GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,815 advisories
Filter by severity
Kofax Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2024-5510
was published
Nov 22, 2024
CRMEB v5.4.0 is vulnerable to Arbitrary file read in the save_basics function which allows an...
High
Unreviewed
CVE-2024-52726
was published
Nov 22, 2024
Local File Inclusion vulnerability in Vegam Solutions Vegam 4i v.6.3.47.0 and earlier allows a...
High
Unreviewed
CVE-2024-51163
was published
Nov 20, 2024
In l2cu_send_peer_config_rej of l2c_utils.cc, there is a possible out of bounds read due to a...
High
Unreviewed
CVE-2018-9484
was published
Nov 20, 2024
In sdpu_extract_attr_seq of sdp_utils.cc, there is a possible out of bounds read due to an...
High
Unreviewed
CVE-2018-9456
was published
Nov 20, 2024
In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing...
High
Unreviewed
CVE-2018-9419
was published
Nov 20, 2024
In smp_data_received of smp_l2c.cc, there is a possible out of bounds read followed by code...
High
Unreviewed
CVE-2018-9365
was published
Nov 19, 2024
In the Mediatek Preloader, there are out of bounds reads and writes due to an exposed interface...
High
Unreviewed
CVE-2018-9371
was published
Nov 19, 2024
In ResStringPool::setTo of ResourceTypes.cpp, it's possible for an attacker to control the value...
High
Unreviewed
CVE-2018-9340
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
virtio_net: Add...
High
Unreviewed
CVE-2024-53082
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
security/keys: fix slab-out...
High
Unreviewed
CVE-2024-50301
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
dm cache: fix out-of-bounds...
High
Unreviewed
CVE-2024-50279
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
dm cache: fix potential out...
High
Unreviewed
CVE-2024-50278
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
usb: typec: fix potential...
High
Unreviewed
CVE-2024-50268
was published
Nov 19, 2024
A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302...
High
Unreviewed
CVE-2024-52567
was published
Nov 18, 2024
A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302...
High
Unreviewed
CVE-2024-52574
was published
Nov 18, 2024
A flaw was found within the handling of SMB2 read requests in the kernel ksmbd module. The issue...
High
Unreviewed
CVE-2023-39179
was published
Nov 18, 2024
Holy Stone Remote ID Module HSRID01, firmware distributed with the Drone Go2 mobile application...
High
Unreviewed
CVE-2024-52876
was published
Nov 17, 2024
An invalid memory access when handling the ProtocolIE_ID field of E-RAB Release Indication...
High
Unreviewed
CVE-2024-24452
was published
Nov 15, 2024
An invalid memory access when handling the ProtocolIE_ID field of E-RAB Modify Request messages...
High
Unreviewed
CVE-2024-24454
was published
Nov 15, 2024
An invalid memory access when handling the ProtocolIE_ID field of E-RAB Setup List Context SURes...
High
Unreviewed
CVE-2024-24457
was published
Nov 15, 2024
An invalid memory access when handling the ProtocolIE_ID field of S1Setup Request messages in...
High
Unreviewed
CVE-2024-24459
was published
Nov 15, 2024
An invalid memory access when handling the ProtocolIE_ID field of E-RAB...
High
Unreviewed
CVE-2024-24453
was published
Nov 15, 2024
An invalid memory access when handling the ENB Configuration Transfer messages containing invalid...
High
Unreviewed
CVE-2024-24458
was published
Nov 15, 2024
An invalid memory access when handling a UE Context Release message containing an invalid UE...
High
Unreviewed
CVE-2024-24455
was published
Nov 15, 2024
ProTip!
Advisories are also available from the
GraphQL API