GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,343
Erlang
31
GitHub Actions
22
Go
2,107
Maven
5,000+
npm
3,764
NuGet
679
pip
3,452
Pub
12
RubyGems
892
Rust
886
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
8,345 advisories
Filter by severity
IBM Connect:Express for UNIX 1.5.0 is vulnerable to a buffer overflow that could allow a remote...
High
Unreviewed
CVE-2023-32331
was published
Mar 4, 2024
A flaw was found in the rsync daemon which could be triggered when rsync compares file checksums....
High
Unreviewed
CVE-2024-12085
was published
Jan 14, 2025
AutomationDirect C-More EA9 EAP9 File Parsing Memory Corruption Remote Code Execution...
High
Unreviewed
CVE-2024-11610
was published
Jan 30, 2025
AutomationDirect C-More EA9 EAP9 File Parsing Memory Corruption Remote Code Execution...
High
Unreviewed
CVE-2024-11611
was published
Jan 30, 2025
Sante PACS Server DCM File Parsing Memory Corruption Denial-of-Service Vulnerability. This...
High
Unreviewed
CVE-2025-0569
was published
Jan 30, 2025
Sante PACS Server DCM File Parsing Memory Corruption Denial-of-Service Vulnerability. This...
High
Unreviewed
CVE-2025-0568
was published
Jan 30, 2025
Sante PACS Server URL path Memory Corruption Denial-of-Service Vulnerability. This vulnerability...
High
Unreviewed
CVE-2025-0574
was published
Jan 30, 2025
A vulnerability was found in Tenda A18 up to 15.13.07.09. It has been rated as critical. This...
High
Unreviewed
CVE-2025-0848
was published
Jan 30, 2025
IBM MQ 9.2 CD, 9.2 LTS, 9.3 CD, and 9.3 LTS could allow a remote attacker to cause a denial of...
High
Unreviewed
CVE-2023-26285
was published
May 5, 2023
An Arm product family through 2022-01-03 has an Exposed Dangerous Method or Function.
High
Unreviewed
CVE-2022-22706
was published
Mar 4, 2022
Data race in audio in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to...
High
Unreviewed
CVE-2021-21166
was published
May 24, 2022
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS...
High
Unreviewed
CVE-2020-3837
was published
May 24, 2022
The Array.prototype.concat implementation in builtins.cc in Google V8, as used in Google Chrome...
High
Unreviewed
CVE-2016-1646
was published
May 14, 2022
IBM Analytics Content Hub 2.0 is vulnerable to a buffer overflow due to improper return length...
High
Unreviewed
CVE-2024-39750
was published
Jan 25, 2025
Windows DWM Core Library Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2023-36033
was published
Nov 14, 2023
Buffer overflow in Active Directory, Active Directory Application Mode (ADAM), and Active...
High
Unreviewed
CVE-2011-3406
was published
May 13, 2022
A vulnerability classified as critical has been found in Tenda AC15 15.13.07.13. This affects the...
High
Unreviewed
CVE-2025-0566
was published
Jan 19, 2025
In the Linux kernel, the following vulnerability has been resolved:
smb: client: fix potential...
High
Unreviewed
CVE-2023-52434
was published
Feb 20, 2024
Buffer underflow in atmfd.dll in the Windows Adobe Type Manager Library in Microsoft Windows...
High
Unreviewed
CVE-2015-2426
was published
May 14, 2022
Heap-based buffer overflow in an API in GDI in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server...
High
Unreviewed
CVE-2008-3465
was published
May 2, 2022
The kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows...
High
Unreviewed
CVE-2012-2897
was published
May 13, 2022
win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003...
High
Unreviewed
CVE-2013-1342
was published
May 14, 2022
Memory corruption when the payload received from firmware is not as per the expected protocol size.
High
Unreviewed
CVE-2024-21475
was published
May 6, 2024
Stack-based buffer overflow vulnerability in synoagentregisterd in Synology DiskStation Manager ...
High
Unreviewed
CVE-2021-26561
was published
May 24, 2022
A vulnerability was found in Netgear R6900 1.0.1.26_1.0.20. It has been declared as critical....
High
Unreviewed
CVE-2024-12147
was published
Dec 4, 2024
ProTip!
Advisories are also available from the
GraphQL API