GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,154
NuGet
736
pip
3,953
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
300 advisories
Filter by severity
zsh through version 5.4.2 is vulnerable to a stack-based buffer overflow in the exec.c:hashcmd()...
Moderate
Unreviewed
CVE-2018-1071
was published
May 13, 2022
A stack-based buffer overflow issue was discovered in NXP i.MX 50, i.MX 53, i.MX 6ULL, i.MX...
Moderate
Unreviewed
CVE-2017-7936
was published
May 13, 2022
A Stack-based Buffer Overflow issue was discovered in GE CIMPLICITY Versions 9.0 and prior. A...
Moderate
Unreviewed
CVE-2017-12732
was published
May 13, 2022
Qemu emulator <= 3.0.0 built with the NE2000 NIC emulation support is vulnerable to an integer...
Moderate
Unreviewed
CVE-2018-10839
was published
May 13, 2022
A Stack-based Buffer Overflow issue was discovered in Advantech WebAccess versions prior to V8...
Moderate
Unreviewed
CVE-2017-14016
was published
May 17, 2022
NREL EnergyPlus, Versions 8.6.0 and possibly prior versions, The application fails to prevent an...
Moderate
Unreviewed
CVE-2019-10974
was published
May 24, 2022
The Telegram app 7.6.2 for iOS allows remote authenticated users to cause a denial of service ...
Moderate
Unreviewed
CVE-2021-30496
was published
May 24, 2022
Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017...
Moderate
Unreviewed
CVE-2021-39845
was published
May 24, 2022
A vulnerability was found in the Linux kernel's nft_set_desc_concat_parse() function .This flaw...
Moderate
Unreviewed
CVE-2022-2078
was published
Jul 1, 2022
This vulnerability allows local attackers to escalate privileges on affected installations of...
Moderate
Unreviewed
CVE-2022-35867
was published
Aug 4, 2022
A stack buffer overflow flaw was found in Libtiffs' tiffcp.c in main() function. This flaw allows...
Moderate
Unreviewed
CVE-2022-1355
was published
Sep 1, 2022
In face detect driver, there is a possible out of bounds write due to a missing bounds check....
Moderate
Unreviewed
CVE-2022-38672
was published
Oct 15, 2022
XPDF v4.04 was discovered to contain a stack overflow via the function FileStream::copy() at xpdf...
Moderate
Unreviewed
CVE-2022-43295
was published
Nov 15, 2022
In face detect driver, there is a possible out of bounds write due to a missing bounds check....
Moderate
Unreviewed
CVE-2022-39129
was published
Dec 6, 2022
In sensor driver, there is a possible out of bounds write due to a missing bounds check. This...
Moderate
Unreviewed
CVE-2022-39106
was published
Dec 6, 2022
In sprd_sysdump driver, there is a possible out of bounds write due to a missing bounds check....
Moderate
Unreviewed
CVE-2022-39116
was published
Jan 4, 2023
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the ...
Moderate
Unreviewed
CVE-2017-16264
was published
Jan 12, 2023
Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005...
Moderate
Unreviewed
CVE-2023-21610
was published
Jan 18, 2023
In wlan driver, there is a possible missing params check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44448
was published
Feb 12, 2023
IBM App Connect Enterprise 11.0.0.8 through 11.0.0.19 and 12.0.1.0 through 12.0.5.0 is vulnerable...
Moderate
Unreviewed
CVE-2022-42444
was published
Feb 12, 2023
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected...
Moderate
Unreviewed
CVE-2022-43625
was published
Mar 29, 2023
yasm 1.3.0.55.g101bc was discovered to contain a stack overflow via the function parse_expr5 at ...
Moderate
Unreviewed
CVE-2023-29583
was published
Apr 24, 2023
A vulnerability, which was classified as critical, has been found in H3C R160 V1004004. Affected...
Moderate
Unreviewed
CVE-2023-2676
was published
May 12, 2023
Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.2.
Moderate
Unreviewed
CVE-2023-2837
was published
May 22, 2023
A vulnerability classified as critical was found in Tenda AC6 US_AC6V1.0BR_V15.03.05.19. Affected...
Moderate
Unreviewed
CVE-2023-2923
was published
May 27, 2023
ProTip!
Advisories are also available from the
GraphQL API