GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
185 advisories
Filter by severity
Transient DOS in Core when DDR memory check is called while DDR is not initialized.
High
Unreviewed
CVE-2023-33060
was published
Feb 6, 2024
Transient DOS while parsing GATT service data when the total amount of memory that is required by...
High
Unreviewed
CVE-2023-43512
was published
Jan 2, 2024
Transient DOS in Data Modem during DTLS handshake.
High
Unreviewed
CVE-2023-33040
was published
Jan 2, 2024
Transient DOS in WLAN Firmware while parsing t2lm buffers.
High
Unreviewed
CVE-2023-33048
was published
Nov 14, 2023
Memory corruption in WLAN HOST while processing the WLAN scan descriptor list.
High
Unreviewed
CVE-2023-28572
was published
Nov 14, 2023
Information disclosure in WLAN HAL while handling command through WMI interfaces.
Moderate
Unreviewed
CVE-2023-28569
was published
Nov 14, 2023
Information disclosure in WLAN HAL when reception status handler is called.
Moderate
Unreviewed
CVE-2023-28568
was published
Nov 14, 2023
Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line...
High
Unreviewed
CVE-2023-24848
was published
Oct 3, 2023
Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame.
High
Unreviewed
CVE-2023-33015
was published
Sep 5, 2023
Transient DOS in Bluetooth HOST while passing descriptor to validate the blacklisted BT keyboard.
Moderate
Unreviewed
CVE-2023-21667
was published
Sep 5, 2023
Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service.
High
Unreviewed
CVE-2022-40524
was published
Sep 5, 2023
Transient DOS in Audio while remapping channel buffer in media codec decoding.
High
Unreviewed
CVE-2023-28555
was published
Aug 8, 2023
Information disclosure in Network Services due to buffer over-read while the device receives DNS...
High
Unreviewed
CVE-2023-21625
was published
Aug 8, 2023
Memory Corruption in Data Modem while processing DMA buffer release event about CFR data.
High
Unreviewed
CVE-2023-28541
was published
Jul 4, 2023
Information Disclosure in WLAN HOST while sending DPP action frame to peer with an invalid source...
High
Unreviewed
CVE-2023-21669
was published
Jun 6, 2023
Transient DOS in WLAN Firmware while processing the received beacon or probe response frame.
High
Unreviewed
CVE-2023-21658
was published
Jun 6, 2023
Information disclosure due to buffer over-read in Modem while parsing DNS hostname.
High
Unreviewed
CVE-2022-40505
was published
May 2, 2023
Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.
High
Unreviewed
CVE-2022-40503
was published
Apr 13, 2023
Information disclosure due to buffer overread in Linux sensors
Moderate
Unreviewed
CVE-2022-33297
was published
Apr 13, 2023
Information disclosure in Modem due to buffer over-read while parsing the wms message received...
High
Unreviewed
CVE-2022-33295
was published
Apr 13, 2023
Information disclosure in Modem due to buffer over-read while receiving a IP header with...
High
Unreviewed
CVE-2022-33291
was published
Apr 13, 2023
Information disclosure due to buffer over-read in modem while reading configuration parameters.
High
Unreviewed
CVE-2022-33258
was published
Apr 13, 2023
Information disclosure due to buffer over-read while parsing DNS response packets in Modem.
High
Unreviewed
CVE-2022-33222
was published
Apr 13, 2023
Information disclosure in modem due to improper check of IP type while processing DNS server query
High
Unreviewed
CVE-2022-25730
was published
Apr 13, 2023
Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size...
High
Unreviewed
CVE-2022-33309
was published
Mar 10, 2023
ProTip!
Advisories are also available from the
GraphQL API