GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,198
Erlang
31
GitHub Actions
19
Go
1,986
Maven
5,000+
npm
3,702
NuGet
660
pip
3,328
Pub
11
RubyGems
883
Rust
843
Swift
36
Unreviewed advisories
All unreviewed
5,000+
9,407 advisories
Filter by severity
cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_unfilter() function at...
High
Unreviewed
CVE-2024-46259
was published
Oct 1, 2024
A maliciously crafted DWF file, when parsed in dwfcore.dll through Autodesk Navisworks, can force...
High
Unreviewed
CVE-2024-7674
was published
Sep 30, 2024
A maliciously crafted DWF file, when parsed in dwfcore.dll through Autodesk Navisworks, can force...
High
Unreviewed
CVE-2024-7672
was published
Sep 30, 2024
A maliciously crafted DWFX file, when parsed in w3dtk.dll through Autodesk Navisworks, can force...
High
Unreviewed
CVE-2024-7673
was published
Sep 30, 2024
A maliciously crafted DWFX file, when parsed in dwfcore.dll through Autodesk Navisworks, can...
High
Unreviewed
CVE-2024-7671
was published
Sep 30, 2024
Alpine Halo9 DecodeUTF7 Stack-based Buffer Overflow Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2024-23935
was published
Sep 28, 2024
Autel MaxiCharger AC Elite Business C50 BLE AppChargingControl Stack-based Buffer Overflow Remote...
High
Unreviewed
CVE-2024-23959
was published
Sep 28, 2024
Autel MaxiCharger AC Elite Business C50 WebSocket Base64 Decoding Stack-based Buffer Overflow...
High
Unreviewed
CVE-2024-23967
was published
Sep 28, 2024
Silicon Labs Gecko OS Debug Interface Stack-based Buffer Overflow Remote Code Execution...
High
Unreviewed
CVE-2024-23938
was published
Sep 28, 2024
Autel MaxiCharger AC Elite Business C50 DLB_HostHeartBeat Stack-based Buffer Overflow Remote Code...
High
Unreviewed
CVE-2024-23957
was published
Sep 28, 2024
In the Linux kernel, the following vulnerability has been resolved:
spi: nxp-fspi: fix the KASAN...
High
Unreviewed
CVE-2024-46853
was published
Sep 27, 2024
Out-of-bounds write vulnerability in the HAL-WIFI module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-47293
was published
Sep 27, 2024
In UMTS RLC driver, there is a possible out of bounds read due to a missing bounds check. This...
High
Unreviewed
CVE-2024-39432
was published
Sep 27, 2024
In UMTS RLC driver, there is a possible out of bounds write due to a missing bounds check. This...
High
Unreviewed
CVE-2024-39431
was published
Sep 27, 2024
In drm service, there is a possible out of bounds write due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2024-39433
was published
Sep 27, 2024
Out-of-bounds write vulnerability in backup task management functionality in Synology Drive...
Moderate
Unreviewed
CVE-2022-49039
was published
Sep 26, 2024
A vulnerability in the UDP packet validation code of Cisco SD-WAN vEdge Software could allow an...
Moderate
Unreviewed
CVE-2024-20496
was published
Sep 25, 2024
Library MDF (mdflib) v2.1 is vulnerable to a heap-based buffer overread via a crafted mdf4 file...
Moderate
Unreviewed
CVE-2024-41445
was published
Sep 25, 2024
Heap-based Buffer Overflow in sqlite-vec
High
CVE-2024-46488
was published
for
sqlite-vec
(RubyGems)
Sep 25, 2024
A vulnerability in Cisco Unified Threat Defense (UTD) Snort Intrusion Prevention System (IPS)...
Moderate
Unreviewed
CVE-2024-20508
was published
Sep 25, 2024
A vulnerability in the Resource Reservation Protocol (RSVP) feature of Cisco IOS Software and...
High
Unreviewed
CVE-2024-20433
was published
Sep 25, 2024
Inappropriate implementation in V8 in Google Chrome prior to 129.0.6668.70 allowed a remote...
High
Unreviewed
CVE-2024-9121
was published
Sep 25, 2024
Secure Email Gateway from Cellopoint has Buffer Overflow Vulnerability in authentication process....
Critical
Unreviewed
CVE-2024-9043
was published
Sep 20, 2024
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Moderate
Unreviewed
CVE-2024-43496
was published
Sep 19, 2024
libfreeimage in FreeImage 3.4.0 through 3.18.0 has a stack-based buffer overflow in the PluginXPM...
Critical
Unreviewed
CVE-2024-31570
was published
Sep 19, 2024
ProTip!
Advisories are also available from the
GraphQL API