GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,319
Erlang
31
GitHub Actions
21
Go
2,077
Maven
5,000+
npm
3,746
NuGet
674
pip
3,435
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,357 advisories
Filter by severity
Windows Telephony Service Remote Code Execution Vulnerability
High
Unreviewed
CVE-2025-21243
was published
Jan 14, 2025
Windows Telephony Service Remote Code Execution Vulnerability
High
Unreviewed
CVE-2025-21244
was published
Jan 14, 2025
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot...
High
Unreviewed
CVE-2024-45555
was published
Jan 6, 2025
Integer overflow vulnerability during glTF model loading in the 3D engine module
Impact:...
High
Unreviewed
CVE-2024-56451
was published
Jan 8, 2025
Transient DOS while decoding the ToBeSignedMessage in Automotive Telematics.
High
Unreviewed
CVE-2024-21454
was published
Apr 1, 2024
Memory corruption while allocating memory for graphics.
High
Unreviewed
CVE-2024-21470
was published
Apr 1, 2024
Integer Overflow or Wraparound vulnerability in Cesanta Mongoose Web Server v7.14 allows an...
High
Unreviewed
CVE-2024-42384
was published
Nov 18, 2024
Integer overflow in Layout in Google Chrome prior to 129.0.6668.89 allowed a remote attacker to...
High
Unreviewed
CVE-2024-7025
was published
Nov 27, 2024
Windows Sysmain Service Elevation of Privilege
High
Unreviewed
CVE-2023-35644
was published
Dec 12, 2023
Dell ECS, versions prior to 3.8.1.3 contains an arithmetic overflow vulnerability exists in...
High
Unreviewed
CVE-2024-51540
was published
Dec 26, 2024
Integer overflow in the copyRawDataTo method in the Matrix3D class in Adobe Flash Player before...
High
Unreviewed
CVE-2012-5054
was published
May 14, 2022
The vold volume manager daemon on Android 3.0 and 2.x before 2.3.4 trusts messages that are...
High
Unreviewed
CVE-2011-1823
was published
May 17, 2022
In oemCallback of ril.cpp, there is a possible out of bounds write due to an
integer overflow...
High
Unreviewed
CVE-2018-9404
was published
Dec 5, 2024
In String16 of String16.cpp, there is a possible out of bounds write due to an integer overflow....
High
Unreviewed
CVE-2017-13323
was published
Nov 28, 2024
In attributeBytesBase64 and attributeBytesHex of BinaryXmlSerializer.java, there is a possible...
High
Unreviewed
CVE-2024-34740
was published
Aug 16, 2024
Animate versions 23.0.8, 24.0.5 and earlier are affected by an Integer Overflow or Wraparound...
High
Unreviewed
CVE-2024-52983
was published
Dec 10, 2024
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 16.7...
High
Unreviewed
CVE-2024-40784
was published
Jul 30, 2024
In filterMask of SkEmbossMaskFilter.cpp, there is a possible out of bounds write due to an...
High
Unreviewed
CVE-2024-43091
was published
Nov 13, 2024
Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater...
High
Unreviewed
CVE-2024-33063
was published
Dec 2, 2024
Calling any of the Parse functions on Go source code which contains //line directives with very...
High
Unreviewed
CVE-2023-24537
was published
Apr 6, 2023
Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.1532.
High
Unreviewed
CVE-2023-2610
was published
May 10, 2023
An issue was discovered in MBed OS 6.16.0. During processing of HCI packets, the software...
High
Unreviewed
CVE-2024-48983
was published
Nov 20, 2024
In IMSA_Recv_Thread and VT_IMCB_Thread of ImsaClient.cpp and VideoTelephony.c, there is a...
High
Unreviewed
CVE-2018-9366
was published
Nov 19, 2024
In xmlMemStrdupLoc of xmlmemory.c, there is a possible out-of-bounds write due to an integer...
High
Unreviewed
CVE-2018-9472
was published
Nov 20, 2024
ProTip!
Advisories are also available from the
GraphQL API