GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,339
Erlang
31
GitHub Actions
22
Go
2,099
Maven
5,000+
npm
3,763
NuGet
678
pip
3,448
Pub
12
RubyGems
892
Rust
883
Swift
37
Unreviewed advisories
All unreviewed
5,000+
2,235 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Avoid...
Moderate
Unreviewed
CVE-2024-47661
was published
Oct 9, 2024
Animate versions 23.0.7, 24.0.4 and earlier are affected by an Integer Overflow or Wraparound...
High
Unreviewed
CVE-2024-47416
was published
Oct 9, 2024
Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-37976
was published
Oct 8, 2024
An integer overflow vulnerability exists in the Compound Document Binary File format parser of v1...
High
Unreviewed
CVE-2024-42415
was published
Oct 3, 2024
An integer overflow vulnerability exists in the Compound Document Binary File format parser of...
High
Unreviewed
CVE-2024-36474
was published
Oct 3, 2024
A vulnerability in Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to...
Moderate
Unreviewed
CVE-2024-20434
was published
Sep 25, 2024
Integer overflow in Skia in Google Chrome prior to 129.0.6668.70 allowed a remote attacker to...
High
Unreviewed
CVE-2024-9123
was published
Sep 25, 2024
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Ensure...
Moderate
Unreviewed
CVE-2024-46726
was published
Sep 18, 2024
An integer overflow was addressed through improved input validation. This issue is fixed in...
Moderate
Unreviewed
CVE-2024-44198
was published
Sep 17, 2024
A Business Logic vulnerability in Shopkit 1.0 allows an attacker to add products with negative...
High
Unreviewed
CVE-2023-45854
was published
Sep 16, 2024
Illustrator versions 28.6, 27.9.5 and earlier are affected by an Integer Overflow or Wraparound...
High
Unreviewed
CVE-2024-34121
was published
Sep 13, 2024
Windows libarchive Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-43495
was published
Sep 10, 2024
A vulnerability has been identified in Automation License Manager V5 (All versions), Automation...
Critical
Unreviewed
CVE-2024-44087
was published
Sep 10, 2024
A malicious value of size in a structure of packed libnv can cause an integer overflow, leading...
Critical
Unreviewed
CVE-2024-45287
was published
Sep 5, 2024
In the Linux kernel, the following vulnerability has been resolved:
workqueue: Fix UBSAN ...
Moderate
Unreviewed
CVE-2024-44981
was published
Sep 4, 2024
Memory corruption while calculating total metadata size when a very high reserved size is...
High
Unreviewed
CVE-2024-33035
was published
Sep 2, 2024
in OpenHarmony v4.1.0 and prior versions allow a local attacker cause crash through integer...
Low
Unreviewed
CVE-2024-28044
was published
Sep 2, 2024
An issue was discovered in libexpat before 2.6.3. nextScaffoldPart in xmlparse.c can have an...
High
Unreviewed
CVE-2024-45492
was published
Aug 30, 2024
An issue was discovered in libexpat before 2.6.3. dtdCopy in xmlparse.c can have an integer...
High
Unreviewed
CVE-2024-45491
was published
Aug 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
tracing: Fix overflow in...
Moderate
Unreviewed
CVE-2024-43890
was published
Aug 26, 2024
In the Linux kernel, the following vulnerability has been resolved:
CDC-NCM: avoid overflow in...
Moderate
Unreviewed
CVE-2022-48938
was published
Aug 22, 2024
An issue in newlib v.4.3.0 allows an attacker to execute arbitrary code via the time unit scaling...
Critical
Unreviewed
CVE-2024-30949
was published
Aug 20, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf: fix overflow check in...
Moderate
Unreviewed
CVE-2024-43838
was published
Aug 17, 2024
In attributeBytesBase64 and attributeBytesHex of BinaryXmlSerializer.java, there is a possible...
High
Unreviewed
CVE-2024-34740
was published
Aug 16, 2024
In _MMU_AllocLevel of mmu_common.c, there is a possible arbitrary code execution due to an...
High
Unreviewed
CVE-2024-31333
was published
Aug 16, 2024
ProTip!
Advisories are also available from the
GraphQL API