GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
21
Go
2,094
Maven
5,000+
npm
3,759
NuGet
678
pip
3,445
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
1,417 advisories
Filter by severity
Integer overflow in the Embedded OpenType (EOT) Font Engine in Microsoft Windows XP SP2 and SP3,...
High
Unreviewed
CVE-2010-1883
was published
May 14, 2022
Multiple integer overflows in the Microsoft (1) JScript 5.6 through 5.8 and (2) VBScript 5.6...
High
Unreviewed
CVE-2011-0663
was published
May 13, 2022
Windows Telephony Service Remote Code Execution Vulnerability
High
Unreviewed
CVE-2025-21243
was published
Jan 14, 2025
Windows Telephony Service Remote Code Execution Vulnerability
High
Unreviewed
CVE-2025-21244
was published
Jan 14, 2025
Integer overflow vulnerability during glTF model loading in the 3D engine module
Impact:...
High
Unreviewed
CVE-2024-56451
was published
Jan 8, 2025
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot...
High
Unreviewed
CVE-2024-45555
was published
Jan 6, 2025
Transient DOS while decoding the ToBeSignedMessage in Automotive Telematics.
High
Unreviewed
CVE-2024-21454
was published
Apr 1, 2024
Memory corruption while allocating memory for graphics.
High
Unreviewed
CVE-2024-21470
was published
Apr 1, 2024
Integer Overflow or Wraparound vulnerability in Cesanta Mongoose Web Server v7.14 allows an...
High
Unreviewed
CVE-2024-42384
was published
Nov 18, 2024
Integer overflow in Layout in Google Chrome prior to 129.0.6668.89 allowed a remote attacker to...
High
Unreviewed
CVE-2024-7025
was published
Nov 27, 2024
Windows Sysmain Service Elevation of Privilege
High
Unreviewed
CVE-2023-35644
was published
Dec 12, 2023
Dell ECS, versions prior to 3.8.1.3 contains an arithmetic overflow vulnerability exists in...
High
Unreviewed
CVE-2024-51540
was published
Dec 26, 2024
Integer overflow in the copyRawDataTo method in the Matrix3D class in Adobe Flash Player before...
High
Unreviewed
CVE-2012-5054
was published
May 14, 2022
The vold volume manager daemon on Android 3.0 and 2.x before 2.3.4 trusts messages that are...
High
Unreviewed
CVE-2011-1823
was published
May 17, 2022
In oemCallback of ril.cpp, there is a possible out of bounds write due to an
integer overflow...
High
Unreviewed
CVE-2018-9404
was published
Dec 5, 2024
In String16 of String16.cpp, there is a possible out of bounds write due to an integer overflow....
High
Unreviewed
CVE-2017-13323
was published
Nov 28, 2024
In attributeBytesBase64 and attributeBytesHex of BinaryXmlSerializer.java, there is a possible...
High
Unreviewed
CVE-2024-34740
was published
Aug 16, 2024
pgx SQL Injection via Protocol Message Size Overflow
High
CVE-2024-27304
was published
for
github.com/jackc/pgx
(Go)
Mar 4, 2024
Npgsql vulnerable to SQL Injection via Protocol Message Size Overflow
High
CVE-2024-32655
was published
for
Npgsql
(NuGet)
May 9, 2024
Animate versions 23.0.8, 24.0.5 and earlier are affected by an Integer Overflow or Wraparound...
High
Unreviewed
CVE-2024-52983
was published
Dec 10, 2024
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 16.7...
High
Unreviewed
CVE-2024-40784
was published
Jul 30, 2024
In filterMask of SkEmbossMaskFilter.cpp, there is a possible out of bounds write due to an...
High
Unreviewed
CVE-2024-43091
was published
Nov 13, 2024
Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater...
High
Unreviewed
CVE-2024-33063
was published
Dec 2, 2024
Calling any of the Parse functions on Go source code which contains //line directives with very...
High
Unreviewed
CVE-2023-24537
was published
Apr 6, 2023
ProTip!
Advisories are also available from the
GraphQL API