GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,315
Erlang
31
GitHub Actions
21
Go
2,074
Maven
5,000+
npm
3,746
NuGet
674
pip
3,434
Pub
12
RubyGems
892
Rust
880
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
8,334 advisories
Filter by severity
Stack-based buffer overflow vulnerability in synoagentregisterd in Synology DiskStation Manager ...
High
Unreviewed
CVE-2021-26561
was published
May 24, 2022
A flaw was found in the rsync daemon which could be triggered when rsync compares file checksums....
High
Unreviewed
CVE-2024-12085
was published
Jan 14, 2025
A vulnerability was found in Netgear R6900 1.0.1.26_1.0.20. It has been declared as critical....
High
Unreviewed
CVE-2024-12147
was published
Dec 4, 2024
An improper array index validation vulnerability exists in the nowindow functionality of OFFIS...
High
Unreviewed
CVE-2024-47796
was published
Jan 13, 2025
An improper array index validation vulnerability exists in the determineMinMax functionality of...
High
Unreviewed
CVE-2024-52333
was published
Jan 13, 2025
Luxion KeyShot Viewer KSP File Parsing Memory Corruption Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2025-0412
was published
Jan 13, 2025
In the Linux kernel, the following vulnerability has been resolved:
firmware: arm_scmi: Harden...
High
Unreviewed
CVE-2022-48655
was published
Apr 28, 2024
Insufficient exception handling in the method NCompress::NRar3::CDecoder::Code of 7-Zip before 18...
High
Unreviewed
CVE-2018-5996
was published
May 13, 2022
A vulnerability classified as critical has been found in Tenda AC6 15.03.05.16. Affected is the...
High
Unreviewed
CVE-2025-0349
was published
Jan 9, 2025
Microsoft Edge (HTML-based) Memory Corruption Vulnerability
High
Unreviewed
CVE-2024-38218
was published
Aug 12, 2024
Foxit PDF Reader AcroForm Memory Corruption Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2024-12752
was published
Dec 30, 2024
Access of memory location after end of buffer issue exists in TELLUS v4.0.15.0 and TELLUS Lite v4...
High
Unreviewed
CVE-2023-32270
was published
Jun 19, 2023
Trimble SketchUp Viewer SKP File Parsing Memory Corruption Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2024-9730
was published
Nov 22, 2024
Trimble SketchUp Viewer SKP File Parsing Memory Corruption Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2024-9731
was published
Nov 22, 2024
OleAut32.dll in OLE in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008...
High
Unreviewed
CVE-2014-6332
was published
May 14, 2022
Buffer overflow in Microsoft Office 2003 SP3 and Office 2011 for Mac allows remote attackers to...
High
Unreviewed
CVE-2013-1331
was published
May 14, 2022
Microsoft XML Core Services 3.0, 4.0, 5.0, and 6.0 accesses uninitialized memory locations, which...
High
Unreviewed
CVE-2012-1889
was published
May 13, 2022
Multiple buffer overflows in Adobe Reader and Acrobat 8.1.1 and earlier allow remote attackers to...
High
Unreviewed
CVE-2007-5659
was published
May 1, 2022
Stack-based buffer overflow in Microsoft Office Word 2002 SP3, 2003 SP3, and 2007 SP1 and SP2;...
High
Unreviewed
CVE-2009-0563
was published
May 2, 2022
Stack-based buffer overflow in CoolType.dll in Adobe Reader and Acrobat 9.x before 9.4, and 8.x...
High
Unreviewed
CVE-2010-2883
was published
May 14, 2022
The U3D implementation in Adobe Reader and Acrobat 9.x before 9.3, 8.x before 8.2 on Windows and...
High
Unreviewed
CVE-2009-3953
was published
May 2, 2022
Buffer overflow in Microsoft PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute...
High
Unreviewed
CVE-2010-2572
was published
May 14, 2022
Memory corruption while invoking IOCTL calls from user space to read WLAN target diagnostic...
High
Unreviewed
CVE-2024-43053
was published
Dec 2, 2024
Memory corruption while invoking IOCTL calls from user space to set generic private command...
High
Unreviewed
CVE-2024-43049
was published
Dec 2, 2024
A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302...
High
Unreviewed
CVE-2024-45467
was published
Oct 8, 2024
ProTip!
Advisories are also available from the
GraphQL API