GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,992
Erlang
39
GitHub Actions
38
Go
2,634
Maven
5,000+
npm
4,258
NuGet
760
pip
4,051
Pub
12
RubyGems
955
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,290 advisories
Filter by severity
Use-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the...
High
Unreviewed
CVE-2023-2763
was published
Jul 12, 2023
A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201...
High
Unreviewed
CVE-2023-37246
was published
Jul 11, 2023
A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201...
High
Unreviewed
CVE-2023-37247
was published
Jul 11, 2023
A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src...
High
Unreviewed
CVE-2023-34432
was published
Jul 10, 2023
A heap buffer overflow vulnerability was found in sox, in the startread function at sox/src/hcom...
High
Unreviewed
CVE-2023-34318
was published
Jul 10, 2023
A user may be tricked into opening a malicious FBX file that may exploit a heap buffer overflow...
High
Unreviewed
CVE-2023-27911
was published
Jul 6, 2023
A bug affects the Linux kernel’s ksmbd NTLMv2 authentication and is known to crash the OS...
High
Unreviewed
CVE-2023-0210
was published
Jul 6, 2023
Use After Free (UAF) vulnerability in the Vdecoderservice service. Successful exploitation of...
Critical
Unreviewed
CVE-2022-48512
was published
Jul 6, 2023
A heap-based buffer overflow vulnerability exists in the Sequence::DrawText functionality of...
High
Unreviewed
CVE-2023-27390
was published
Jul 5, 2023
An access violation vulnerability exists in the GraphPlanar::Write functionality of Diagon v1.0...
High
Unreviewed
CVE-2023-31194
was published
Jul 5, 2023
A heap-based buffer overflow issue was discovered in ImageMagick's ReadTIM2ImageData() function...
Moderate
Unreviewed
CVE-2023-34474
was published
Jun 16, 2023
Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.2.
Moderate
Unreviewed
CVE-2023-3291
was published
Jun 16, 2023
.NET Remote Code Execution Vulnerability
High
CVE-2023-24897
was published
for
Microsoft.NetCore.App.Runtime.win-arm
(NuGet)
Jun 14, 2023
Microsoft SharePoint Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2023-33129
was published
Jun 14, 2023
Microsoft Excel Remote Code Execution Vulnerability
High
Unreviewed
CVE-2023-33133
was published
Jun 14, 2023
A heap-based buffer overflow vulnerability [CWE-122] in FortiOS version 7.2.4 and below, version...
Critical
Unreviewed
CVE-2023-27997
was published
Jun 13, 2023
NanoMQ 0.17.5 is vulnerable to heap-buffer-overflow in the conn_handler function of mqtt_parser.c...
High
Unreviewed
CVE-2023-34488
was published
Jun 12, 2023
Delta Electronics' CNCSoft-B DOPSoft versions 1.0.0.4 and prior are
vulnerable to heap-based...
High
Unreviewed
CVE-2023-24014
was published
Jun 7, 2023
Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark...
Moderate
Unreviewed
CVE-2023-0667
was published
Jun 7, 2023
Due to failure in validating the length provided by an attacker-crafted RTPS packet, Wireshark...
Moderate
Unreviewed
CVE-2023-0666
was published
Jun 7, 2023
A heap-based buffer overflow vulnerability was found in the ImageMagick package that can lead to...
Moderate
Unreviewed
CVE-2023-2157
was published
Jun 6, 2023
A heap-based buffer overflow issue was discovered in libjpeg-turbo in...
Moderate
Unreviewed
CVE-2023-2804
was published
May 26, 2023
netconsd prior to v0.2 was vulnerable to an integer overflow in its parse_packet function. A...
Critical
Unreviewed
CVE-2023-28753
was published
May 19, 2023
Heap-based overflow in Intel(R) SoC Watch based software before version 2021.1 may allow a...
Moderate
Unreviewed
CVE-2023-30763
was published
May 12, 2023
Adobe Substance 3D Painter versions 8.3.0 (and earlier) is affected by a Heap-based Buffer...
High
Unreviewed
CVE-2023-29283
was published
May 12, 2023
ProTip!
Advisories are also available from the
GraphQL API