GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
185 advisories
Filter by severity
Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.
High
Unreviewed
CVE-2022-40512
was published
Feb 12, 2023
Information disclosure due to buffer over-read in WLAN while parsing NMF frame.
High
Unreviewed
CVE-2022-33271
was published
Feb 12, 2023
Information disclosure in Trusted Execution Environment due to buffer over-read while processing...
Moderate
Unreviewed
CVE-2022-33221
was published
Feb 12, 2023
Information disclosure due to buffer over-read in Modem while using static array to process IPv4...
High
Unreviewed
CVE-2022-33229
was published
Feb 12, 2023
Information disclosure in modem due to buffer over-read while processing response from DNS server
High
Unreviewed
CVE-2022-25728
was published
Feb 12, 2023
Information disclosure in modem due to buffer over read in dns client due to missing length check
High
Unreviewed
CVE-2022-25732
was published
Feb 12, 2023
Information disclosure in modem due to buffer over-red while performing checksum of packet received
High
Unreviewed
CVE-2022-25738
was published
Feb 12, 2023
Transient DOS while processing channel information for speaker protection v2 module in ADSP.
Moderate
Unreviewed
CVE-2023-33090
was published
Mar 4, 2024
Transient DOS while processing an improperly formatted 802.11az Fine Time Measurement protocol...
High
Unreviewed
CVE-2023-43539
was published
Mar 4, 2024
Information Disclosure while processing IOCTL request in FastRPC.
Moderate
Unreviewed
CVE-2023-33078
was published
Mar 4, 2024
Memory corruption while processing buffer initialization, when trusted report for certain report...
High
Unreviewed
CVE-2023-33115
was published
Apr 1, 2024
Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-26160
was published
Mar 12, 2024
Windows Kernel Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-21340
was published
Feb 13, 2024
Windows Remote Access Connection Manager Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-28902
was published
Apr 9, 2024
Windows Remote Access Connection Manager Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-28900
was published
Apr 9, 2024
Windows Remote Access Connection Manager Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-26255
was published
Apr 9, 2024
Windows Remote Access Connection Manager Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-28901
was published
Apr 9, 2024
Windows USB Print Driver Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-26243
was published
Apr 9, 2024
iSCSI dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection...
Moderate
Unreviewed
CVE-2023-3649
was published
Jul 14, 2023
An access violation vulnerability exists in the eventcore functionality of Milesight UR32L v32.3...
High
Unreviewed
CVE-2023-23571
was published
Jul 6, 2023
On affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe)...
High
Unreviewed
CVE-2023-24513
was published
Apr 12, 2023
tcpdump.org tcpdump 4.9.2 is affected by: CWE-126: Buffer Over-read. The impact is: May expose...
Moderate
Unreviewed
CVE-2019-1010220
was published
May 24, 2022
When processing certain files, PHP EXIF extension in versions 7.1.x below 7.1.29, 7.2.x below 7.2...
Critical
Unreviewed
CVE-2019-11036
was published
May 24, 2022
Wangle's LineBasedFrameDecoder contains logic for identifying newlines which incorrectly advances...
Critical
Unreviewed
CVE-2019-3563
was published
May 24, 2022
A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston...
Moderate
Unreviewed
CVE-2023-39540
was published
Feb 20, 2024
ProTip!
Advisories are also available from the
GraphQL API