GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
37
GitHub Actions
36
Go
2,494
Maven
5,000+
npm
4,129
NuGet
735
pip
3,944
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
281 advisories
Filter by severity
protobuf-java has potential Denial of Service issue
High
CVE-2024-7254
was published
for
com.google.protobuf:protobuf-java
(RubyGems)
Sep 19, 2024
Out-of-bounds Write in Chakra
High
CVE-2020-17131
was published
for
Microsoft.ChakraCore
(NuGet)
Apr 13, 2021
protobuf susceptible to buffer overflow
High
CVE-2015-5237
was published
for
Google.Protobuf
(Composer)
May 13, 2022
libwebp: OOB write in BuildHuffmanTable
High
CVE-2023-4863
was published
for
Pillow
(Go)
Sep 12, 2023
Wasmi Out-of-bounds Write for host to Wasm calls with more than 128 Parameters
High
CVE-2024-28123
was published
for
wasmi
(Rust)
Mar 7, 2024
Chakra Scripting Engine RCE via Out-of-bounds write
High
CVE-2019-1052
was published
for
Microsoft.ChakraCore
(NuGet)
May 24, 2022
Chakra Scripting Engine RCE via Out-of-bounds write
High
CVE-2019-1051
was published
for
Microsoft.ChakraCore
(NuGet)
May 24, 2022
Chakra Scripting Engine RCE Vulnerability
High
CVE-2019-1024
was published
for
Microsoft.ChakraCore
(NuGet)
May 24, 2022
Chakra Scripting Engine Out-of-bounds write
High
CVE-2019-1003
was published
for
Microsoft.ChakraCore
(NuGet)
Mar 29, 2021
ChakraCore RCE via Out-of-bounds write
High
CVE-2019-1002
was published
for
Microsoft.ChakraCore
(NuGet)
May 24, 2022
Chakra Scripting Engine Out-of-bounds write
High
CVE-2019-0993
was published
for
Microsoft.ChakraCore
(NuGet)
Mar 29, 2021
Chakra Scripting Engine Out-of-bounds write
High
CVE-2019-0992
was published
for
Microsoft.ChakraCore
(NuGet)
Mar 29, 2021
Chakra Scripting Engine Out-of-bounds write
High
CVE-2019-0991
was published
for
Microsoft.ChakraCore
(NuGet)
Mar 29, 2021
Chakra Scripting Engine Memory Corruption Vulnerability
High
CVE-2019-0989
was published
for
Microsoft.ChakraCore
(NuGet)
Mar 29, 2021
LIEF heap buffer overflow in the LIEF::MachO::BinaryParser::parse_dyldinfo_generic_bind
High
CVE-2022-43171
was published
for
lief
(pip)
Nov 18, 2022
Out-of-bounds Write in SixLabors ImageSharp
High
CVE-2025-27598
was published
for
SixLabors.ImageSharp
(NuGet)
Mar 6, 2025
ChakraCore RCE Vulnerability
High
CVE-2016-7200
was published
for
Microsoft.ChakraCore
(NuGet)
May 14, 2022
htmlcleaner vulnerable to stack exhaustion
High
CVE-2023-34624
was published
for
net.sourceforge.htmlcleaner:htmlcleaner
(Maven)
Jun 14, 2023
jsonij vulnerable to stack exhaustion
High
CVE-2023-34614
was published
for
cc.plural:jsonij
(Maven)
Jun 14, 2023
sojo vulnerable to stack exhaustion
High
CVE-2023-34613
was published
for
net.sf.sojo:sojo
(Maven)
Jun 14, 2023
ph-json vulnerable to stack exhaustion
High
CVE-2023-34612
was published
for
com.helger.commons:ph-json
(Maven)
Jun 14, 2023
json-io vulnerable to stack exhaustion
High
CVE-2023-34610
was published
for
com.cedarsoftware:json-io
(Maven)
Jun 14, 2023
pbjson vulnerable to stack exhaustion
High
CVE-2023-34616
was published
for
com.progsbase.libraries:JSON
(Maven)
Jun 14, 2023
ProTip!
Advisories are also available from the
GraphQL API