GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,694
Erlang
34
GitHub Actions
28
Go
2,284
Maven
5,000+
npm
3,936
NuGet
708
pip
3,706
Pub
12
RubyGems
919
Rust
959
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
253 advisories
Filter by severity
In face detect driver, there is a possible out of bounds write due to a missing bounds check....
Moderate
Unreviewed
CVE-2022-38673
was published
Oct 15, 2022
A flaw was found in libsoup. A vulnerability in the sniff_unknown() function may lead to heap...
Moderate
Unreviewed
CVE-2025-32052
was published
Apr 3, 2025
A flaw was found in libsoup. A vulnerability in sniff_feed_or_html() and skip_insignificant_space...
Moderate
Unreviewed
CVE-2025-32053
was published
Apr 3, 2025
Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-32704
was published
May 13, 2025
Buffer over-read in Windows SMB allows an authorized attacker to disclose information over a...
Moderate
Unreviewed
CVE-2025-29956
was published
May 13, 2025
Memory corruption due to improper bounds check while command handling in camera-kernel driver.
Moderate
Unreviewed
CVE-2024-45568
was published
May 6, 2025
Transient DOS while parsing per STA profile in ML IE.
High
Unreviewed
CVE-2025-21459
was published
May 6, 2025
Memory corruption while decoding of OTA messages from T3448 IE.
High
Unreviewed
CVE-2024-49846
was published
May 6, 2025
Memory corruption while processing escape code, when DisplayId is passed with large unsigned value.
High
Unreviewed
CVE-2025-21475
was published
May 6, 2025
Transient DOS while processing of a registration acceptance OTA due to incorrect ciphering key...
High
Unreviewed
CVE-2024-49847
was published
May 6, 2025
Buffer over-read in PostgreSQL GB18030 encoding validation allows a database input provider to...
Moderate
Unreviewed
CVE-2025-4207
was published
May 8, 2025
ECMP dissector crash in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via...
Moderate
Unreviewed
CVE-2024-11596
was published
May 7, 2025
In face detect driver, there is a possible out of bounds write due to a missing bounds check....
Moderate
Unreviewed
CVE-2022-39130
was published
Dec 6, 2022
In camera driver, there is a possible out of bounds write due to a missing bounds check. This...
Moderate
Unreviewed
CVE-2022-39132
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42781
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42780
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42768
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42779
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42774
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Low
Unreviewed
CVE-2022-42757
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Low
Unreviewed
CVE-2022-42758
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42759
was published
Dec 6, 2022
In wlan driver, there is a possible missing bounds check, This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-42762
was published
Dec 6, 2022
In Apache httpd 2.2.x before 2.2.33 and 2.4.x before 2.4.26, mod_mime can read one byte past the...
Critical
Unreviewed
CVE-2017-7679
was published
May 13, 2022
The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token...
High
Unreviewed
CVE-2017-7668
was published
Apr 30, 2022
ProTip!
Advisories are also available from the
GraphQL API