GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
11,356 advisories
Filter by severity
The issue was addressed with improved memory handling. This issue is fixed in watchOS 26.1, iOS...
Moderate
Unreviewed
CVE-2025-43447
was published
Nov 4, 2025
In the Linux kernel, the following vulnerability has been resolved:
wifi: ath11k: update channel...
High
Unreviewed
CVE-2025-23133
was published
Apr 16, 2025
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in...
High
Unreviewed
CVE-2024-40841
was published
Sep 17, 2024
A stack-based buffer overflow vulnerability exists in the boa formFilter functionality of Realtek...
High
Unreviewed
CVE-2023-49073
was published
Jul 8, 2024
A stack-based buffer overflow vulnerability exists in the boa rollback_control_code functionality...
High
Unreviewed
CVE-2023-49595
was published
Jul 8, 2024
Two stack-based buffer overflow vulnerabilities exist in the boa set_RadvdInterfaceParam...
High
Unreviewed
CVE-2023-50239
was published
Jul 8, 2024
Two stack-based buffer overflow vulnerabilities exist in the boa formIpQoS functionality of...
High
Unreviewed
CVE-2023-50244
was published
Jul 8, 2024
A stack-based buffer overflow vulnerability exists in the boa getInfo functionality of Realtek...
High
Unreviewed
CVE-2023-50330
was published
Jul 8, 2024
A heap-based buffer overflow vulnerability exists in the configuration file mib_init_value_array...
High
Unreviewed
CVE-2024-21778
was published
Jul 8, 2024
In ims service, there is a possible out of bounds write due to a missing bounds check. This could...
High
Unreviewed
CVE-2025-20725
was published
Nov 4, 2025
In Modem, there is a possible out of bounds write due to a heap buffer overflow. This could lead...
High
Unreviewed
CVE-2025-20727
was published
Nov 4, 2025
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2024-44178
was published
Sep 17, 2024
The JavaScript garbage collector could mis-color cross-compartment objects if OOM conditions were...
Critical
Unreviewed
CVE-2024-8384
was published
Sep 3, 2024
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in...
Low
Unreviewed
CVE-2024-40777
was published
Jul 30, 2024
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in...
Moderate
Unreviewed
CVE-2024-27873
was published
Jul 30, 2024
A stack-based buffer overflow vulnerability exists in the boa formRoute functionality of Realtek...
High
Unreviewed
CVE-2023-41251
was published
Jul 8, 2024
A stack-based buffer overflow vulnerability exists in the boa formDnsv6 functionality of Realtek...
High
Unreviewed
CVE-2023-48270
was published
Jul 8, 2024
A stack-based buffer overflow vulnerability exists in the boa formWsc functionality of Realtek...
High
Unreviewed
CVE-2023-49867
was published
Jul 8, 2024
A stack-based buffer overflow vulnerability exists in the boa setRepeaterSsid functionality of...
High
Unreviewed
CVE-2023-45215
was published
Jul 8, 2024
A stack-based buffer overflow vulnerability exists in the boa set_RadvdPrefixParam functionality...
High
Unreviewed
CVE-2023-47856
was published
Jul 8, 2024
Two stack-based buffer overflow vulnerabilities exist in the boa set_RadvdInterfaceParam...
High
Unreviewed
CVE-2023-50240
was published
Jul 8, 2024
Two stack-based buffer overflow vulnerabilities exist in the boa formIpQoS functionality of...
High
Unreviewed
CVE-2023-50243
was published
Jul 8, 2024
A heap-based buffer overflow vulnerability exists in the comment functionality of stb _vorbis.c...
Critical
Unreviewed
CVE-2023-47212
was published
May 1, 2024
Due to a failure in validating the number of scanline samples of a OpenEXR file containing deep...
Critical
Unreviewed
CVE-2023-5841
was published
Feb 1, 2024
Stack overflow in PJSUA API when calling pjsua_player_create. An attacker-controlled 'filename'...
Critical
Unreviewed
CVE-2021-43299
was published
Feb 17, 2022
ProTip!
Advisories are also available from the
GraphQL API