GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,318
Erlang
31
GitHub Actions
21
Go
2,074
Maven
5,000+
npm
3,746
NuGet
674
pip
3,434
Pub
12
RubyGems
892
Rust
880
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
107 advisories
Filter by severity
A potential buffer overflow vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo...
Moderate
Unreviewed
CVE-2024-10254
was published
Jan 15, 2025
A potential TOCTOU vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store...
Moderate
Unreviewed
CVE-2024-10253
was published
Jan 15, 2025
Windows Digital Media Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2025-21256
was published
Jan 14, 2025
A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when...
Moderate
Unreviewed
CVE-2024-56826
was published
Jan 9, 2025
A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when...
Moderate
Unreviewed
CVE-2024-56827
was published
Jan 9, 2025
in OpenHarmony v4.0.0 and prior versions allow a local attacker arbitrary code execution in TCB...
Moderate
Unreviewed
CVE-2024-3758
was published
May 7, 2024
Microsoft SharePoint Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2023-33129
was published
Jun 14, 2023
A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in...
Moderate
Unreviewed
CVE-2020-12819
was published
Dec 19, 2024
Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2024-49094
was published
Dec 12, 2024
Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2024-49081
was published
Dec 12, 2024
A vulnerability was found in libtiff due to multiple potential integer overflows in raw2tiff.c....
Moderate
Unreviewed
CVE-2023-41175
was published
Oct 5, 2023
A heap-based buffer overflow was found in the SDHCI device emulation of QEMU. The bug is...
Moderate
Unreviewed
CVE-2024-3447
was published
Nov 14, 2024
A heap-based buffer overflow in Fortinet FortiAnalyzer version 7.4.0 through 7.4.2, 7.2.0 through...
Moderate
Unreviewed
CVE-2024-33505
was published
Nov 12, 2024
User controlled parameters related to SMTP notifications are not correctly validated. This can...
Moderate
Unreviewed
CVE-2021-31986
was published
May 24, 2022
In multiple locations, there is a possible out of bounds write due to a heap buffer overflow....
Moderate
Unreviewed
CVE-2024-23709
was published
May 7, 2024
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Moderate
Unreviewed
CVE-2024-43587
was published
Oct 18, 2024
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Moderate
Unreviewed
CVE-2024-43525
was published
Oct 8, 2024
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Moderate
Unreviewed
CVE-2024-43523
was published
Oct 8, 2024
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
Moderate
Unreviewed
CVE-2024-43526
was published
Oct 8, 2024
Azure Service Fabric for Linux Remote Code Execution Vulnerability
Moderate
Unreviewed
CVE-2024-43480
was published
Oct 8, 2024
A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G,...
Moderate
Unreviewed
CVE-2024-20522
was published
Oct 2, 2024
A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G,...
Moderate
Unreviewed
CVE-2024-20516
was published
Oct 2, 2024
A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G,...
Moderate
Unreviewed
CVE-2024-20517
was published
Oct 2, 2024
Bandisoft BandiView 7.05 is vulnerable to Buffer Overflow via sub_0x410d1d. The vulnerability...
Moderate
Unreviewed
CVE-2024-45872
was published
Oct 3, 2024
A vulnerability in Cisco Unified Threat Defense (UTD) Snort Intrusion Prevention System (IPS)...
Moderate
Unreviewed
CVE-2024-20508
was published
Sep 25, 2024
ProTip!
Advisories are also available from the
GraphQL API