GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,253 advisories
Filter by severity
A buffer overflow vulnerability exists in the QML QtScript Reflect API of Qt Project Qt 6.3.2. A...
High
Unreviewed
CVE-2022-43591
was published
Jan 12, 2023
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1144.
High
Unreviewed
CVE-2023-0051
was published
Jan 4, 2023
In wlan driver, there is a possible missing bounds check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44427
was published
Jan 4, 2023
In wlan driver, there is a possible missing bounds check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44430
was published
Jan 4, 2023
In wlan driver, there is a possible missing bounds check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44428
was published
Jan 4, 2023
In wlan driver, there is a possible missing bounds check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44429
was published
Jan 4, 2023
Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of...
High
Unreviewed
CVE-2022-43599
was published
Dec 23, 2022
Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of...
High
Unreviewed
CVE-2022-43600
was published
Dec 23, 2022
A code execution vulnerability exists in the DDS scanline parsing functionality of OpenImageIO...
Critical
Unreviewed
CVE-2022-41838
was published
Dec 23, 2022
A heap based buffer overflow vulnerability exists in tile decoding code of TIFF image parser in...
Critical
Unreviewed
CVE-2022-41639
was published
Dec 23, 2022
Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of...
High
Unreviewed
CVE-2022-43602
was published
Dec 23, 2022
Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of...
High
Unreviewed
CVE-2022-43601
was published
Dec 23, 2022
Multiple memory corruption vulnerabilities exist in the IFFOutput alignment padding functionality...
High
Unreviewed
CVE-2022-43598
was published
Dec 23, 2022
Multiple memory corruption vulnerabilities exist in the IFFOutput alignment padding functionality...
High
Unreviewed
CVE-2022-43597
was published
Dec 23, 2022
A heap based buffer overflow vulnerability exists in the PSD thumbnail resource parsing code of...
Critical
Unreviewed
CVE-2022-41794
was published
Dec 23, 2022
A vulnerability was found in Axiomatic Bento4. It has been rated as critical. Affected by this...
High
Unreviewed
CVE-2022-4584
was published
Dec 17, 2022
A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead...
High
Unreviewed
CVE-2022-2601
was published
Dec 14, 2022
Binbloom 2.0 was discovered to contain a heap buffer overflow via the read_pointer function at ...
High
Unreviewed
CVE-2022-44910
was published
Dec 14, 2022
Affected builds of Trend Micro Apex One and Apex One as a Service contain a monitor engine...
High
Unreviewed
CVE-2022-44654
was published
Dec 12, 2022
GE CIMPICITY versions 2022 and prior is vulnerable to a heap-based buffer overflow, which could...
High
Unreviewed
CVE-2022-2948
was published
Dec 8, 2022
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0742.
Critical
Unreviewed
CVE-2022-3491
was published
Dec 3, 2022
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0765.
Critical
Unreviewed
CVE-2022-3520
was published
Dec 2, 2022
The target's backtrace indicates that libc has detected a heap error or that the target was...
High
Unreviewed
CVE-2022-4141
was published
Nov 25, 2022
A vulnerability in the generic routing encapsulation (GRE) tunnel decapsulation feature of Cisco...
High
Unreviewed
CVE-2022-20946
was published
Nov 16, 2022
A vulnerability has been identified in JT2Go (All versions < V14.1.0.4), Teamcenter Visualization...
High
Unreviewed
CVE-2022-39136
was published
Nov 8, 2022
ProTip!
Advisories are also available from the
GraphQL API