GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,866
Erlang
36
GitHub Actions
36
Go
2,492
Maven
5,000+
npm
4,115
NuGet
735
pip
3,938
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
115 advisories
Filter by severity
Jenkins item creation restriction bypass vulnerability
Moderate
CVE-2024-47804
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
Oct 2, 2024
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Moderate
Unreviewed
CVE-2024-43489
was published
Sep 19, 2024
Microsoft Edge (HTML-based) Memory Corruption Vulnerability
Moderate
Unreviewed
CVE-2024-38207
was published
Aug 24, 2024
In shouldWrite of OwnersData.java, there is a possible edge case that prevents MDM policies from...
Moderate
Unreviewed
CVE-2024-34742
was published
Aug 16, 2024
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Moderate
Unreviewed
CVE-2024-38219
was published
Aug 12, 2024
A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 16...
Moderate
Unreviewed
CVE-2024-40788
was published
Jul 30, 2024
Inappropriate implementation in Downloads in Google Chrome prior to 126.0.6478.54 allowed a...
Moderate
Unreviewed
CVE-2024-5843
was published
Jun 11, 2024
Unlike 32-bit PV guests, HVM guests may switch freely between 64-bit and
other modes. This in...
Moderate
Unreviewed
CVE-2023-46842
was published
May 16, 2024
Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-30034
was published
May 14, 2024
In TBD of TBD, there is a possible confusion of OEM and DRM certificates due to improperly used...
Moderate
Unreviewed
CVE-2024-0042
was published
May 7, 2024
marshall in dhcp_packet.c in simple-dhcp-server through ec976d2 allows remote attackers to cause...
Moderate
Unreviewed
CVE-2023-50433
was published
Apr 30, 2024
In keyInstall, there is a possible escalation of privilege due to type confusion. This could lead...
Moderate
Unreviewed
CVE-2024-20010
was published
Feb 5, 2024
In keyInstall, there is a possible escalation of privilege due to type confusion. This could lead...
Moderate
Unreviewed
CVE-2024-20012
was published
Feb 5, 2024
Windows Online Certificate Status Protocol (OCSP) Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-20662
was published
Jan 9, 2024
Some Honor products are affected by type confusion vulnerability, successful exploitation could...
Moderate
Unreviewed
CVE-2023-6939
was published
Dec 29, 2023
Some Honor products are affected by type confusion vulnerability, successful exploitation could...
Moderate
Unreviewed
CVE-2023-23443
was published
Dec 29, 2023
Some Honor products are affected by type confusion vulnerability, successful exploitation could...
Moderate
Unreviewed
CVE-2023-51427
was published
Dec 29, 2023
Some Honor products are affected by type confusion vulnerability, successful exploitation could...
Moderate
Unreviewed
CVE-2023-23442
was published
Dec 29, 2023
Some Honor products are affected by type confusion vulnerability, successful exploitation could...
Moderate
Unreviewed
CVE-2023-51428
was published
Dec 29, 2023
Some Honor products are affected by type confusion vulnerability, successful exploitation could...
Moderate
Unreviewed
CVE-2023-51426
was published
Dec 29, 2023
in OpenHarmony v3.2.2 and prior versions allow a local attacker causes system information leak...
Moderate
Unreviewed
CVE-2023-46705
was published
Nov 20, 2023
in OpenHarmony v3.2.2 and prior versions allow a local attacker arbitrary code execution in pre...
Moderate
Unreviewed
CVE-2023-6045
was published
Nov 20, 2023
In secmem, there is a possible memory corruption due to type confusion. This could lead to local...
Moderate
Unreviewed
CVE-2023-32834
was published
Nov 6, 2023
In vdec, there is a possible out of bounds write due to type confusion. This could lead to local...
Moderate
Unreviewed
CVE-2023-32818
was published
Nov 6, 2023
In keyinstall, there is a possible memory corruption due to type confusion. This could lead to...
Moderate
Unreviewed
CVE-2023-32835
was published
Nov 6, 2023
ProTip!
Advisories are also available from the
GraphQL API