GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
1,231 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
tracing: Consider the NULL...
High
Unreviewed
CVE-2024-50131
was published
Nov 5, 2024
Ariel Harush and Roy Hodir from OTORIO have found a flaw in the AXIS A1001 when
communicating...
High
Unreviewed
CVE-2023-21406
was published
Jul 25, 2023
Access to invalid memory during shape inference in `Cudnn*` ops
High
CVE-2021-41221
was published
for
tensorflow
(pip)
Nov 10, 2021
Tenda AC6 v2.0 V15.03.06.50 was discovered to contain a buffer overflow in the function ...
High
Unreviewed
CVE-2024-51116
was published
Nov 6, 2024
Memory corruption while station LL statistic handling.
High
Unreviewed
CVE-2024-38409
was published
Nov 4, 2024
Memory corruption while processing GPU page table switch.
High
Unreviewed
CVE-2024-38423
was published
Nov 4, 2024
A maliciously crafted CATPART file when parsed in AcTranslators.exe through Autodesk AutoCAD can...
High
Unreviewed
CVE-2024-8592
was published
Oct 30, 2024
A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force a...
High
Unreviewed
CVE-2024-9997
was published
Oct 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
firmware: arm_scpi: Fix...
High
Unreviewed
CVE-2021-47609
was published
Jun 19, 2024
The Spotify app 8.9.58 for iOS has a buffer overflow in its use of strcat.
High
Unreviewed
CVE-2024-42011
was published
Oct 28, 2024
This issue was addressed with improved checks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7...
High
Unreviewed
CVE-2024-44218
was published
Oct 28, 2024
stb_truetype.h v1.26 was discovered to contain a heap-buffer-overflow via the function ttUSHORT()...
High
Unreviewed
CVE-2022-25514
was published
Mar 18, 2022
In the Linux kernel, the following vulnerability has been resolved:
usb: gadget: uvc: Prevent...
High
Unreviewed
CVE-2022-48948
was published
Oct 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
cifs: Fix buffer overflow...
High
Unreviewed
CVE-2024-49996
was published
Oct 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
btrfs: send: fix buffer...
High
Unreviewed
CVE-2024-49869
was published
Oct 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
wifi: cfg80211: fix buffer...
High
Unreviewed
CVE-2022-49023
was published
Oct 21, 2024
Incorrect Access Control in GStreamer RTSP server 1.25.0 in gst-rtsp-server/rtsp-media.c allows...
High
Unreviewed
CVE-2024-44331
was published
Oct 23, 2024
In the Linux kernel, the following vulnerability has been resolved:
PCI: kirin: Fix buffer...
High
Unreviewed
CVE-2024-47751
was published
Oct 21, 2024
When the number of cookies per domain was exceeded in `document.cookie`, the actual cookie jar...
High
Unreviewed
CVE-2023-4055
was published
Aug 1, 2023
Buffer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Office XP...
High
Unreviewed
CVE-2009-2502
was published
May 2, 2022
A buffer overflow in modsecurity v3.0.12 allows attackers to cause a Denial of Service (DoS) via...
High
Unreviewed
CVE-2024-46292
was published
Oct 9, 2024
Buffer Overflow vulnerability in esp-idf v.5.1 allows a remote attacker to obtain sensitive...
High
Unreviewed
CVE-2024-33453
was published
Oct 18, 2024
Heap-based buffer overflow in the Local Security Authority Subsystem Service (LSASS), as used in...
High
Unreviewed
CVE-2010-0820
was published
May 2, 2022
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component:...
High
Unreviewed
CVE-2024-21274
was published
Oct 15, 2024
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer...
High
Unreviewed
CVE-2016-9428
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API