GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
2,000
Maven
5,000+
npm
3,711
NuGet
661
pip
3,383
Pub
11
RubyGems
885
Rust
849
Swift
36
Unreviewed advisories
All unreviewed
5,000+
157 advisories
Filter by severity
glx_pbuffer.c in Mesa 23.0.4 was discovered to contain a segmentation violation when calling...
Moderate
Unreviewed
CVE-2023-45922
was published
Mar 27, 2024
In pq, there is a possible write-what-where condition due to an incorrect bounds check. This...
Moderate
Unreviewed
CVE-2024-20037
was published
Mar 4, 2024
In the Linux kernel, the following vulnerability has been resolved:
ARM: footbridge: fix PCI...
Moderate
Unreviewed
CVE-2021-46909
was published
Feb 27, 2024
Malformed S2 Nonce Get Command Class packets can be sent to crash PC Controller v5.54.0 and...
Moderate
Unreviewed
CVE-2023-6640
was published
Feb 21, 2024
The incorrect object was checked for NULL in the built-in profiler, potentially leading to...
Moderate
Unreviewed
CVE-2024-1556
was published
Feb 20, 2024
dm_table_create in drivers/md/dm-table.c in the Linux kernel through 6.7.4 can attempt to (in...
Moderate
Unreviewed
CVE-2023-52429
was published
Feb 12, 2024
create_empty_lvol in drivers/mtd/ubi/vtbl.c in the Linux kernel through 6.7.4 can attempt to...
Moderate
Unreviewed
CVE-2024-25739
was published
Feb 12, 2024
moby docker daemon crash during image pull of malicious image
Moderate
CVE-2021-21285
was published
for
github.com/moby/moby
(Go)
Jan 31, 2024
BuildKit vulnerable to possible panic when incorrect parameters sent from frontend
Moderate
CVE-2024-23650
was published
for
github.com/moby/buildkit
(Go)
Jan 31, 2024
Vyper's raw_call `value=` kwargs not disabled for static and delegate calls
Moderate
CVE-2024-24567
was published
for
vyper
(pip)
Jan 30, 2024
Vulnerability of improper checking for unusual or exceptional conditions
in Lamassu Bitcoin ATM...
Moderate
Unreviewed
CVE-2024-0675
was published
Jan 30, 2024
An Improper Check for Unusual or Exceptional Conditions vulnerability in the kernel of Juniper...
Moderate
Unreviewed
CVE-2024-21603
was published
Jan 12, 2024
The Gallery Plugin for WordPress – Envira Photo Gallery plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2023-6742
was published
Jan 11, 2024
A denial of service vulnerability exists in all Silicon Labs Z-Wave controller and endpoint...
Moderate
Unreviewed
CVE-2023-5310
was published
Dec 15, 2023
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 2). Affected...
Moderate
Unreviewed
CVE-2023-48431
was published
Dec 12, 2023
Mattermost fails to validate the type of the "reminder" body request parameter allowing an...
Moderate
Unreviewed
CVE-2023-49607
was published
Dec 12, 2023
Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to...
Moderate
Unreviewed
CVE-2023-39205
was published
Nov 15, 2023
Uncaught exception for some Intel Unison software may allow an authenticated user to potentially...
Moderate
Unreviewed
CVE-2023-22290
was published
Nov 14, 2023
Mattermost denial of service vulnerability
Moderate
CVE-2023-5967
was published
for
github.com/mattermost/mattermost-server/v6
(Go)
Nov 6, 2023
An Improper Check for Unusual or Exceptional Conditions in the Packet Forwarding Engine (pfe) of...
Moderate
Unreviewed
CVE-2023-44196
was published
Oct 13, 2023
Parameter verification vulnerability in the window module.Successful exploitation of this...
Moderate
Unreviewed
CVE-2023-41304
was published
Oct 11, 2023
An improper check for an exceptional condition in the Insider Threat Management (ITM) Server...
Moderate
Unreviewed
CVE-2023-4828
was published
Sep 13, 2023
Electron context isolation bypass via nested unserializable return value
Moderate
CVE-2023-29198
was published
for
electron
(npm)
Sep 6, 2023
In OpenBGPD before 8.1, incorrect handling of BGP update data (length of path attributes) set by...
Moderate
Unreviewed
CVE-2023-38283
was published
Aug 29, 2023
In onAccessPointChanged of AccessPointPreference.java, there is a possible way for unprivileged...
Moderate
Unreviewed
CVE-2023-21230
was published
Aug 15, 2023
ProTip!
Advisories are also available from the
GraphQL API