GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,299
Erlang
31
GitHub Actions
21
Go
2,064
Maven
5,000+
npm
3,744
NuGet
668
pip
3,424
Pub
12
RubyGems
892
Rust
877
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
8,329 advisories
Filter by severity
An out-of-bounds write vulnerability exists in the JPEG2000Codec::DecodeByStreamsCommon...
High
Unreviewed
CVE-2024-22373
was published
Apr 25, 2024
A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered...
High
Unreviewed
CVE-2023-4233
was published
Apr 18, 2024
A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered...
High
Unreviewed
CVE-2023-4235
was published
Apr 18, 2024
A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered...
High
Unreviewed
CVE-2023-4234
was published
Apr 18, 2024
A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered...
High
Unreviewed
CVE-2023-4232
was published
Apr 18, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix DEVMAP_HASH...
High
Unreviewed
CVE-2024-26885
was published
Apr 17, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix hashtab overflow...
High
Unreviewed
CVE-2024-26884
was published
Apr 17, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix stackmap overflow...
High
Unreviewed
CVE-2024-26883
was published
Apr 17, 2024
Memory safety bugs present in Firefox 124. Some of these bugs showed evidence of memory...
High
Unreviewed
CVE-2024-3865
was published
Apr 16, 2024
An Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in the...
High
Unreviewed
CVE-2024-30398
was published
Apr 12, 2024
Server receiving a malformed message that where the GCL message hostname may be too large which...
High
Unreviewed
CVE-2023-5394
was published
Apr 11, 2024
A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered...
High
Unreviewed
CVE-2023-2794
was published
Apr 10, 2024
Out of bounds memory access in V8 in Google Chrome prior to 123.0.6312.105 allowed a remote...
High
Unreviewed
CVE-2024-3159
was published
Apr 6, 2024
Kofax Power PDF PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2024-27344
was published
Apr 3, 2024
A memory corruption vulnerability in Rockwell Automation Arena Simulation software could...
High
Unreviewed
CVE-2024-2929
was published
Mar 26, 2024
A vulnerability has been identified in Cerberus PRO EN Engineering Tool (All versions), Cerberus...
High
Unreviewed
CVE-2024-22041
was published
Mar 12, 2024
In ppmp_unprotect_buf of drm_fw.c, there is a possible compromise of protected memory due to a...
High
Unreviewed
CVE-2024-25986
was published
Mar 11, 2024
The vulnerability described by CVE-2023-0972 has been additionally discovered in Silicon Labs Z...
High
Unreviewed
CVE-2023-51395
was published
Mar 7, 2024
IBM Connect:Express for UNIX 1.5.0 is vulnerable to a buffer overflow that could allow a remote...
High
Unreviewed
CVE-2023-32331
was published
Mar 4, 2024
In the Linux kernel, the following vulnerability has been resolved:
pwm: Fix out-of-bounds...
High
Unreviewed
CVE-2024-26599
was published
Feb 23, 2024
In the Linux kernel, the following vulnerability has been resolved:
EDAC/thunderx: Fix possible...
High
Unreviewed
CVE-2023-52464
was published
Feb 23, 2024
In the Linux kernel, the following vulnerability has been resolved:
LoongArch: BPF: Prevent out...
High
Unreviewed
CVE-2024-26588
was published
Feb 22, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf: Reject variable offset...
High
Unreviewed
CVE-2024-26589
was published
Feb 22, 2024
In the Linux kernel, the following vulnerability has been resolved:
f2fs: fix to avoid dirent...
High
Unreviewed
CVE-2023-52444
was published
Feb 22, 2024
A maliciously crafted STP file in ASMDATAX228A.dll when parsed through Autodesk AutoCAD could...
High
Unreviewed
CVE-2024-23133
was published
Feb 22, 2024
ProTip!
Advisories are also available from the
GraphQL API