GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,985 advisories
Filter by severity
thread_call in sqbaselib.cpp in SQUIRREL 3.2 lacks a certain sq_reservestack call.
Critical
Unreviewed
CVE-2022-30292
was published
May 6, 2022
Tenda AX12 v22.03.01.21_CN was discovered to contain a stack overflow via the list parameter at ...
Critical
Unreviewed
CVE-2022-28082
was published
May 5, 2022
There is a stack overflow vulnerability in the /goform/setMacFilterCfg function in the httpd...
Critical
Unreviewed
CVE-2022-28561
was published
May 4, 2022
There is a stack overflow vulnerability in the goform/fast_setting_wifi_set function in the httpd...
Critical
Unreviewed
CVE-2022-28560
was published
May 4, 2022
ntfsck in NTFS-3G through 2021.8.22 has a heap-based buffer overflow involving buffer+512*3-2....
Critical
Unreviewed
CVE-2021-46790
was published
May 3, 2022
Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of...
Critical
Unreviewed
CVE-2017-14491
was published
Apr 30, 2022
A heap-based overflow vulnerability exists in the PowerPoint document conversion function of...
Critical
Unreviewed
CVE-2019-5019
was published
Apr 30, 2022
A heap-based buffer overflow exists in rippled before 1.8.5. The vulnerability allows attackers...
Critical
Unreviewed
CVE-2022-29077
was published
Apr 26, 2022
HT Editor 2.0.20 has a Remote Stack Buffer Overflow Vulnerability
Critical
Unreviewed
CVE-2012-5867
was published
Apr 23, 2022
FreeType commit 1e2eb65048f75c64b68708efed6ce904c31f3b2f was discovered to contain a heap buffer...
Critical
Unreviewed
CVE-2022-27404
was published
Apr 23, 2022
Irzip v0.640 was discovered to contain a heap memory corruption via the component lrzip.c...
Critical
Unreviewed
CVE-2022-28044
was published
Apr 16, 2022
** UNSUPPORTED WHEN ASSIGNED ** A heap-based buffer overflow exists in XML Decompression...
Critical
Unreviewed
CVE-2022-26507
was published
Apr 15, 2022
A memory corruption vulnerability exists in the cgi.c unescape functionality of ArduPilot APWeb...
Critical
Unreviewed
CVE-2022-28711
was published
Apr 15, 2022
The affected product is vulnerable to a stack-based buffer overflow, which may allow an attacker...
Critical
Unreviewed
CVE-2022-21228
was published
Apr 13, 2022
Heap-based buffer overflow vulnerability in sheifd_create function of libsimba library prior to...
Critical
Unreviewed
CVE-2022-26098
was published
Apr 12, 2022
Heap-based buffer overflow vulnerability in parser_iloc function in libsimba library prior to SMR...
Critical
Unreviewed
CVE-2022-27568
was published
Apr 12, 2022
Heap-based buffer overflow vulnerability in parser_ipma function of libsimba library prior to SMR...
Critical
Unreviewed
CVE-2022-27572
was published
Apr 12, 2022
Heap-based buffer overflow vulnerability in parser_infe function in libsimba library prior to SMR...
Critical
Unreviewed
CVE-2022-27569
was published
Apr 12, 2022
Heap-based buffer overflow vulnerability in sheifd_get_info_image function in libsimba library...
Critical
Unreviewed
CVE-2022-27571
was published
Apr 12, 2022
Heap-based buffer overflow vulnerability in parser_single_iref function in libsimba library prior...
Critical
Unreviewed
CVE-2022-27570
was published
Apr 12, 2022
heap-buffer-overflow in mrb_vm_exec in mruby/mruby in GitHub repository mruby/mruby prior to 3.2....
Critical
Unreviewed
CVE-2022-1286
was published
Apr 11, 2022
There is a stack overflow vulnerability in the SetStaticRouteCfg() function in the httpd service...
Critical
Unreviewed
CVE-2022-27016
was published
Apr 8, 2022
There is a stack overflow vulnerability in the SetSysTimeCfg() function in the httpd service of...
Critical
Unreviewed
CVE-2022-27022
was published
Apr 8, 2022
A Heap-based Buffer Overflow vulnerability exists in JerryScript 2.4.0 and prior versions via an...
Critical
Unreviewed
CVE-2021-43453
was published
Apr 8, 2022
Multiple stack-based buffer overflow vulnerabilities [CWE-121] both in network daemons and in the...
Critical
Unreviewed
CVE-2021-26112
was published
Apr 7, 2022
ProTip!
Advisories are also available from the
GraphQL API