GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,838
Erlang
36
GitHub Actions
33
Go
2,460
Maven
5,000+
npm
4,082
NuGet
723
pip
3,873
Pub
12
RubyGems
943
Rust
1,010
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,947 advisories
Filter by severity
In TBD of TBD, there is a possible out of bounds write due to a heap buffer overflow. This could...
Critical
Unreviewed
CVE-2024-27228
was published
Mar 11, 2024
Android kernel allows Remote code execution.
Critical
Unreviewed
CVE-2024-27227
was published
Mar 11, 2024
In attp_build_value_cmd of att_protocol.cc, there is a possible out of bounds write due to a...
Critical
Unreviewed
CVE-2024-0039
was published
Mar 11, 2024
Buffer overflow in identifier field of WSD probe request process of Small Office Multifunction...
Critical
Unreviewed
CVE-2024-2184
was published
Mar 11, 2024
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in...
Critical
Unreviewed
CVE-2024-23265
was published
Mar 8, 2024
Memory corruption in Core Services while executing the command for removing a single event listener.
Critical
Unreviewed
CVE-2023-28578
was published
Mar 4, 2024
Memory corruption in Data Modem while verifying hello-verify message during the DTLS handshake.
Critical
Unreviewed
CVE-2023-28582
was published
Mar 4, 2024
In wlan service, there is a possible out of bounds write due to improper input validation. This...
Critical
Unreviewed
CVE-2024-20017
was published
Mar 4, 2024
In wlan driver, there is a possible out of bounds write due to improper input validation. This...
Critical
Unreviewed
CVE-2024-20018
was published
Mar 4, 2024
Industrial Control Systems Network Protocol Parsers (ICSNPP) - Ethercat
Zeek Plugin versions...
Critical
Unreviewed
CVE-2023-7244
was published
Mar 1, 2024
Industrial Control Systems Network Protocol Parsers (ICSNPP) - Ethercat
Zeek Plugin versions...
Critical
Unreviewed
CVE-2023-7243
was published
Mar 1, 2024
A heap-based buffer overflow vulnerability exists in the .egi parsing functionality of The Biosig...
Critical
Unreviewed
CVE-2024-21795
was published
Feb 20, 2024
An out-of-bounds write vulnerability exists in the BrainVisionMarker Parsing functionality of The...
Critical
Unreviewed
CVE-2024-23305
was published
Feb 20, 2024
An out-of-bounds write vulnerability exists in the sopen_FAMOS_read functionality of The Biosig...
Critical
Unreviewed
CVE-2024-23606
was published
Feb 20, 2024
A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston...
Critical
Unreviewed
CVE-2023-45318
was published
Feb 20, 2024
Stack overflow vulnerability in the network acceleration module.Successful exploitation of this...
Critical
Unreviewed
CVE-2023-52370
was published
Feb 18, 2024
Stack overflow vulnerability in the NFC module.Successful exploitation of this vulnerability may...
Critical
Unreviewed
CVE-2023-52369
was published
Feb 18, 2024
In attp_build_read_by_type_value_cmd of att_protocol.cc , there is a possible out of bounds write...
Critical
Unreviewed
CVE-2024-0031
was published
Feb 16, 2024
Handlers for *_CFG_PAGE read / write ioctls in the mpr, mps, and mpt drivers allocated a buffer...
Critical
Unreviewed
CVE-2022-23086
was published
Feb 15, 2024
A user-provided integer option was passed to nmreq_copyin() without checking if it would overflow...
Critical
Unreviewed
CVE-2022-23085
was published
Feb 15, 2024
A out-of-bounds write in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0...
Critical
Unreviewed
CVE-2024-21762
was published
Feb 9, 2024
Jsish v3.5.0 was discovered to contain a heap-buffer-overflow in ./src/jsiUtils.c.
Critical
Unreviewed
CVE-2024-24188
was published
Feb 7, 2024
Jsish v3.5.0 (commit 42c694c) was discovered to contain a stack-overflow via the component...
Critical
Unreviewed
CVE-2024-24186
was published
Feb 7, 2024
Heap buffer overflow in Skia in Google Chrome prior to 121.0.6167.160 allowed a remote attacker...
Critical
Unreviewed
CVE-2024-1283
was published
Feb 7, 2024
D-Link Go-RT-AC750 GORTAC750_A1_FW_v101b03 contains a stack-based buffer overflow via the...
Critical
Unreviewed
CVE-2024-22852
was published
Feb 6, 2024
ProTip!
Advisories are also available from the
GraphQL API