GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
111,586 advisories
Filter by severity
Ashlar-Vellum Cobalt AR File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2024-13044
was published
Dec 30, 2024
Ashlar-Vellum Cobalt CO File Parsing Type Confusion Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2024-13047
was published
Dec 30, 2024
Ashlar-Vellum Cobalt AR File Parsing Stack-based Buffer Overflow Remote Code Execution...
High
Unreviewed
CVE-2024-13045
was published
Dec 30, 2024
Ashlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution...
High
Unreviewed
CVE-2024-13050
was published
Dec 30, 2024
Ashlar-Vellum Cobalt XE File Parsing Type Confusion Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2024-13049
was published
Dec 30, 2024
Ashlar-Vellum Cobalt CO File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2024-13046
was published
Dec 30, 2024
Ashlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution...
High
Unreviewed
CVE-2024-13051
was published
Dec 30, 2024
Panda Security Dome Link Following Local Privilege Escalation Vulnerability. This vulnerability...
High
Unreviewed
CVE-2024-13043
was published
Dec 30, 2024
Ashlar-Vellum Cobalt XE File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2024-13048
was published
Dec 30, 2024
Delta Electronics DRASimuCAD ICS File Parsing Out-Of-Bounds Write Remote Code Execution...
High
Unreviewed
CVE-2024-12835
was published
Dec 30, 2024
Delta Electronics DRASimuCAD STP File Parsing Type Confusion Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2024-12836
was published
Dec 30, 2024
Delta Electronics DRASimuCAD STP File Parsing Type Confusion Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2024-12834
was published
Dec 30, 2024
Better Auth has an Open Redirect Vulnerability in Verify Email Endpoint
High
CVE-2024-56734
was published
for
better-auth
(npm)
Dec 30, 2024
IBM WebSphere Automation 1.7.5 could allow a remote privileged user, who has authorized access to...
High
Unreviewed
CVE-2024-54181
was published
Dec 30, 2024
The ZENIC ONE R58 products by ZTE Corporation have a command injection vulnerability. An...
High
Unreviewed
CVE-2024-22063
was published
Dec 30, 2024
Boa web server – CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site...
High
Unreviewed
CVE-2024-47924
was published
Dec 30, 2024
Priority – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
High
Unreviewed
CVE-2024-47922
was published
Dec 30, 2024
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
High
Unreviewed
CVE-2024-47917
was published
Dec 30, 2024
Smadar SPS – CWE-327: Use of a Broken or Risky Cryptographic Algorithm
High
Unreviewed
CVE-2024-47921
was published
Dec 30, 2024
Tiki Wiki CMS – CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site...
High
Unreviewed
CVE-2024-47920
was published
Dec 30, 2024
Tecnick TCExam – Multiple CWE-79: Improper Neutralization of Input During Web Page Generation (...
High
Unreviewed
CVE-2024-47925
was published
Dec 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
nfs/localio: must clear res...
High
Unreviewed
CVE-2024-56740
was published
Dec 29, 2024
In the Linux kernel, the following vulnerability has been resolved:
x86/CPU/AMD: Terminate the...
High
Unreviewed
CVE-2024-56721
was published
Dec 29, 2024
The Crypt::Random::Source package before 0.13 for Perl has a fallback to the built-in rand()...
High
Unreviewed
CVE-2018-25107
was published
Dec 29, 2024
GNU GRUB (aka GRUB2) through 2.12 has a heap-based buffer overflow in fs/hfs.c via crafted sblock...
High
Unreviewed
CVE-2024-56737
was published
Dec 29, 2024
ProTip!
Advisories are also available from the
GraphQL API