GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,838
Erlang
36
GitHub Actions
33
Go
2,460
Maven
5,000+
npm
4,082
NuGet
723
pip
3,872
Pub
12
RubyGems
943
Rust
1,010
Swift
39
Unreviewed advisories
All unreviewed
5,000+
2,243 advisories
Filter by severity
A vulnerability was found in FFmpeg 2.0. It has been declared as problematic. Affected by this...
Moderate
Unreviewed
CVE-2014-125023
was published
Jun 20, 2022
In various methods of kernel base drivers, there is a possible out of bounds write due to a heap...
Moderate
Unreviewed
CVE-2022-20166
was published
Jun 16, 2022
Out of bounds write for some Intel(R) PROSet/Wireless WiFi products may allow a privileged user...
Moderate
Unreviewed
CVE-2022-21172
was published
Aug 19, 2022
A head-based buffer overflow exists in Academy Software Foundation OpenEXR 2.3.0 in writeTileData...
Moderate
Unreviewed
CVE-2020-16589
was published
May 24, 2022
A heap-based buffer overflow vulnerability exists in Academy Software Foundation OpenEXR 2.3.0 in...
Moderate
Unreviewed
CVE-2020-16587
was published
May 24, 2022
In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2022-21783
was published
Jul 7, 2022
In audio DSP, there is a possible out of bounds write due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2022-21787
was published
Jul 7, 2022
A vulnerability was found in FFmpeg 2.0. It has been rated as problematic. This issue affects the...
Moderate
Unreviewed
CVE-2014-125016
was published
Jun 19, 2022
A vulnerability, which was classified as problematic, was found in FFmpeg 2.0. This affects the...
Moderate
Unreviewed
CVE-2014-125005
was published
Jun 19, 2022
A vulnerability was found in FFmpeg 2.0 and classified as problematic. This issue affects the...
Moderate
Unreviewed
CVE-2014-125013
was published
Jun 19, 2022
A vulnerability classified as problematic was found in FFmpeg 2.0. Affected by this vulnerability...
Moderate
Unreviewed
CVE-2014-125014
was published
Jun 19, 2022
The PPM reader in libjpeg-turbo through 2.0.90 mishandles use of tjLoadImage for loading a 16-bit...
Moderate
Unreviewed
CVE-2021-46822
was published
Jun 19, 2022
In GPAC MP4Box v1.1.0, there is a heap-buffer-overflow in the function filter_parse_dyn_args...
Moderate
Unreviewed
CVE-2021-40942
was published
Jun 28, 2022
A vulnerability, which was classified as problematic, has been found in FFmpeg 2.0. Affected by...
Moderate
Unreviewed
CVE-2014-125018
was published
Jun 20, 2022
A vulnerability classified as problematic was found in FFmpeg 2.0. Affected by this vulnerability...
Moderate
Unreviewed
CVE-2014-125007
was published
Jun 19, 2022
A vulnerability has been found in FFmpeg 2.0 and classified as problematic. This vulnerability...
Moderate
Unreviewed
CVE-2014-125004
was published
Jun 19, 2022
A vulnerability classified as problematic has been found in FFmpeg 2.0. This affects the function...
Moderate
Unreviewed
CVE-2014-125025
was published
Jun 20, 2022
A vulnerability, which was classified as problematic, was found in FFmpeg 2.0. This affects the...
Moderate
Unreviewed
CVE-2014-125019
was published
Jun 20, 2022
NVIDIA DGX A100 contains a vulnerability in SBIOS in the SmbiosPei, which may allow a highly...
Moderate
Unreviewed
CVE-2022-31601
was published
Jul 5, 2022
In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2022-21780
was published
Jul 7, 2022
In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2022-21779
was published
Jul 7, 2022
In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2022-21785
was published
Jul 7, 2022
A memory corruption in Hex Rays Ida Pro v6.6 allows attackers to cause a Denial of Service (DoS)...
Moderate
Unreviewed
CVE-2022-32441
was published
Jul 8, 2022
Heap-based buffer overflow in the parse_string_node function in bplist.c in libimobiledevice...
Moderate
Unreviewed
CVE-2017-6439
was published
May 17, 2022
NVIDIA DGX A100 contains a vulnerability in SBIOS in the IpSecDxe, where a user with elevated...
Moderate
Unreviewed
CVE-2022-31602
was published
Jul 5, 2022
ProTip!
Advisories are also available from the
GraphQL API