewed
CVE-2020-24348
was published
May 24, 2022
An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to...
Low
Unreviewed
CVE-2020-12862
was published
May 24, 2022
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the...
Low
Unreviewed
CVE-2022-41600
was published
Oct 14, 2022
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the...
Low
Unreviewed
CVE-2022-41597
was published
Oct 14, 2022
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the...
Low
Unreviewed
CVE-2022-41598
was published
Oct 14, 2022
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the...
Low
Unreviewed
CVE-2022-41592
was published
Oct 14, 2022
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the...
Low
Unreviewed
CVE-2022-41593
was published
Oct 14, 2022
An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to...
Low
Unreviewed
CVE-2020-12863
was published
May 24, 2022
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the...
Low
Unreviewed
CVE-2022-41603
was published
Oct 14, 2022
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the...
Low
Unreviewed
CVE-2022-41601
was published
Oct 14, 2022
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the...
Low
Unreviewed
CVE-2022-41602
was published
Oct 14, 2022
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the...
Low
Unreviewed
CVE-2022-41594
was published
Oct 14, 2022
ProTip!
Advisories are also available from the
GraphQL API