GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,324
Erlang
31
GitHub Actions
21
Go
2,087
Maven
5,000+
npm
3,751
NuGet
674
pip
3,437
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
2,816 advisories
Filter by severity
In imgsensor, there is a possible out of bounds read due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2022-21747
was published
Jun 7, 2022
A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS driver that could allow a...
Moderate
Unreviewed
CVE-2022-4434
was published
Jan 5, 2023
The put_chars function in html_r.c in Twibright Links 2.14 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2017-11114
was published
May 17, 2022
A flaw was found in postgresql. Using an UPDATE ... RETURNING command on a purpose-crafted table,...
Moderate
Unreviewed
CVE-2021-32029
was published
May 24, 2022
Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by an out...
Moderate
Unreviewed
CVE-2022-30666
was published
Jun 16, 2022
Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds read...
Moderate
Unreviewed
CVE-2022-28850
was published
Jun 16, 2022
In asn1_p256_int of crypto/asn1.c, there is a possible out of bounds read due to an incorrect...
Moderate
Unreviewed
CVE-2022-20162
was published
Jun 16, 2022
In llcp_dlc_proc_connect_pdu of llcp_dlc.cc, there is a possible out of bounds read due to a...
Moderate
Unreviewed
CVE-2022-20198
was published
Jun 16, 2022
Out of bounds read for some Intel(R) PROSet/Wireless WiFi products may allow a privileged user to...
Moderate
Unreviewed
CVE-2022-21240
was published
Aug 19, 2022
Possible buffer over read due to lack of size validation while copying data from DBR buffer to RX...
Moderate
Unreviewed
CVE-2021-35071
was published
Jun 15, 2022
The chk_mem_access function in cpu/nes6502/nes6502.c in libnosefart.a in Nosefart 2.9-mls allows...
Moderate
Unreviewed
CVE-2017-11119
was published
May 17, 2022
In exynos_secEnv_init of mach-gs101.c, there is a possible out of bounds read due to an incorrect...
Moderate
Unreviewed
CVE-2022-20174
was published
Jun 16, 2022
A specially crafted IOCTL can be issued to the rzpnk.sys driver in Razer Synapse that can cause...
Moderate
Unreviewed
CVE-2017-9770
was published
May 17, 2022
In parseRecursively of cppbor_parse.cpp, there is a possible out of bounds read due to an...
Moderate
Unreviewed
CVE-2022-20208
was published
Jun 16, 2022
A flaw was found in OpenJPEG’s encoder in the opj_dwt_calc_explicit_stepsizes() function. This...
Moderate
Unreviewed
CVE-2020-27824
was published
May 24, 2022
Out-of-bounds Read in fast-string-search
Moderate
CVE-2022-25872
was published
for
fast-string-search
(npm)
Jun 18, 2022
Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by an out...
Moderate
Unreviewed
CVE-2022-30667
was published
Jun 16, 2022
In asn1_parse of asn1.c, there is a possible out of bounds read due to an incorrect bounds check....
Moderate
Unreviewed
CVE-2022-20165
was published
Jun 16, 2022
In asn1_ec_pkey_parse of acropora/crypto/asn1_common.c, there is a possible out of bounds read...
Moderate
Unreviewed
CVE-2022-20159
was published
Jun 16, 2022
An out-of-bounds read access vulnerability was discovered in UPX in PackLinuxElf64::canPack()...
Moderate
Unreviewed
CVE-2020-27788
was published
Aug 19, 2022
In lg_probe and related functions of hid-lg.c and other USB HID files, there is a possible out of...
Moderate
Unreviewed
CVE-2022-20132
was published
Jun 16, 2022
The PropertyProvider::GetSpacingInternal function in Mozilla Firefox before 49.0 allows remote...
Moderate
Unreviewed
CVE-2016-5271
was published
May 17, 2022
The demangle_template_value_parm and do_hpacc_template_literal functions in cplus-dem.c in...
Moderate
Unreviewed
CVE-2016-4493
was published
May 17, 2022
The GetImageDepth function in MagickCore/attribute.c in ImageMagick 7.0.6-4 might allow remote...
Moderate
Unreviewed
CVE-2017-11753
was published
May 17, 2022
The resample_gauss function in resample.c in TiMidity++ 2.14.0 allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2017-11547
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API