GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
293 advisories
Filter by severity
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-26664
was published
Apr 8, 2025
Apache Tomcat Buffer Over-Read
High
CVE-2006-7197
was published
for
org.apache.tomcat:tomcat
(Maven)
May 1, 2022
In wlan driver, there is a possible missing bounds check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44443
was published
Jan 4, 2023
In wlan driver, there is a possible missing bounds check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44445
was published
Jan 4, 2023
In wlan driver, there is a possible missing bounds check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44446
was published
Jan 4, 2023
The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token...
High
Unreviewed
CVE-2017-7668
was published
Apr 30, 2022
In Apache httpd 2.2.x before 2.2.33 and 2.4.x before 2.4.26, mod_mime can read one byte past the...
Critical
Unreviewed
CVE-2017-7679
was published
May 13, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42762
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42759
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Low
Unreviewed
CVE-2022-42758
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Low
Unreviewed
CVE-2022-42757
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42779
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42768
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42780
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42774
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42781
was published
Dec 6, 2022
In camera driver, there is a possible out of bounds write due to a missing bounds check. This...
Moderate
Unreviewed
CVE-2022-39132
was published
Dec 6, 2022
In face detect driver, there is a possible out of bounds write due to a missing bounds check....
Moderate
Unreviewed
CVE-2022-39130
was published
Dec 6, 2022
StringIO buffer overread vulnerability
Critical
CVE-2024-27280
was published
for
stringio
(RubyGems)
Mar 25, 2024
Microsoft Security Advisory CVE-2025-21176 | .NET and Visual Studio Remote Code Execution Vulnerability
High
CVE-2025-21176
was published
for
Microsoft.NetCore.App.Runtime.linux-arm
(NuGet)
Jan 14, 2025
ECMP dissector crash in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via...
Moderate
Unreviewed
CVE-2024-11596
was published
May 7, 2025
Buffer over-read in PostgreSQL GB18030 encoding validation allows a database input provider to...
Moderate
Unreviewed
CVE-2025-4207
was published
May 8, 2025
Transient DOS while processing of a registration acceptance OTA due to incorrect ciphering key...
High
Unreviewed
CVE-2024-49847
was published
May 6, 2025
Memory corruption while processing escape code, when DisplayId is passed with large unsigned value.
High
Unreviewed
CVE-2025-21475
was published
May 6, 2025
Memory corruption while decoding of OTA messages from T3448 IE.
High
Unreviewed
CVE-2024-49846
was published
May 6, 2025
ProTip!
Advisories are also available from the
GraphQL API