GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,362
Erlang
33
GitHub Actions
22
Go
2,134
Maven
5,000+
npm
3,797
NuGet
687
pip
3,473
Pub
12
RubyGems
896
Rust
897
Swift
38
Unreviewed advisories
All unreviewed
5,000+
6,155 advisories
Filter by severity
Information disclosure while processing IO control commands.
Moderate
Unreviewed
CVE-2024-38417
was published
Feb 3, 2025
Information disclosure while processing information on firmware image during core initialization.
Moderate
Unreviewed
CVE-2024-38414
was published
Feb 3, 2025
Information disclosure during audio playback.
Moderate
Unreviewed
CVE-2024-38416
was published
Feb 3, 2025
When URL categorization is configured on a virtual server, undisclosed requests can cause TMM to...
High
Unreviewed
CVE-2025-24497
was published
Feb 5, 2025
Information disclosure while parsing the OCI IE with invalid length.
High
Unreviewed
CVE-2024-49838
was published
Feb 3, 2025
Memory corruption during management frame processing due to mismatch in T2LM info element.
High
Unreviewed
CVE-2024-49839
was published
Feb 3, 2025
Out-of-bounds array read vulnerability in the FFRT module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-57958
was published
Feb 6, 2025
In rare scenarios, the cpca process on the Security Management Server / Domain Management Server...
Moderate
Unreviewed
CVE-2024-24911
was published
Feb 6, 2025
Acrobat Reader versions 24.005.20307, 24.001.30213, 24.001.30193, 20.005.30730, 20.005.30710 and...
Moderate
Unreviewed
CVE-2024-49532
was published
Dec 10, 2024
A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 could lead to memory...
High
Unreviewed
CVE-2023-27915
was published
Jul 6, 2023
An Access of Memory Location After End of Buffer vulnerability in the Layer-2 Control Protocols...
Moderate
Unreviewed
CVE-2024-21618
was published
Apr 12, 2024
In Shadow 4.13, it is possible to inject control characters into fields provided to the SUID...
Low
Unreviewed
CVE-2023-29383
was published
Apr 15, 2023
Out of bounds Read vulnerability in ssmis_get_frm in libsubextractor.so prior to SMR Mar-2024...
Low
Unreviewed
CVE-2024-20836
was published
Mar 5, 2024
Out-of-bounds read vulnerability in bootloader prior to SMR June-2024 Release 1 allows physical...
Moderate
Unreviewed
CVE-2024-20882
was published
Jun 4, 2024
A vulnerability has been identified in APOGEE PXC Series (BACnet) (All versions), APOGEE PXC...
Moderate
Unreviewed
CVE-2024-54090
was published
Feb 11, 2025
Internet Connection Sharing (ICS) Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2025-21212
was published
Feb 11, 2025
Internet Connection Sharing (ICS) Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2025-21216
was published
Feb 11, 2025
Internet Connection Sharing (ICS) Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2025-21254
was published
Feb 11, 2025
DHCP Client Service Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2025-21179
was published
Feb 11, 2025
InDesign Desktop versions ID20.0, ID19.5.1 and earlier are affected by an out-of-bounds read...
Moderate
Unreviewed
CVE-2025-21124
was published
Feb 11, 2025
Microsoft Excel Information Disclosure Vulnerability
High
Unreviewed
CVE-2025-21383
was published
Feb 11, 2025
PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2025-0904
was published
Feb 11, 2025
PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2025-0905
was published
Feb 11, 2025
Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code Execution...
High
Unreviewed
CVE-2024-12551
was published
Feb 11, 2025
Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Information Disclosure...
Low
Unreviewed
CVE-2024-12550
was published
Feb 11, 2025
ProTip!
Advisories are also available from the
GraphQL API