GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
11,356 advisories
Filter by severity
A remote code execution vulnerability exists when the Windows font library improperly handles...
Moderate
Unreviewed
CVE-2020-1436
was published
May 24, 2022
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV320 and...
High
Unreviewed
CVE-2020-3288
was published
May 24, 2022
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV320 and...
High
Unreviewed
CVE-2020-3291
was published
May 24, 2022
An issue was discovered in LibVNCServer before 0.9.13. libvncserver/corre.c allows out-of-bounds...
High
Unreviewed
CVE-2020-14402
was published
May 24, 2022
Due to confusion about ValueTags on JavaScript Objects, an object may pass through the type...
High
Unreviewed
CVE-2020-12417
was published
May 24, 2022
An issue was discovered in LibVNCServer before 0.9.13. libvncserver/rre.c allows out-of-bounds...
High
Unreviewed
CVE-2020-14404
was published
May 24, 2022
Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017...
Moderate
Unreviewed
CVE-2019-8066
was published
May 24, 2022
An issue was discovered in janus-gateway (aka Janus WebRTC Server) through 0.10.0....
High
Unreviewed
CVE-2020-13901
was published
May 24, 2022
Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds...
High
Unreviewed
CVE-2023-21590
was published
Jan 13, 2023
Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds...
High
Unreviewed
CVE-2023-21589
was published
Jan 13, 2023
A vulnerability in the JPEG image parsing module in DaView Indy, DaVa+, DaOffice softwares could...
Moderate
Unreviewed
CVE-2020-7816
was published
May 24, 2022
It was discovered that websockets.c in LibVNCServer prior to 0.9.12 did not properly decode...
High
Unreviewed
CVE-2017-18922
was published
May 24, 2022
A buffer overflow vulnerability exists in Linksys WRT54GL Wireless-G Broadband Router with...
High
Unreviewed
CVE-2022-43970
was published
Jan 9, 2023
Tasmota before commit 066878da4d4762a9b6cb169fdf353e804d735cfd was discovered to contain a stack...
Critical
Unreviewed
CVE-2022-43294
was published
Nov 15, 2022
IOWOW is a C utility library and persistent key/value storage engine. Versions 1.4.15 and prior...
High
Unreviewed
CVE-2022-23462
was published
Oct 22, 2022
A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could...
High
Unreviewed
CVE-2022-42936
was published
Oct 21, 2022
Adobe InCopy version 17.3 (and earlier) and 16.4.2 (and earlier) are affected by a Heap-based...
High
Unreviewed
CVE-2022-38405
was published
Sep 17, 2022
Adobe InDesign versions 16.4.2 (and earlier) and 17.3 (and earlier) are affected by a Heap-based...
High
Unreviewed
CVE-2022-38415
was published
Sep 17, 2022
A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could...
High
Unreviewed
CVE-2022-42944
was published
Oct 21, 2022
A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could...
High
Unreviewed
CVE-2022-42943
was published
Oct 21, 2022
A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could...
High
Unreviewed
CVE-2022-42937
was published
Oct 21, 2022
A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could...
High
Unreviewed
CVE-2022-42942
was published
Oct 21, 2022
A malicious crafted TGA file when consumed through DesignReview.exe application could lead to...
High
Unreviewed
CVE-2022-42940
was published
Oct 21, 2022
A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could...
High
Unreviewed
CVE-2022-42933
was published
Oct 21, 2022
Adobe Animate version 21.0.11 (and earlier) and 22.0.7 (and earlier) are affected by a Heap-based...
High
Unreviewed
CVE-2022-38411
was published
Sep 17, 2022
ProTip!
Advisories are also available from the
GraphQL API