GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,340
Erlang
31
GitHub Actions
22
Go
2,101
Maven
5,000+
npm
3,764
NuGet
679
pip
3,451
Pub
12
RubyGems
892
Rust
885
Swift
37
Unreviewed advisories
All unreviewed
5,000+
1,307 advisories
Filter by severity
A buffer overflow in os/net/mac/ble/ble-l2cap.c in the BLE stack in Contiki-NG 4.4 and earlier...
High
Unreviewed
CVE-2020-12140
was published
Dec 8, 2021
The BPF subsystem in the Linux kernel before 4.17 mishandles situations with a long jump over an...
High
Unreviewed
CVE-2018-25020
was published
Dec 9, 2021
An issue was discovered in Reprise RLM 14.2. By using an admin account, an attacker can write a...
High
Unreviewed
CVE-2021-44154
was published
Dec 14, 2021
Teeworlds up to and including 0.7.5 is vulnerable to Buffer Overflow. A map parser does not...
High
Unreviewed
CVE-2021-43518
was published
Dec 16, 2021
A buffer overflow vulnerability in the Virtual Path Mapping component of FTPShell v6.83 allows...
High
Unreviewed
CVE-2020-18077
was published
Dec 18, 2021
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects...
High
Unreviewed
CVE-2021-45530
was published
Dec 27, 2021
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects...
High
Unreviewed
CVE-2021-45529
was published
Dec 27, 2021
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects...
High
Unreviewed
CVE-2021-45528
was published
Dec 27, 2021
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects...
High
Unreviewed
CVE-2021-45526
was published
Dec 27, 2021
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects...
High
Unreviewed
CVE-2021-45525
was published
Dec 27, 2021
Netgear RAX43 version 1.0.3.96 contains a buffer overrun vulnerability. The URL parsing...
High
Unreviewed
CVE-2021-20166
was published
Dec 31, 2021
Possible buffer overflow due to lack of buffer length check when segmented WMI command is...
High
Unreviewed
CVE-2021-30303
was published
Jan 4, 2022
Possible out of bound access due to improper validation of item size and DIAG memory pools data...
High
Unreviewed
CVE-2021-30298
was published
Jan 4, 2022
Possible heap Memory Corruption Issue due to lack of input validation when sending HWTC IQ...
High
Unreviewed
CVE-2021-30268
was published
Jan 4, 2022
Accu-Time Systems MAXIMUS 1.0 telnet service suffers from a remote buffer overflow which causes...
High
Unreviewed
CVE-2021-45856
was published
Jan 11, 2022
There is a Buffer overflow vulnerability due to a boundary error with the Samba server in the...
High
Unreviewed
CVE-2021-40035
was published
Jan 11, 2022
There is a Buffer overflow vulnerability due to a boundary error with the Samba server in the...
High
Unreviewed
CVE-2021-40029
was published
Jan 11, 2022
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected...
High
Unreviewed
CVE-2021-34979
was published
Jan 14, 2022
A buffer overflow vulnerability exists in Gpac through 1.0.1 via a malformed MP4 file in the...
High
Unreviewed
CVE-2021-40568
was published
Jan 14, 2022
Possible buffer overflow while printing the HARQ memory partition detail due to improper...
High
Unreviewed
CVE-2021-30308
was published
Jan 14, 2022
When a zone file in ldns 1.7.1 is parsed, the function ldns_nsec3_salt_data is too trusted for...
High
Unreviewed
CVE-2020-19861
was published
Jan 22, 2022
Cesanta MJS v2.20.0 was discovered to contain a global buffer overflow via snquote at src...
High
Unreviewed
CVE-2021-46526
was published
Jan 28, 2022
Cesanta MJS v2.20.0 was discovered to contain a global buffer overflow via c_vsnprintf at mjs/src...
High
Unreviewed
CVE-2021-46521
was published
Jan 28, 2022
ProTip!
Advisories are also available from the
GraphQL API