GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
41
Go
3,003
Maven
5,000+
npm
4,732
NuGet
788
pip
4,341
Pub
12
RubyGems
987
Rust
1,137
Swift
50
Unreviewed advisories
All unreviewed
5,000+
111 advisories
Filter by severity
A Heap overflow vulnerability in WLInfoRailService component of Ivanti Avalanche before 6.4.3...
Critical
Unreviewed
CVE-2024-24996
was published
Apr 19, 2024
zlog 1.2.16 has a heap-based buffer overflow in struct zlog_rule_s while creating a new rule that...
Critical
Unreviewed
CVE-2024-22857
was published
Mar 7, 2024
A heap-based buffer overflow vulnerability exists in the .egi parsing functionality of The Biosig...
Critical
Unreviewed
CVE-2024-21795
was published
Feb 20, 2024
A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston...
Critical
Unreviewed
CVE-2023-45318
was published
Feb 20, 2024
Handlers for *_CFG_PAGE read / write ioctls in the mpr, mps, and mpt drivers allocated a buffer...
Critical
Unreviewed
CVE-2022-23086
was published
Feb 15, 2024
Heap buffer overflow in Skia in Google Chrome prior to 121.0.6167.160 allowed a remote attacker...
Critical
Unreviewed
CVE-2024-1283
was published
Feb 7, 2024
Due to a failure in validating the number of scanline samples of a OpenEXR file containing deep...
Critical
Unreviewed
CVE-2023-5841
was published
Feb 1, 2024
KEPServerEX is vulnerable to a buffer overflow which may allow an attacker to crash the...
Critical
Unreviewed
CVE-2023-5908
was published
Dec 1, 2023
A maliciously crafted MODEL file when parsed through Autodesk AutoCAD 2024 and 2023 can be used...
Critical
Unreviewed
CVE-2023-29073
was published
Nov 23, 2023
Tenda AX1806 V1.0.0.1 contains a heap overflow vulnerability in setSchedWifi function, in which...
Critical
Unreviewed
CVE-2023-47455
was published
Nov 14, 2023
A heap-based buffer overflow vulnerability exists in the HTTP Server form boundary functionality...
Critical
Unreviewed
CVE-2023-27882
was published
Nov 14, 2023
A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston...
Critical
Unreviewed
CVE-2023-25181
was published
Nov 14, 2023
Heap-based buffer overflow in ZBar
Critical
CVE-2023-40889
was published
for
zbar
(pip)
Aug 29, 2023
Heap buffer overflow in Blink in Google Chrome prior to 101.0.4951.41 allowed a remote attacker...
Critical
Unreviewed
CVE-2022-4920
was published
Jul 29, 2023
All versions of GE Digital CIMPLICITY that are not adhering to SDG guidance and accepting...
Critical
Unreviewed
CVE-2023-3463
was published
Jul 19, 2023
Use After Free (UAF) vulnerability in the Vdecoderservice service. Successful exploitation of...
Critical
Unreviewed
CVE-2022-48512
was published
Jul 6, 2023
A heap-based buffer overflow vulnerability [CWE-122] in FortiOS version 7.2.4 and below, version...
Critical
Unreviewed
CVE-2023-27997
was published
Jun 13, 2023
netconsd prior to v0.2 was vulnerable to an integer overflow in its parse_packet function. A...
Critical
Unreviewed
CVE-2023-28753
was published
May 19, 2023
Buffer overflow in CPCA Resource Download process of Office / Small Office Multifunction Printers...
Critical
Unreviewed
CVE-2023-0851
was published
May 11, 2023
Buffer overflow in NetBIOS QNAME registering and communication process of Office / Small Office...
Critical
Unreviewed
CVE-2023-0854
was published
May 11, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
Critical
Unreviewed
CVE-2022-2848
was published
Mar 29, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
Critical
Unreviewed
CVE-2022-43634
was published
Mar 29, 2023
TensorFlow has a heap out-of-buffer read vulnerability in the QuantizeAndDequantize operation
Critical
CVE-2023-25668
was published
for
tensorflow
(pip)
Mar 24, 2023
Snap One Wattbox WB-300-IP-3 versions WB10.9a17 and prior are vulnerable to a heap-based buffer...
Critical
Unreviewed
CVE-2023-23582
was published
Jan 31, 2023
A heap based buffer overflow vulnerability exists in the PSD thumbnail resource parsing code of...
Critical
Unreviewed
CVE-2022-41794
was published
Dec 23, 2022
ProTip!
Advisories are also available from the
GraphQL API