GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,080
Erlang
29
GitHub Actions
19
Go
1,908
Maven
5,000+
npm
3,642
NuGet
638
pip
3,258
Pub
10
RubyGems
869
Rust
820
Swift
35
Unreviewed advisories
All unreviewed
5,000+
544 advisories
Filter by severity
Buffer Overflow vulnerability in open source exiftags v.1.01 allows a local attacker to execute...
High
Unreviewed
CVE-2024-42851
was published
Aug 27, 2024
Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to...
High
Unreviewed
CVE-2024-39883
was published
Jul 10, 2024
oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This...
High
Unreviewed
CVE-2024-7546
was published
Aug 6, 2024
A heap-based buffer overflow in Clmg before 3.3.3 can occur via a crafted file to cimg_library:...
High
Unreviewed
CVE-2024-26540
was published
Mar 15, 2024
The issue was addressed with improved bounds checks. This issue is fixed in watchOS 10.1, macOS...
High
Unreviewed
CVE-2023-42848
was published
Feb 21, 2024
Heap buffer overflow in PDFium in Google Chrome prior to 128.0.6613.84 allowed a remote attacker...
High
Unreviewed
CVE-2024-7973
was published
Aug 21, 2024
Heap buffer overflow in Fonts in Google Chrome prior to 128.0.6613.84 allowed a remote attacker...
High
Unreviewed
CVE-2024-7967
was published
Aug 21, 2024
libmodbus v3.1.6 was discovered to contain a heap overflow via the modbus_mapping_free() function.
High
Unreviewed
CVE-2024-36843
was published
May 31, 2024
An issue was discovered in xmllint (from libxml2) before 2.11.8 and 2.12.x before 2.12.7....
High
Unreviewed
CVE-2024-34459
was published
May 14, 2024
In TBD of TBD, there is a possible out of bounds write due to a heap buffer overflow. This could...
High
Unreviewed
CVE-2024-27209
was published
Mar 11, 2024
Open5GS v2.6.4 is vulnerable to Buffer Overflow. via /lib/pfcp/context.c.
High
Unreviewed
CVE-2024-40129
was published
Jul 16, 2024
HDF5 Library through 1.14.3 contains a heap-based buffer over-read caused by the unsafe use of...
High
Unreviewed
CVE-2024-32617
was published
May 14, 2024
oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This...
High
Unreviewed
CVE-2024-7543
was published
Aug 6, 2024
oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This...
High
Unreviewed
CVE-2024-7544
was published
Aug 6, 2024
oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This...
High
Unreviewed
CVE-2024-7545
was published
Aug 6, 2024
InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by a Heap-based Buffer...
High
Unreviewed
CVE-2024-41850
was published
Aug 14, 2024
InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by a Heap-based Buffer...
High
Unreviewed
CVE-2024-41853
was published
Aug 14, 2024
An issue in the imlib_free_image_and_decache function of imlib2 v1.9.1 allows attackers to cause...
High
Unreviewed
CVE-2024-25448
was published
Feb 9, 2024
In multiple functions of ashmem-dev.cpp, there is a possible missing seal due to a heap buffer...
High
Unreviewed
CVE-2024-0033
was published
Feb 16, 2024
A heap-based buffer overflow vulnerability exists in the FOXMAN-UN/UNEM that
if exploited will...
High
Unreviewed
CVE-2024-2011
was published
Jun 11, 2024
In convertYUV420Planar16ToY410 of ColorConverter.cpp, there is a possible out of bounds write due...
High
Unreviewed
CVE-2024-0018
was published
Feb 16, 2024
Windows Common Log File System Driver Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2023-23376
was published
Feb 14, 2023
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2023-36036
was published
Nov 14, 2023
Windows OLE Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-38152
was published
Aug 13, 2024
Windows IP Routing Management Snapin Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-38116
was published
Aug 13, 2024
ProTip!
Advisories are also available from the
GraphQL API