GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,992
Erlang
39
GitHub Actions
38
Go
2,634
Maven
5,000+
npm
4,258
NuGet
760
pip
4,051
Pub
12
RubyGems
955
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,290 advisories
Filter by severity
The target's backtrace indicates that libc has detected a heap error or that the target was...
High
Unreviewed
CVE-2022-4141
was published
Nov 25, 2022
LIEF heap buffer overflow in the LIEF::MachO::BinaryParser::parse_dyldinfo_generic_bind
High
CVE-2022-43171
was published
for
lief
(pip)
Nov 18, 2022
A vulnerability in the generic routing encapsulation (GRE) tunnel decapsulation feature of Cisco...
High
Unreviewed
CVE-2022-20946
was published
Nov 16, 2022
A vulnerability has been identified in JT2Go (All versions < V14.1.0.4), Teamcenter Visualization...
High
Unreviewed
CVE-2022-39136
was published
Nov 8, 2022
Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by a...
Critical
Unreviewed
CVE-2022-35711
was published
Oct 15, 2022
Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by a...
Critical
Unreviewed
CVE-2022-35712
was published
Oct 15, 2022
A vulnerability has been identified in Solid Edge (All Versions < SE2022MP9). The affected...
High
Unreviewed
CVE-2022-37864
was published
Oct 11, 2022
There exists an unchecked length field in UBoot. The U-Boot DFU implementation does not bound the...
High
Unreviewed
CVE-2022-2347
was published
Sep 25, 2022
A heap out-of-bounds memory write exists in FFMPEG since version 5.1. The size calculation in ...
High
Unreviewed
CVE-2022-2566
was published
Sep 25, 2022
An integer overflow in WhatsApp could result in remote code execution in an established video call.
Critical
Unreviewed
CVE-2022-36934
was published
Sep 23, 2022
Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by a Heap-based...
High
Unreviewed
CVE-2022-35708
was published
Sep 20, 2022
Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by a Heap-based...
High
Unreviewed
CVE-2022-35706
was published
Sep 20, 2022
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0483.
High
Unreviewed
CVE-2022-3234
was published
Sep 18, 2022
Adobe Animate version 21.0.11 (and earlier) and 22.0.7 (and earlier) are affected by a Heap-based...
High
Unreviewed
CVE-2022-38411
was published
Sep 17, 2022
Adobe Photoshop versions 22.5.8 (and earlier) and 23.4.2 (and earlier) are affected by a Heap...
High
Unreviewed
CVE-2022-38432
was published
Sep 17, 2022
Adobe Photoshop versions 22.5.8 (and earlier) and 23.4.2 (and earlier) are affected by a Heap...
High
Unreviewed
CVE-2022-38433
was published
Sep 17, 2022
Adobe InDesign versions 16.4.2 (and earlier) and 17.3 (and earlier) are affected by a Heap-based...
High
Unreviewed
CVE-2022-38414
was published
Sep 17, 2022
Adobe InDesign versions 16.4.2 (and earlier) and 17.3 (and earlier) are affected by a Heap-based...
High
Unreviewed
CVE-2022-38413
was published
Sep 17, 2022
Adobe InCopy version 17.3 (and earlier) and 16.4.2 (and earlier) are affected by a Heap-based...
High
Unreviewed
CVE-2022-38405
was published
Sep 17, 2022
Adobe InDesign versions 16.4.2 (and earlier) and 17.3 (and earlier) are affected by a Heap-based...
High
Unreviewed
CVE-2022-38415
was published
Sep 17, 2022
Adobe InCopy version 17.3 (and earlier) and 16.4.2 (and earlier) are affected by a Heap-based...
High
Unreviewed
CVE-2022-38401
was published
Sep 17, 2022
Adobe InCopy version 17.3 (and earlier) and 16.4.2 (and earlier) are affected by a Heap-based...
High
Unreviewed
CVE-2022-38404
was published
Sep 17, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2022-40661
was published
Sep 16, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2022-40660
was published
Sep 16, 2022
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
High
Unreviewed
CVE-2022-40655
was published
Sep 16, 2022
ProTip!
Advisories are also available from the
GraphQL API