GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,969
Erlang
39
GitHub Actions
38
Go
2,626
Maven
5,000+
npm
4,257
NuGet
760
pip
4,051
Pub
12
RubyGems
954
Rust
1,052
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,287 advisories
Filter by severity
A buffer overflow vulnerability exists in the QML QtScript Reflect API of Qt Project Qt 6.3.2. A...
High
Unreviewed
CVE-2022-43591
was published
Jan 12, 2023
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1144.
High
Unreviewed
CVE-2023-0051
was published
Jan 4, 2023
In wlan driver, there is a possible missing bounds check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44427
was published
Jan 4, 2023
In wlan driver, there is a possible missing bounds check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44430
was published
Jan 4, 2023
In wlan driver, there is a possible missing bounds check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44428
was published
Jan 4, 2023
In wlan driver, there is a possible missing bounds check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44429
was published
Jan 4, 2023
Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of...
High
Unreviewed
CVE-2022-43599
was published
Dec 23, 2022
Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of...
High
Unreviewed
CVE-2022-43600
was published
Dec 23, 2022
A code execution vulnerability exists in the DDS scanline parsing functionality of OpenImageIO...
Critical
Unreviewed
CVE-2022-41838
was published
Dec 23, 2022
A heap based buffer overflow vulnerability exists in tile decoding code of TIFF image parser in...
Critical
Unreviewed
CVE-2022-41639
was published
Dec 23, 2022
Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of...
High
Unreviewed
CVE-2022-43602
was published
Dec 23, 2022
Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of...
High
Unreviewed
CVE-2022-43601
was published
Dec 23, 2022
Multiple memory corruption vulnerabilities exist in the IFFOutput alignment padding functionality...
High
Unreviewed
CVE-2022-43598
was published
Dec 23, 2022
Multiple memory corruption vulnerabilities exist in the IFFOutput alignment padding functionality...
High
Unreviewed
CVE-2022-43597
was published
Dec 23, 2022
A heap based buffer overflow vulnerability exists in the PSD thumbnail resource parsing code of...
Critical
Unreviewed
CVE-2022-41794
was published
Dec 23, 2022
A vulnerability was found in Axiomatic Bento4. It has been rated as critical. Affected by this...
High
Unreviewed
CVE-2022-4584
was published
Dec 17, 2022
A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead...
High
Unreviewed
CVE-2022-2601
was published
Dec 14, 2022
Binbloom 2.0 was discovered to contain a heap buffer overflow via the read_pointer function at ...
High
Unreviewed
CVE-2022-44910
was published
Dec 14, 2022
Affected builds of Trend Micro Apex One and Apex One as a Service contain a monitor engine...
High
Unreviewed
CVE-2022-44654
was published
Dec 12, 2022
GE CIMPICITY versions 2022 and prior is vulnerable to a heap-based buffer overflow, which could...
High
Unreviewed
CVE-2022-2948
was published
Dec 8, 2022
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0742.
Critical
Unreviewed
CVE-2022-3491
was published
Dec 3, 2022
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0765.
Critical
Unreviewed
CVE-2022-3520
was published
Dec 2, 2022
The target's backtrace indicates that libc has detected a heap error or that the target was...
High
Unreviewed
CVE-2022-4141
was published
Nov 25, 2022
LIEF heap buffer overflow in the LIEF::MachO::BinaryParser::parse_dyldinfo_generic_bind
High
CVE-2022-43171
was published
for
lief
(pip)
Nov 18, 2022
A vulnerability in the generic routing encapsulation (GRE) tunnel decapsulation feature of Cisco...
High
Unreviewed
CVE-2022-20946
was published
Nov 16, 2022
ProTip!
Advisories are also available from the
GraphQL API