GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
37
GitHub Actions
36
Go
2,500
Maven
5,000+
npm
4,147
NuGet
735
pip
3,948
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
448 advisories
Filter by severity
A flaw was found in Binutils. A logic fail in the bfd_init_section_decompress_status function may...
Moderate
Unreviewed
CVE-2023-25586
was published
Sep 14, 2023
An information disclosure vulnerability exists in the ClientConnect() functionality of SoftEther...
Moderate
Unreviewed
CVE-2023-31192
was published
Oct 12, 2023
in OpenHarmony v3.2.2 and prior versions allow a local attacker get sensitive buffer information...
Moderate
Unreviewed
CVE-2023-46100
was published
Nov 20, 2023
An uninitialized pointer use vulnerability exists in the functionality of WPS Office 11.2.0.11537...
High
Unreviewed
CVE-2023-31275
was published
Nov 27, 2023
The first S0 encryption key is generated with an uninitialized PRNG in Z/IP Gateway products...
Moderate
Unreviewed
CVE-2023-4489
was published
Dec 15, 2023
A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05.20), CP...
Moderate
Unreviewed
CVE-2023-42797
was published
Jan 9, 2024
Windows CoreMessaging Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-20694
was published
Jan 9, 2024
When HTTP/2 is configured on BIG-IP or BIG-IP Next SPK systems, undisclosed responses can cause...
High
Unreviewed
CVE-2024-23314
was published
Feb 14, 2024
A maliciously crafted STP or SLDPRT file when ODXSW_DLL.dll parsed through Autodesk AutoCAD can...
High
Unreviewed
CVE-2024-23137
was published
Feb 22, 2024
Helm's Missing YAML Content Leads To Panic
High
CVE-2024-26147
was published
for
helm.sh/helm/v3
(Go)
Feb 22, 2024
Uninitialized Variable in fastecdsa
High
CVE-2024-21502
was published
for
fastecdsa
(pip)
Feb 24, 2024
In the Linux kernel, the following vulnerability has been resolved:
crypto: qat -...
Moderate
Unreviewed
CVE-2021-47056
was published
Mar 1, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: usb: smsc75xx: Fix...
Moderate
Unreviewed
CVE-2023-52528
was published
Mar 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
dccp: fix dccp_v4_err()...
Moderate
Unreviewed
CVE-2023-52577
was published
Mar 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
ALSA: rawmidi - fix the...
Moderate
Unreviewed
CVE-2021-47096
was published
Mar 4, 2024
In the Linux kernel, the following vulnerability has been resolved:
asix: fix uninit-value in...
High
Unreviewed
CVE-2021-47101
was published
Mar 4, 2024
In the Linux kernel, the following vulnerability has been resolved:
ip6_tunnel: make sure to...
Moderate
Unreviewed
CVE-2024-26641
was published
Mar 18, 2024
In the Linux kernel, the following vulnerability has been resolved:
nbd: always initialize...
Moderate
Unreviewed
CVE-2024-26638
was published
Mar 18, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: zero-initialize tc skb...
Moderate
Unreviewed
CVE-2021-47136
was published
Mar 25, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: hns3: put off calling...
Moderate
Unreviewed
CVE-2021-47139
was published
Mar 25, 2024
In the Linux kernel, the following vulnerability has been resolved:
btrfs: don't abort...
Moderate
Unreviewed
CVE-2024-26644
was published
Mar 26, 2024
In the Linux kernel, the following vulnerability has been resolved:
iio: adc: ad4130: zero...
Moderate
Unreviewed
CVE-2024-26711
was published
Apr 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
dmaengine: fsl-qdma: init...
Moderate
Unreviewed
CVE-2024-26788
was published
Apr 4, 2024
In the Linux kernel, the following vulnerability has been resolved:
netlink: Fix kernel-infoleak...
Moderate
Unreviewed
CVE-2024-26805
was published
Apr 4, 2024
crayon: ObjectPool creates uninitialized memory when freeing objects
High
GHSA-xfhw-6mc4-mgxf
was published
for
crayon
(Rust)
Apr 5, 2024
ProTip!
Advisories are also available from the
GraphQL API