GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,458
Erlang
33
GitHub Actions
22
Go
2,156
Maven
5,000+
npm
3,818
NuGet
693
pip
3,497
Pub
12
RubyGems
903
Rust
903
Swift
38
Unreviewed advisories
All unreviewed
5,000+
217 advisories
Filter by severity
Transient DOS during hypervisor virtual I/O operation in a virtual machine.
Moderate
Unreviewed
CVE-2024-43056
was published
Mar 3, 2025
libarchive through 3.7.7 has a heap-based buffer over-read in header_gnu_longlink in...
Moderate
Unreviewed
CVE-2024-57970
was published
Feb 16, 2025
A CWE-126 “Buffer Over-read” was discovered affecting the 130.8005 TCP/IP Gateway running...
High
Unreviewed
CVE-2024-12011
was published
Feb 13, 2025
A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston...
Moderate
Unreviewed
CVE-2023-39541
was published
Feb 20, 2024
A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston...
Moderate
Unreviewed
CVE-2023-39540
was published
Feb 20, 2024
Memory corruption during management frame processing due to mismatch in T2LM info element.
High
Unreviewed
CVE-2024-49839
was published
Feb 3, 2025
Information disclosure while parsing the OCI IE with invalid length.
High
Unreviewed
CVE-2024-49838
was published
Feb 3, 2025
Information disclosure while processing information on firmware image during core initialization.
Moderate
Unreviewed
CVE-2024-38414
was published
Feb 3, 2025
Memory corruption while handling IOCTL call from user-space to set latency level.
High
Unreviewed
CVE-2024-45561
was published
Feb 3, 2025
Information disclosure during audio playback.
Moderate
Unreviewed
CVE-2024-38416
was published
Feb 3, 2025
Information disclosure while processing IO control commands.
Moderate
Unreviewed
CVE-2024-38417
was published
Feb 3, 2025
Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in...
High
Unreviewed
CVE-2024-38404
was published
Feb 3, 2025
Windows Remote Access Connection Manager Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-30039
was published
May 14, 2024
Information disclosure in Video while parsing mp2 clip with invalid section length.
High
Unreviewed
CVE-2023-43555
was published
Jun 3, 2024
Information disclosure while handling T2LM Action Frame in WLAN Host.
Moderate
Unreviewed
CVE-2023-43537
was published
Jun 3, 2024
NGINX Open Source and NGINX Plus have a vulnerability in the ngx_http_mp4_module, which might...
Moderate
Unreviewed
CVE-2024-7347
was published
Aug 14, 2024
A buffer over-read in Ivanti Secure Access Client before 22.7R4 allows a local unauthenticated...
Moderate
Unreviewed
CVE-2024-9843
was published
Nov 12, 2024
Information disclosure while parsing dts header atom in Video.
Moderate
Unreviewed
CVE-2023-43527
was published
May 6, 2024
Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream...
Moderate
Unreviewed
CVE-2023-43528
was published
May 6, 2024
Transient DOS while parsing a protected 802.11az Fine Time Measurement (FTM) frame.
High
Unreviewed
CVE-2024-21477
was published
May 6, 2024
Microsoft Security Advisory CVE-2025-21176 | .NET and Visual Studio Remote Code Execution Vulnerability
High
CVE-2025-21176
was published
for
Microsoft.NetCore.App.Runtime.linux-arm
(NuGet)
Jan 14, 2025
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
High
Unreviewed
CVE-2025-21277
was published
Jan 14, 2025
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2025-21271
was published
Jan 14, 2025
Memory corruption while processing buffer initialization, when trusted report for certain report...
High
Unreviewed
CVE-2023-33115
was published
Apr 1, 2024
Memory corruption while processing FIPS encryption or decryption IOCTL call invoked from user-space.
High
Unreviewed
CVE-2024-45546
was published
Jan 6, 2025
ProTip!
Advisories are also available from the
GraphQL API