GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
56 advisories
Filter by severity
A heap overflow vulnerability in IPSec component of Ivanti Connect Secure (9.x, 22.x) and Ivanti...
High
Unreviewed
CVE-2024-21894
was published
Apr 5, 2024
A heap overflow vulnerability in IPSec component of Ivanti Connect Secure (9.x
22.x) and Ivanti...
High
Unreviewed
CVE-2024-22053
was published
Apr 4, 2024
A null pointer dereference vulnerability in IPSec component of Ivanti Connect Secure (9.x, 22.x)...
High
Unreviewed
CVE-2024-22052
was published
Apr 4, 2024
An XML entity expansion or XEE vulnerability in SAML component of Ivanti Connect Secure (9.x, 22...
Moderate
Unreviewed
CVE-2024-22023
was published
Apr 4, 2024
S-Lang 2.3.2 was discovered to contain an arithmetic exception via the function tt_sprintf().
Critical
Unreviewed
CVE-2023-45927
was published
Mar 27, 2024
printer_write in drivers/usb/gadget/function/f_printer.c in the Linux kernel through 6.7.4 does...
Moderate
Unreviewed
CVE-2024-25741
was published
Feb 12, 2024
AVEVA PI Server versions 2023 and 2018 SP3 P05 and prior contain a vulnerability that could...
High
Unreviewed
CVE-2023-34348
was published
Jan 18, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in Juniper DHCP Daemon ...
Moderate
Unreviewed
CVE-2023-36842
was published
Jan 12, 2024
An improper handling of a malformed API request to an API server in Bosch BT software products...
High
Unreviewed
CVE-2023-32230
was published
Dec 22, 2023
An improper handling of a malformed API answer packets to API clients in Bosch BT software...
Moderate
Unreviewed
CVE-2023-35867
was published
Dec 22, 2023
A flaw was found in KVM. An improper check in svm_set_x2apic_msr_interception() may allow direct...
Moderate
Unreviewed
CVE-2023-5090
was published
Nov 6, 2023
An Improper Check or Handling of Exceptional Conditions vulnerability in the Packet Forwarding...
Moderate
Unreviewed
CVE-2023-44203
was published
Oct 13, 2023
An unhandled edge case in the component _sanitizedPath of ZipArchive v2.5.4 allows attackers to...
Moderate
Unreviewed
CVE-2023-39136
was published
Aug 31, 2023
Motorola EBTS/MBTS Site Controller drops to debug prompt on unhandled exception. The Motorola...
High
Unreviewed
CVE-2023-23774
was published
Aug 29, 2023
An unhandled error in Vault Enterprise's namespace creation may cause the Vault process to crash,...
Unknown
Unreviewed
CVE-2023-3774
was published
Jul 28, 2023
An Improper Check or Handling of Exceptional Conditions vulnerability in the Layer-2 control...
Moderate
Unreviewed
CVE-2023-36849
was published
Jul 14, 2023
An Improper Check or Handling of Exceptional Conditions vulnerability in the UTM (Unified Threat...
High
Unreviewed
CVE-2023-36831
was published
Jul 14, 2023
NVIDIA ConnectX-5, ConnectX-6, and ConnectX6-DX contain a vulnerability in the NIC firmware,...
High
Unreviewed
CVE-2023-0204
was published
Apr 22, 2023
An Improper Check or Handling of Exceptional Conditions vulnerability in packet processing on the...
Moderate
Unreviewed
CVE-2023-28970
was published
Apr 18, 2023
An Improper Check or Handling of Exceptional Conditions within the storm control feature of...
High
Unreviewed
CVE-2023-28965
was published
Apr 18, 2023
An Improper Check or Handling of Exceptional Conditions vulnerability in packet processing of...
Moderate
Unreviewed
CVE-2023-28959
was published
Apr 18, 2023
A local file deletion vulnerability in Palo Alto Networks PAN-OS software enables an...
Moderate
Unreviewed
CVE-2023-0004
was published
Apr 12, 2023
In BitmapExport.java, there is a possible failure to truncate images due to a logic error in the...
Moderate
Unreviewed
CVE-2023-21036
was published
Mar 24, 2023
In updateInputChannel of WindowManagerService.java, there is a possible way to set a touchable...
Moderate
Unreviewed
CVE-2023-21026
was published
Mar 24, 2023
If there was a PAC URL set and the server that hosts the PAC was not reachable, OCSP requests...
Moderate
Unreviewed
CVE-2022-34472
was published
Dec 22, 2022
ProTip!
Advisories are also available from the
GraphQL API