GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,288 advisories
Filter by severity
An Integer Overflow vulnerability in WLInfoRailService component of Ivanti Avalanche before 6.4.3...
High
Unreviewed
CVE-2024-23531
was published
Apr 19, 2024
An issue in `coap_pdu.c` in libcoap 4.3.4 allows attackers to cause undefined behavior via a...
High
Unreviewed
CVE-2024-31031
was published
Apr 17, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix hashtab overflow...
High
Unreviewed
CVE-2024-26884
was published
Apr 17, 2024
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). The...
Low
Unreviewed
CVE-2024-21105
was published
Apr 17, 2024
In the Linux kernel, the following vulnerability has been resolved:
amdkfd: use calloc instead...
Moderate
Unreviewed
CVE-2024-26817
was published
Apr 13, 2024
Animate versions 23.0.4, 24.0.1 and earlier are affected by an Integer Overflow or Wraparound...
High
Unreviewed
CVE-2024-20795
was published
Apr 11, 2024
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-28929
was published
Apr 9, 2024
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-28936
was published
Apr 9, 2024
Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-28942
was published
Apr 9, 2024
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-28931
was published
Apr 9, 2024
Secure Boot Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-28923
was published
Apr 9, 2024
Secure Boot Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-26171
was published
Apr 9, 2024
An issue in Academy Software Foundation openexr v.3.2.3 and before allows a local attacker to...
Low
Unreviewed
CVE-2024-31047
was published
Apr 9, 2024
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_limit: reject...
Moderate
Unreviewed
CVE-2024-26668
was published
Apr 2, 2024
Transient DOS while decoding the ToBeSignedMessage in Automotive Telematics.
High
Unreviewed
CVE-2024-21454
was published
Apr 1, 2024
Memory corruption while allocating memory for graphics.
High
Unreviewed
CVE-2024-21470
was published
Apr 1, 2024
In battery, there is a possible out of bounds read due to an integer overflow. This could lead to...
Moderate
Unreviewed
CVE-2024-20047
was published
Apr 1, 2024
In battery, there is a possible escalation of privilege due to an integer overflow. This could...
Moderate
Unreviewed
CVE-2024-20046
was published
Apr 1, 2024
In the Linux kernel, the following vulnerability has been resolved:
neighbour: allow NUD_NOARP...
Moderate
Unreviewed
CVE-2021-47109
was published
Mar 15, 2024
Integer Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series...
Critical
Unreviewed
CVE-2024-1916
was published
Mar 15, 2024
Integer Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series...
Critical
Unreviewed
CVE-2024-1917
was published
Mar 15, 2024
Integer Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series...
Critical
Unreviewed
CVE-2024-0803
was published
Mar 15, 2024
An Integer-based buffer overflow vulnerability in the SonicOS via IPSec allows a remote attacker...
Moderate
Unreviewed
CVE-2024-22396
was published
Mar 14, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-21444
was published
Mar 12, 2024
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-21450
was published
Mar 12, 2024
ProTip!
Advisories are also available from the
GraphQL API