GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,409
Erlang
33
GitHub Actions
22
Go
2,144
Maven
5,000+
npm
3,808
NuGet
687
pip
3,481
Pub
12
RubyGems
897
Rust
898
Swift
38
Unreviewed advisories
All unreviewed
5,000+
501 advisories
Filter by severity
An improper input validation in get_head_crc in libsaped prior to SMR Nov-2023 Release 1 allows...
Critical
Unreviewed
CVE-2023-42537
was published
Nov 13, 2023
An improper input validation in saped_dec in libsaped prior to SMR Nov-2023 Release 1 allows...
Critical
Unreviewed
CVE-2023-42536
was published
Nov 13, 2023
Out of bounds access in lucet-runtime-internals
Critical
CVE-2020-35859
was published
for
lucet-runtime-internals
(Rust)
Aug 25, 2021
An issue was discovered in the DNS proxy in Connman through 1.40. forward_dns_reply mishandles a...
Critical
Unreviewed
CVE-2022-23097
was published
Feb 10, 2022
exfatprogs before 1.2.2 allows out-of-bounds memory access, such as in read_file_dentry_set.
Critical
Unreviewed
CVE-2023-45897
was published
Oct 28, 2023
This vulnerability allows remote attackers to disclose sensitive information on affected...
Critical
Unreviewed
CVE-2022-23123
was published
Mar 28, 2023
This vulnerability allows remote attackers to disclose sensitive information on affected...
Critical
Unreviewed
CVE-2022-23124
was published
Mar 28, 2023
An issue was discovered in FNET through 4.6.4. The code for processing resource records in mDNS...
Critical
Unreviewed
CVE-2020-24383
was published
May 24, 2022
Read out-of-bounds in PJSUA API when calling pjsua_recorder_create. An attacker-controlled ...
Critical
Unreviewed
CVE-2021-43302
was published
Feb 17, 2022
A heap out of bounds read vulnerability exists in the handling of IPTC data while parsing TIFF...
Critical
Unreviewed
CVE-2022-41649
was published
Dec 23, 2022
DexLoader function get_stringidx_fromdex() in Redex prior to commit 3b44c64 can load an out of...
Critical
Unreviewed
CVE-2022-36938
was published
Nov 11, 2022
Out of bounds access in compact_arena
Critical
CVE-2019-16139
was published
for
compact_arena
(Rust)
Aug 25, 2021
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal...
Critical
Unreviewed
CVE-2020-35636
was published
May 24, 2022
Out-of-bounds read in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12...
Critical
Unreviewed
CVE-2020-8747
was published
May 24, 2022
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal...
Critical
Unreviewed
CVE-2020-28601
was published
May 24, 2022
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal...
Critical
Unreviewed
CVE-2020-28636
was published
May 24, 2022
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal...
Critical
Unreviewed
CVE-2020-35628
was published
May 24, 2022
Deno improperly handles resizable ArrayBuffer
Critical
CVE-2023-28445
was published
for
Deno
(Rust)
Mar 23, 2023
Buffer Over-read in GitHub repository vim/vim prior to 8.2.
Critical
Unreviewed
CVE-2022-1927
was published
May 30, 2022
An out-of-bounds heap read in Busybox's unlzma applet leads to information leak and denial of...
Critical
Unreviewed
CVE-2021-42374
was published
May 24, 2022
In Gluster GlusterFS 11.0, there is an xlators/mount/fuse/src/fuse-bridge.c notify stack-based...
Critical
Unreviewed
CVE-2023-26253
was published
Feb 21, 2023
ProTip!
Advisories are also available from the
GraphQL API