GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,308 advisories
Filter by severity
The NtfsHandler.cpp NTFS handler in 7-Zip before 24.01 (for 7zz) contains a heap-based buffer...
High
Unreviewed
CVE-2023-52168
was published
Jul 3, 2024
A vulnerability was found in FFmpeg up to 7.0.1. It has been classified as critical. This affects...
Moderate
Unreviewed
CVE-2024-7055
was published
Aug 6, 2024
A heap-buffer-overflow flaw was found in the cfg_mark_ports function within Unbound's config_file...
Moderate
Unreviewed
CVE-2024-43168
was published
Aug 12, 2024
Due to failure in validating the length provided by an attacker-crafted RTPS packet, Wireshark...
Moderate
Unreviewed
CVE-2023-0666
was published
Jun 7, 2023
Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark...
Moderate
Unreviewed
CVE-2023-0667
was published
Jun 7, 2023
Windows Libarchive Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-20696
was published
Jan 9, 2024
A vulnerability was found in SQLite SQLite3 up to 3.43.0 and classified as critical. This issue...
Moderate
Unreviewed
CVE-2023-7104
was published
Dec 29, 2023
texlive-bin commit c515e was discovered to contain heap buffer overflow via the function...
High
Unreviewed
CVE-2024-25262
was published
Feb 29, 2024
A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper...
Critical
Unreviewed
CVE-2024-12084
was published
Jan 15, 2025
A heap overflow flaw was found in X.Org and Xwayland. The computation of the length in...
High
Unreviewed
CVE-2025-26596
was published
Feb 25, 2025
A buffer overflow flaw was found in X.Org and Xwayland. If XkbChangeTypesOfKey() is called with a...
High
Unreviewed
CVE-2025-26597
was published
Feb 25, 2025
A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted...
Low
Unreviewed
CVE-2024-8443
was published
Sep 10, 2024
GIMP XWD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-10934
was published
Oct 29, 2025
GIMP DCM File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-10922
was published
Oct 29, 2025
GIMP HDR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-10921
was published
Oct 29, 2025
Due to a failure in validating the number of scanline samples of a OpenEXR file containing deep...
Critical
Unreviewed
CVE-2023-5841
was published
Feb 1, 2024
Buffer Overflow vulnerability in FFmpeg version n6.1-3-g466799d4f5, allows a local attacker to...
High
Unreviewed
CVE-2023-49528
was published
Apr 12, 2024
Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute...
High
Unreviewed
CVE-2023-49501
was published
Apr 19, 2024
FFmpeg version n6.1 was discovered to contain a heap buffer overflow vulnerability in the...
High
Unreviewed
CVE-2024-31582
was published
Apr 17, 2024
Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute...
High
Unreviewed
CVE-2023-51795
was published
Apr 19, 2024
BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2023-50230
was published
May 3, 2024
BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2023-50229
was published
May 3, 2024
An issue was discovered in NAS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos...
High
Unreviewed
CVE-2025-54329
was published
Nov 4, 2025
A heap-based buffer overflow vulnerability exists in the configuration file mib_init_value_array...
High
Unreviewed
CVE-2024-21778
was published
Jul 8, 2024
A flaw was found in the GNU coreutils "split" program. A heap overflow with user-controlled data...
Moderate
Unreviewed
CVE-2024-0684
was published
Feb 6, 2024
ProTip!
Advisories are also available from the
GraphQL API