GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,077
Erlang
29
GitHub Actions
19
Go
1,903
Maven
5,000+
npm
3,632
NuGet
638
pip
3,249
Pub
10
RubyGems
864
Rust
818
Swift
35
Unreviewed advisories
All unreviewed
5,000+
1,362 advisories
Filter by severity
Denial of Service in Bytom
High
CVE-2018-18206
was published
for
github.com/bytom/bytom
(Go)
Feb 15, 2022
Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17.7 has an overflow that can...
High
Unreviewed
CVE-2022-23772
was published
Feb 12, 2022
Possible integer overflow due to improper fragment datatype while calculating number of fragments...
High
Unreviewed
CVE-2021-35074
was published
Feb 12, 2022
Improper validation of data length received from DMA buffer can lead to memory corruption. in...
High
Unreviewed
CVE-2021-35069
was published
Feb 12, 2022
Duplicate advisory: swift-nio-http2 vulnerable to denial of service via mishandled HPACK variable length integer encoding
High
GHSA-wfvq-p7qf-vv64
was published
for
github.com/apple/swift-nio-http2
(Swift)
Feb 11, 2022
•
withdrawn
storeAtts in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
High
Unreviewed
CVE-2022-22827
was published
Feb 10, 2022
In doProlog in xmlparse.c in Expat (aka libexpat) before 2.4.3, an integer overflow exists for...
High
Unreviewed
CVE-2021-46143
was published
Feb 10, 2022
nextScaffoldPart in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
High
Unreviewed
CVE-2022-22826
was published
Feb 10, 2022
lookup in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
High
Unreviewed
CVE-2022-22825
was published
Feb 10, 2022
Integer overflow in TFLite array creation
High
CVE-2022-23558
was published
for
tensorflow
(pip)
Feb 9, 2022
IIPImage High Resolution Streaming Image Server prior to commit...
High
Unreviewed
CVE-2021-46389
was published
Feb 8, 2022
MariaDB before 10.6.5 has a sql_lex.cc integer overflow, leading to an application crash.
High
Unreviewed
CVE-2021-46667
was published
Feb 2, 2022
A denial of service vulnerability exists in the netserver recv_command functionality of reolink...
High
Unreviewed
CVE-2022-21801
was published
Jan 29, 2022
Integer overflow in solana_rbpf
High
CVE-2021-46102
was published
for
solana_rbpf
(Rust)
Jan 28, 2022
There is an integer overflow in the ION driver "/dev/ion" of Allwinner R818 SoC Android Q SDK V1...
High
Unreviewed
CVE-2021-38787
was published
Jan 20, 2022
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204...
High
Unreviewed
CVE-2021-44711
was published
Jan 15, 2022
Possible integer overflow due to improper validation of command length parameters while...
High
Unreviewed
CVE-2021-30319
was published
Jan 14, 2022
In mdp driver, there is a possible memory corruption due to an integer overflow. This could lead...
High
Unreviewed
CVE-2022-20012
was published
Jan 5, 2022
An integer overflow due to improper check performed after the address and size passed are aligned...
High
Unreviewed
CVE-2020-11263
was published
Jan 4, 2022
Possible integer overflow to buffer overflow due to improper input validation in FTM ARA commands...
High
Unreviewed
CVE-2021-30267
was published
Jan 4, 2022
Possible integer overflow in access control initialization interface due to lack and size and...
High
Unreviewed
CVE-2021-30274
was published
Jan 4, 2022
ProTip!
Advisories are also available from the
GraphQL API