GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
6,931 advisories
Filter by severity
Internet Connection Sharing (ICS) Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2025-21212
was published
Feb 11, 2025
Internet Connection Sharing (ICS) Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2025-21254
was published
Feb 11, 2025
DHCP Client Service Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2025-21179
was published
Feb 11, 2025
InDesign Desktop versions ID20.0, ID19.5.1 and earlier are affected by an out-of-bounds read...
Moderate
Unreviewed
CVE-2025-21124
was published
Feb 11, 2025
A vulnerability has been identified in APOGEE PXC Series (BACnet) (All versions), APOGEE PXC...
Moderate
Unreviewed
CVE-2024-54090
was published
Feb 11, 2025
In the Linux kernel, the following vulnerability has been resolved:
vfio/platform: check the...
High
Unreviewed
CVE-2025-21687
was published
Feb 10, 2025
In rare scenarios, the cpca process on the Security Management Server / Domain Management Server...
Moderate
Unreviewed
CVE-2024-24911
was published
Feb 6, 2025
Out-of-bounds array read vulnerability in the FFRT module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-57958
was published
Feb 6, 2025
Out-of-bounds read vulnerability in the interpreter string module
Impact: Successful exploitation...
Low
Unreviewed
CVE-2024-57956
was published
Feb 6, 2025
When URL categorization is configured on a virtual server, undisclosed requests can cause TMM to...
High
Unreviewed
CVE-2025-24497
was published
Feb 5, 2025
Out-of-bounds read and write in mPOS TUI trustlet prior to SMR Feb-2025 Release 1 allows local...
Moderate
Unreviewed
CVE-2025-20905
was published
Feb 4, 2025
Out-of-bounds read in decoding malformed bitstream of video thumbnails in libsthmbc.so prior to...
Moderate
Unreviewed
CVE-2025-20891
was published
Feb 4, 2025
Out-of-bounds read in Blockchain Keystore prior to version 1.3.16.5 allows local privileged...
Moderate
Unreviewed
CVE-2025-20901
was published
Feb 4, 2025
Out-of-bounds read in accessing table used for svp8t in libsthmbc.so prior to SMR Jan-2025...
Moderate
Unreviewed
CVE-2025-20887
was published
Feb 4, 2025
Information disclosure while parsing the OCI IE with invalid length.
High
Unreviewed
CVE-2024-49838
was published
Feb 3, 2025
Memory corruption during management frame processing due to mismatch in T2LM info element.
High
Unreviewed
CVE-2024-49839
was published
Feb 3, 2025
Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in...
High
Unreviewed
CVE-2024-38404
was published
Feb 3, 2025
Information disclosure while processing IO control commands.
Moderate
Unreviewed
CVE-2024-38417
was published
Feb 3, 2025
Information disclosure while processing information on firmware image during core initialization.
Moderate
Unreviewed
CVE-2024-38414
was published
Feb 3, 2025
Information disclosure during audio playback.
Moderate
Unreviewed
CVE-2024-38416
was published
Feb 3, 2025
In DA, there is a possible out of bounds read due to a missing bounds check. This could lead to...
Moderate
Unreviewed
CVE-2025-20643
was published
Feb 3, 2025
In DA, there is a possible out of bounds read due to a missing bounds check. This could lead to...
Moderate
Unreviewed
CVE-2025-20640
was published
Feb 3, 2025
In HeifDataSource::readAt of HeifDecoderImpl.cpp, there is a possible out of bounds read due to...
Moderate
Unreviewed
CVE-2017-13318
was published
Jan 28, 2025
In HeifDecoderImpl::getScanline of HeifDecoderImpl.cpp, there is a possible out of bounds read...
Moderate
Unreviewed
CVE-2017-13317
was published
Jan 28, 2025
NVIDIA GPU Display Driver for Linux contains a vulnerability which could allow an attacker...
Low
Unreviewed
CVE-2024-0149
was published
Jan 28, 2025
ProTip!
Advisories are also available from the
GraphQL API