GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,688
Erlang
34
GitHub Actions
26
Go
2,274
Maven
5,000+
npm
3,930
NuGet
706
pip
3,696
Pub
12
RubyGems
919
Rust
955
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
499 advisories
Filter by severity
Out-of-Bounds Read in ip_set_bitmap_ip.c in Google ChromeOS Kernel Versions 6.1, 5.15, 5.10, 5.4,...
Critical
Unreviewed
CVE-2025-2073
was published
Apr 17, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-30458
was published
Apr 1, 2025
The issue was addressed with improved bounds checks. This issue is fixed in macOS Ventura 13.7.5,...
Critical
Unreviewed
CVE-2025-24256
was published
Apr 1, 2025
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-24265
was published
Apr 1, 2025
An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in...
Critical
Unreviewed
CVE-2025-24230
was published
Apr 1, 2025
A type confusion issue was addressed with improved memory handling. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-24196
was published
Apr 1, 2025
A vulnerability regarding out-of-bounds read is found in the video interface. This allows remote...
Critical
Unreviewed
CVE-2024-11131
was published
Mar 19, 2025
An inconsistent comparator in xslt/txNodeSorter could have resulted in potentially exploitable...
Critical
Unreviewed
CVE-2025-1932
was published
Mar 4, 2025
This issue was addressed through improved state management. This issue is fixed in visionOS 2.3,...
Critical
Unreviewed
CVE-2025-24162
was published
Jan 28, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-24093
was published
Jan 28, 2025
An XML External Entity (XXE) injection vulnerability in Intersec Geosafe-ea 2022.12, 2022.13, and...
Critical
Unreviewed
CVE-2024-35532
was published
Jan 7, 2025
In isSlotMarkedSuccessful of BootControl.cpp, there is a possible out of bounds read due to a...
Critical
Unreviewed
CVE-2024-47039
was published
Dec 18, 2024
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in...
Critical
Unreviewed
CVE-2024-54506
was published
Dec 12, 2024
In prop2cfg of btif_storage.cc, there is a possible out of bounds write due to an incorrect...
Critical
Unreviewed
CVE-2018-9430
was published
Dec 3, 2024
FFmpeg n6.1.1 has an Out-of-bounds Read via libavcodec/ppc/vp8dsp_altivec.c, static const vec_s8...
Critical
Unreviewed
CVE-2024-35367
was published
Nov 29, 2024
In multiple functions that process 802.11 frames, out-of-bounds reads can occur due to...
Critical
Unreviewed
CVE-2017-17772
was published
Nov 26, 2024
An insufficient boundary validation in the USB code could lead to an out-of-bounds read on the...
Critical
Unreviewed
CVE-2024-41721
was published
Sep 20, 2024
In function MatchDomainName(), input param str is treated as a NULL terminated string despite...
Critical
Unreviewed
CVE-2024-5991
was published
Aug 27, 2024
Editor code failed to check an attribute value. This could have led to an out-of-bounds read....
Critical
Unreviewed
CVE-2024-7522
was published
Aug 6, 2024
Clipboard code failed to check the index on an array access. This could have lead to an out-of...
Critical
Unreviewed
CVE-2024-6606
was published
Jul 9, 2024
In MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can cause invalid memory reads during GSS...
Critical
Unreviewed
CVE-2024-37371
was published
Jun 29, 2024
Libarchive before 3.7.4 allows name out-of-bounds access when a ZIP archive has an empty-name...
Critical
Unreviewed
CVE-2024-37407
was published
Jun 8, 2024
robdns commit d76d2e6 was discovered to contain a heap overflow via the component block->filename...
Critical
Unreviewed
CVE-2024-24192
was published
Jun 7, 2024
In the Linux kernel, the following vulnerability has been resolved:
tracing: Correct the length...
Critical
Unreviewed
CVE-2021-47274
was published
May 21, 2024
HDF5 Library through 1.14.3 contains a out-of-bounds read operation in H5FL_arr_malloc in H5FL.c ...
Critical
Unreviewed
CVE-2024-32622
was published
May 14, 2024
ProTip!
Advisories are also available from the
GraphQL API