GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,134
Erlang
29
GitHub Actions
19
Go
1,941
Maven
5,000+
npm
3,681
NuGet
650
pip
3,298
Pub
11
RubyGems
877
Rust
830
Swift
35
Unreviewed advisories
All unreviewed
5,000+
8,394 advisories
Filter by severity
A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered...
High
Unreviewed
CVE-2023-4234
was published
Apr 18, 2024
A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered...
High
Unreviewed
CVE-2023-4232
was published
Apr 18, 2024
Handling untrusted input can result in a crash, leading to loss of availability / denial of service
High
CVE-2024-30253
was published
for
@solana/web3.js
(npm)
Apr 17, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix stackmap overflow...
High
Unreviewed
CVE-2024-26883
was published
Apr 17, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix hashtab overflow...
High
Unreviewed
CVE-2024-26884
was published
Apr 17, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix DEVMAP_HASH...
High
Unreviewed
CVE-2024-26885
was published
Apr 17, 2024
Memory safety bugs present in Firefox 124. Some of these bugs showed evidence of memory...
High
Unreviewed
CVE-2024-3865
was published
Apr 16, 2024
An Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in the...
High
Unreviewed
CVE-2024-30398
was published
Apr 12, 2024
Server receiving a malformed message that where the GCL message hostname may be too large which...
High
Unreviewed
CVE-2023-5394
was published
Apr 11, 2024
A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered...
High
Unreviewed
CVE-2023-2794
was published
Apr 10, 2024
Out of bounds memory access in V8 in Google Chrome prior to 123.0.6312.105 allowed a remote...
High
Unreviewed
CVE-2024-3159
was published
Apr 6, 2024
Kofax Power PDF PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2024-27344
was published
Apr 3, 2024
A memory corruption vulnerability in Rockwell Automation Arena Simulation software could...
High
Unreviewed
CVE-2024-2929
was published
Mar 26, 2024
A vulnerability has been identified in Cerberus PRO EN Engineering Tool (All versions), Cerberus...
High
Unreviewed
CVE-2024-22041
was published
Mar 12, 2024
In ppmp_unprotect_buf of drm_fw.c, there is a possible compromise of protected memory due to a...
High
Unreviewed
CVE-2024-25986
was published
Mar 11, 2024
The vulnerability described by CVE-2023-0972 has been additionally discovered in Silicon Labs Z...
High
Unreviewed
CVE-2023-51395
was published
Mar 7, 2024
IBM Connect:Express for UNIX 1.5.0 is vulnerable to a buffer overflow that could allow a remote...
High
Unreviewed
CVE-2023-32331
was published
Mar 4, 2024
In the Linux kernel, the following vulnerability has been resolved:
pwm: Fix out-of-bounds...
High
Unreviewed
CVE-2024-26599
was published
Feb 23, 2024
In the Linux kernel, the following vulnerability has been resolved:
EDAC/thunderx: Fix possible...
High
Unreviewed
CVE-2023-52464
was published
Feb 23, 2024
In the Linux kernel, the following vulnerability has been resolved:
LoongArch: BPF: Prevent out...
High
Unreviewed
CVE-2024-26588
was published
Feb 22, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf: Reject variable offset...
High
Unreviewed
CVE-2024-26589
was published
Feb 22, 2024
In the Linux kernel, the following vulnerability has been resolved:
f2fs: fix to avoid dirent...
High
Unreviewed
CVE-2023-52444
was published
Feb 22, 2024
A maliciously crafted STP file in ASMDATAX228A.dll when parsed through Autodesk AutoCAD could...
High
Unreviewed
CVE-2024-23133
was published
Feb 22, 2024
A maliciously crafted STP file in atf_dwg_consumer.dll when parsed through Autodesk AutoCAD could...
High
Unreviewed
CVE-2024-23132
was published
Feb 22, 2024
A maliciously crafted MODEL file in libodxdll.dll when parsed through Autodesk AutoCAD could lead...
High
Unreviewed
CVE-2024-23128
was published
Feb 22, 2024
ProTip!
Advisories are also available from the
GraphQL API