GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,640
Maven
5,000+
npm
4,265
NuGet
760
pip
4,061
Pub
12
RubyGems
956
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
11,349 advisories
Filter by severity
A stack-based buffer overflow vulnerability exists in the httpd do_wds functionality of Yifan...
Critical
Unreviewed
CVE-2023-31272
was published
Oct 11, 2023
Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3...
High
Unreviewed
CVE-2023-25108
was published
Jul 6, 2023
Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3...
High
Unreviewed
CVE-2023-25110
was published
Jul 6, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
Critical
Unreviewed
CVE-2022-0194
was published
Mar 28, 2023
Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3...
High
Unreviewed
CVE-2023-25083
was published
Jul 6, 2023
Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3...
High
Unreviewed
CVE-2023-25085
was published
Jul 6, 2023
Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3...
High
Unreviewed
CVE-2023-25087
was published
Jul 6, 2023
Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3...
High
Unreviewed
CVE-2023-25082
was published
Jul 6, 2023
Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3...
High
Unreviewed
CVE-2023-25086
was published
Jul 6, 2023
ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger...
High
Unreviewed
CVE-2023-29491
was published
Apr 14, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
Critical
Unreviewed
CVE-2022-23122
was published
Mar 28, 2023
An out-of-bounds write vulnerability exists in TPM2.0's Module Library allowing writing of a 2...
High
Unreviewed
CVE-2023-1017
was published
Feb 28, 2023
Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3...
High
Unreviewed
CVE-2023-25081
was published
Jul 6, 2023
Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3...
High
Unreviewed
CVE-2023-25084
was published
Jul 6, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
Critical
Unreviewed
CVE-2022-23125
was published
Mar 28, 2023
An issue was discovered in Samsung Mobile Processor Exynos 2400, 1580, 2500. A race condition in...
High
Unreviewed
CVE-2025-52513
was published
Nov 4, 2025
Stack overflow vulnerability that allows a local root user to access UEFI DXE driver and execute...
High
Unreviewed
CVE-2021-42059
was published
Feb 10, 2022
SMM memory corruption vulnerability allowing a possible attacker to write fixed or predictable...
Critical
Unreviewed
CVE-2021-42554
was published
Feb 10, 2022
SMM memory corruption vulnerability allowing a possible attacker to write fixed or predictable...
Critical
Unreviewed
CVE-2022-24030
was published
Feb 10, 2022
An issue was discovered on certain Fujitsu LIEFBOOK devices (A3510, U9310, U7511/U7411/U7311,...
High
Unreviewed
CVE-2022-28806
was published
May 5, 2022
SMM callout vulnerability allowing a possible attacker to hijack execution flow of a code running...
Critical
Unreviewed
CVE-2021-43615
was published
Feb 9, 2022
An issue was discovered in Insyde InsydeH2O with kernel 5.1 through 2021-11-08, 5.2 through 2021...
High
Unreviewed
CVE-2021-43522
was published
Feb 10, 2022
An issue was discovered in IdeBusDxe in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2...
Critical
Unreviewed
CVE-2021-45970
was published
Feb 10, 2022
An issue was discovered in NvmExpressDxe in Insyde InsydeH2O with kernel 5.1 through 5.5. An SMM...
Critical
Unreviewed
CVE-2022-24031
was published
Feb 9, 2022
There is an out-of-bounds write in checkType located in etc.c in w3m 0.5.3. It can be triggered...
High
Unreviewed
CVE-2022-38223
was published
Aug 16, 2022
ProTip!
Advisories are also available from the
GraphQL API