GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,077
Erlang
29
GitHub Actions
19
Go
1,903
Maven
5,000+
npm
3,632
NuGet
638
pip
3,249
Pub
10
RubyGems
864
Rust
818
Swift
35
Unreviewed advisories
All unreviewed
5,000+
589 advisories
Filter by severity
A memory leak issue discovered in YASM v.1.3.0 allows a local attacker to cause a denial of...
Moderate
Unreviewed
CVE-2023-51258
was published
Jan 18, 2024
A GPU kernel can read sensitive data from another GPU kernel (even from another user or app)...
Moderate
Unreviewed
CVE-2023-4969
was published
Jan 16, 2024
A Missing Release of Memory after Effective Lifetime vulnerability in Routing Protocol Daemon ...
Moderate
Unreviewed
CVE-2024-21613
was published
Jan 12, 2024
A Missing Release of Memory after Effective Lifetime vulnerability in the Routing Protocol...
High
Unreviewed
CVE-2024-21611
was published
Jan 12, 2024
A Missing Release of Memory after Effective Lifetime vulnerability in the Packet Forwarding...
Moderate
Unreviewed
CVE-2024-21599
was published
Jan 12, 2024
A memory leak problem was found in ctnetlink_create_conntrack in net/netfilter...
Moderate
Unreviewed
CVE-2023-7192
was published
Jan 2, 2024
An attacker with physical access to the Kantech Gen1 ioSmart card reader with firmware version...
High
Unreviewed
CVE-2023-0248
was published
Dec 14, 2023
A vulnerability has been identified in SIMATIC CP 1242-7 V2 (incl. SIPLUS variants) (All versions...
High
Unreviewed
CVE-2023-38380
was published
Dec 12, 2023
gpac 2.3-DEV-rev617-g671976fcc-master contains memory leaks in gf_mpd_resolve_url media_tools/mpd...
Moderate
Unreviewed
CVE-2023-48958
was published
Dec 7, 2023
GPAC version 2.3-DEV-rev602-ged8424300-master in MP4Box contains a memory leak in NewSFDouble...
Moderate
Unreviewed
CVE-2023-46871
was published
Dec 7, 2023
tokio-boring vulnerable to resource exhaustion via memory leak
Moderate
CVE-2023-6180
was published
for
tokio-boring
(Rust)
Dec 5, 2023
A vulnerability, which was classified as problematic, has been found in Apryse iText 8.0.2. This...
Moderate
Unreviewed
CVE-2023-6299
was published
Nov 27, 2023
GPAC 2.3-DEV-rev617-g671976fcc-master is vulnerable to memory leaks in extract_attributes...
High
Unreviewed
CVE-2023-48090
was published
Nov 20, 2023
GPAC 2.3-DEV-rev617-g671976fcc-master is vulnerable to memory leak in gf_mpd_parse_string...
Moderate
Unreviewed
CVE-2023-48039
was published
Nov 20, 2023
An issue was discovered in the captive portal in OpenNDS before version 10.1.3. It has multiple...
High
Unreviewed
CVE-2023-41102
was published
Nov 17, 2023
MP4Box GPAC v2.3-DEV-rev617-g671976fcc-master was discovered to contain a memory leak in the...
Moderate
Unreviewed
CVE-2023-47384
was published
Nov 14, 2023
HashiCorp Vault Missing Release of Memory after Effective Lifetime vulnerability
High
CVE-2023-5954
was published
for
github.com/hashicorp/vault
(Go)
Nov 9, 2023
Dell PowerScale OneFS 8.2.x,9.0.0.x-9.5.0.x contains a denial-of-service vulnerability. A low...
Moderate
Unreviewed
CVE-2023-43076
was published
Nov 2, 2023
memory leak flaw was found in ruby-magick
Moderate
CVE-2023-5349
was published
for
rmagick
(RubyGems)
Oct 30, 2023
An Improper Input Validation vulnerability in the VxLAN packet forwarding engine (PFE) of...
Moderate
Unreviewed
CVE-2023-44183
was published
Oct 13, 2023
An Improper Release of Memory Before Removing Last Reference vulnerability in Packet Forwarding...
Moderate
Unreviewed
CVE-2023-44193
was published
Oct 13, 2023
An Improper Input Validation vulnerability in the Packet Forwarding Engine of Juniper Networks...
High
Unreviewed
CVE-2023-44192
was published
Oct 13, 2023
A Missing Release of Memory after Effective Lifetime vulnerability in the Packet Forwarding...
Moderate
Unreviewed
CVE-2023-22392
was published
Oct 13, 2023
A memory leak in tsMuxer version git-2539d07 allows attackers to cause a Denial of Service (DoS)...
Moderate
Unreviewed
CVE-2023-45511
was published
Oct 12, 2023
MsQuic Remote Denial of Service Vulnerability
High
CVE-2023-36435
was published
for
Microsoft.Native.Quic.MsQuic.OpenSSL
(NuGet)
Oct 10, 2023
ProTip!
Advisories are also available from the
GraphQL API