GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
2,000
Maven
5,000+
npm
3,711
NuGet
661
pip
3,383
Pub
11
RubyGems
885
Rust
849
Swift
36
Unreviewed advisories
All unreviewed
5,000+
256,220 advisories
Filter by severity
github.com/containers/image allows unexpected authenticated registry accesses
High
CVE-2024-3727
was published
for
github.com/containers/image
(Go)
May 14, 2024
The DeBounce Email Validator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting...
Moderate
Unreviewed
CVE-2024-11463
was published
Nov 23, 2024
The WPDash Notes plugin for WordPress is vulnerable to unauthorized access of data due to a...
Moderate
Unreviewed
CVE-2024-9223
was published
Nov 23, 2024
In the Linux kernel, the following vulnerability has been resolved:
mctp i2c: handle NULL header...
Moderate
Unreviewed
CVE-2024-53043
was published
Nov 19, 2024
A vulnerability, which was classified as critical, was found in code-projects Task Manager 1.0....
Moderate
Unreviewed
CVE-2024-11096
was published
Nov 12, 2024
The CTT Expresso para WooCommerce plugin for WordPress is vulnerable to sensitive information...
Moderate
Unreviewed
CVE-2024-6687
was published
Aug 1, 2024
In the Linux kernel, the following vulnerability has been resolved:
firmware: qcom: scm: fix a...
Moderate
Unreviewed
CVE-2024-53069
was published
Nov 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
usb: typec: fix potential...
High
Unreviewed
CVE-2024-50268
was published
Nov 19, 2024
In analyzeAxes of FontUtils.cpp, there is a possible out of bounds read due to a missing bounds...
Moderate
Unreviewed
CVE-2018-9410
was published
Nov 19, 2024
An issue was discovered in MBed OS 6.16.0. Its hci parsing software dynamically determines the...
High
Unreviewed
CVE-2024-48986
was published
Nov 20, 2024
An issue was discovered in MBed OS 6.16.0. Its hci parsing software dynamically determines the...
High
Unreviewed
CVE-2024-48982
was published
Nov 20, 2024
D-Link DIR-X3260 prog.cgi SetWLanRadioSecurity Stack-Based Buffer Overflow Remote Code Execution...
Moderate
Unreviewed
CVE-2023-51618
was published
May 3, 2024
D-Link DIR-X3260 prog.cgi SetQuickVPNSettings PSK Stack-Based Buffer Overflow Remote Code...
Moderate
Unreviewed
CVE-2023-51615
was published
May 3, 2024
D-Link DIR-X3260 prog.cgi SetTriggerPPPoEValidate Stack-based Buffer Overflow Remote Code...
Moderate
Unreviewed
CVE-2023-51622
was published
May 3, 2024
In removeUnsynchronization of ID3.cpp there is a possible resource exhaustion due to improper...
Moderate
Unreviewed
CVE-2018-9412
was published
Nov 20, 2024
D-Link DIR-X3260 prog.cgi SetQuickVPNSettings Password Stack-Based Buffer Overflow Remote Code...
Moderate
Unreviewed
CVE-2023-51614
was published
May 3, 2024
D-Link DIR-X3260 prog.cgi SetWanSettings Stack-Based Buffer Overflow Remote Code Execution...
Moderate
Unreviewed
CVE-2023-51617
was published
May 3, 2024
D-Link DIR-X3260 prog.cgi SetSysEmailSettings Stack-Based Buffer Overflow Remote Code Execution...
Moderate
Unreviewed
CVE-2023-51616
was published
May 3, 2024
D-Link DIR-X3260 prog.cgi SetIPv6PppoeSettings Stack-based Buffer Overflow Remote Code Execution...
Moderate
Unreviewed
CVE-2023-51620
was published
May 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
iio: gts-helper: Fix memory...
Moderate
Unreviewed
CVE-2024-53076
was published
Nov 19, 2024
Ubuntu's implementation of pulseaudio can be crashed by a malicious program if a bluetooth...
Moderate
Unreviewed
CVE-2024-11586
was published
Nov 23, 2024
NVIDIA Base Command Manager contains a missing authentication vulnerability in the CMDaemon...
Critical
Unreviewed
CVE-2024-0138
was published
Nov 23, 2024
NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an...
High
Unreviewed
CVE-2024-0122
was published
Nov 23, 2024
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is...
Moderate
Unreviewed
CVE-2024-41761
was published
Nov 23, 2024
Visteon Infotainment REFLASH_DDU_ExtractFile Command Injection Remote Code Execution...
Moderate
Unreviewed
CVE-2024-8360
was published
Nov 23, 2024
ProTip!
Advisories are also available from the
GraphQL API