GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
159 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
drm/amdgpu: Using...
High
Unreviewed
CVE-2024-42228
was published
Jul 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
hfsplus: fix uninit-value in...
High
Unreviewed
CVE-2024-41059
was published
Jul 29, 2024
Windows TCP/IP Information Disclosure Vulnerability
High
Unreviewed
CVE-2024-38064
was published
Jul 9, 2024
A maliciously crafted STP file, when parsed in stp_aim_x64_vc15d.dll through Autodesk...
High
Unreviewed
CVE-2024-23159
was published
Jun 25, 2024
In the Linux kernel, the following vulnerability has been resolved:
nfc: nci: Fix uninit-value...
High
Unreviewed
CVE-2024-38381
was published
Jun 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
block: Fix wrong offset in...
High
Unreviewed
CVE-2022-48747
was published
Jun 20, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: bridge: xmit: make sure...
High
Unreviewed
CVE-2024-38538
was published
Jun 19, 2024
Memory management vulnerability in the Gralloc module
Impact: Successful exploitation of this...
High
Unreviewed
CVE-2024-36503
was published
Jun 14, 2024
In AcvpOnMessage of avcp.cpp, there is a possible EOP due to uninitialized data. This could lead...
High
Unreviewed
CVE-2024-32906
was published
Jun 13, 2024
In the Linux kernel, the following vulnerability has been resolved:
virtio/vsock: Fix uninit...
High
Unreviewed
CVE-2023-52842
was published
May 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
btrfs: fix information leak...
High
Unreviewed
CVE-2024-35849
was published
May 17, 2024
ThroughTek Kalay SDK uses a predictable PSK value in the DTLS session when encountering an...
High
Unreviewed
CVE-2023-6324
was published
May 15, 2024
PDF-XChange Editor U3D File Parsing Uninitialized Variable Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2023-42062
was published
May 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
fork: defer linking file vma...
High
Unreviewed
CVE-2024-27022
was published
May 1, 2024
crayon: ObjectPool creates uninitialized memory when freeing objects
High
GHSA-xfhw-6mc4-mgxf
was published
for
crayon
(Rust)
Apr 5, 2024
In the Linux kernel, the following vulnerability has been resolved:
asix: fix uninit-value in...
High
Unreviewed
CVE-2021-47101
was published
Mar 4, 2024
Uninitialized Variable in fastecdsa
High
CVE-2024-21502
was published
for
fastecdsa
(pip)
Feb 24, 2024
Helm's Missing YAML Content Leads To Panic
High
CVE-2024-26147
was published
for
helm.sh/helm/v3
(Go)
Feb 22, 2024
A maliciously crafted STP or SLDPRT file when ODXSW_DLL.dll parsed through Autodesk AutoCAD can...
High
Unreviewed
CVE-2024-23137
was published
Feb 22, 2024
When HTTP/2 is configured on BIG-IP or BIG-IP Next SPK systems, undisclosed responses can cause...
High
Unreviewed
CVE-2024-23314
was published
Feb 14, 2024
An uninitialized pointer use vulnerability exists in the functionality of WPS Office 11.2.0.11537...
High
Unreviewed
CVE-2023-31275
was published
Nov 27, 2023
In multiple locations of avrc, there is a possible leak of heap data due to uninitialized data....
High
Unreviewed
CVE-2023-21233
was published
Aug 15, 2023
VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not have an MSS lower bound (e.g., it...
High
Unreviewed
CVE-2023-35847
was published
Jun 19, 2023
In readSampleData of NuMediaExtractor.cpp, there is a possible out of bounds write due to...
High
Unreviewed
CVE-2023-21127
was published
Jun 15, 2023
When reading a file, an uninitialized value could have been used as read limit. This...
High
Unreviewed
CVE-2023-32213
was published
Jun 2, 2023
ProTip!
Advisories are also available from the
GraphQL API