GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,340
Erlang
31
GitHub Actions
22
Go
2,101
Maven
5,000+
npm
3,764
NuGet
679
pip
3,451
Pub
12
RubyGems
892
Rust
885
Swift
37
Unreviewed advisories
All unreviewed
5,000+
658 advisories
Filter by severity
url.cpp in libproxy through 0.4.15 is prone to a buffer overflow when PAC is enabled, as...
Critical
Unreviewed
CVE-2020-26154
was published
May 24, 2022
A buffer overflow vulnerability in SonicOS allows a remote attacker to cause Denial of Service ...
Critical
Unreviewed
CVE-2020-5135
was published
May 24, 2022
An issue was discovered in illumos before 2020-10-22, as used in OmniOS before r151030by,...
Critical
Unreviewed
CVE-2020-27678
was published
May 24, 2022
A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2020-9866
was published
May 24, 2022
u'Remote code execution can happen by sending a carefully crafted POST query when Device...
Critical
Unreviewed
CVE-2020-3657
was published
May 24, 2022
Buffer overflow vulnerability in TCP/IP function included in the firmware of MELSEC iQ-R series ...
Critical
Unreviewed
CVE-2020-5653
was published
May 24, 2022
u'Possible buffer overflow while updating output buffer for IMEI and Gateway Address due to lack...
Critical
Unreviewed
CVE-2020-3692
was published
May 24, 2022
Garmin Forerunner 235 before 8.20 is affected by: Buffer Overflow. The component is: ConnectIQ...
Critical
Unreviewed
CVE-2020-27486
was published
May 24, 2022
Buffer overflow in in the copy_msg_element function for the devDiscoverHandle server in the TP...
Critical
Unreviewed
CVE-2020-28877
was published
May 24, 2022
Buffer overflow in WinSCP 5.17.8 allows a malicious FTP server to cause a denial of service or...
Critical
Unreviewed
CVE-2020-28864
was published
May 24, 2022
Slurm before 19.05.8 and 20.x before 20.02.6 has an RPC Buffer Overflow in the PMIx MPI plugin.
Critical
Unreviewed
CVE-2020-27745
was published
May 24, 2022
HCL Domino is susceptible to a Buffer Overflow vulnerability in DXL due to improper validation of...
Critical
Unreviewed
CVE-2020-14260
was published
May 24, 2022
ReadyMedia (aka MiniDLNA) before versions 1.3.0 allows remote code execution. Sending a malicious...
Critical
Unreviewed
CVE-2020-28926
was published
May 24, 2022
A buffer overflow in the web server of Flexense DupScout Enterprise 10.0.18 allows a remote...
Critical
Unreviewed
CVE-2020-29659
was published
May 24, 2022
There are multiple buffer overflow vulnerabilities that could lead to unauthenticated remote code...
Critical
Unreviewed
CVE-2020-24633
was published
May 24, 2022
An issue was discovered in Contiki through 3.0 and Contiki-NG through 4.5. The code for parsing...
Critical
Unreviewed
CVE-2020-24336
was published
May 24, 2022
struct2json before 2020-11-18 is affected by a Buffer Overflow because strcpy is used for...
Critical
Unreviewed
CVE-2020-29203
was published
May 24, 2022
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This...
Critical
Unreviewed
CVE-2020-35795
was published
May 24, 2022
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This...
Critical
Unreviewed
CVE-2020-35796
was published
May 24, 2022
Python 3.x through 3.9.1 has a buffer overflow in PyCArg_repr in _ctypes/callproc.c, which may...
Critical
Unreviewed
CVE-2021-3177
was published
May 24, 2022
Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker...
Critical
Unreviewed
CVE-2021-1300
was published
May 24, 2022
Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker...
Critical
Unreviewed
CVE-2021-1301
was published
May 24, 2022
Possible memory out of bound issue during music playback when an incorrect bit stream content is...
Critical
Unreviewed
CVE-2020-3686
was published
May 24, 2022
A flaw was found in the gstreamer h264 component of gst-plugins-bad before v1.18.1 where when...
Critical
Unreviewed
CVE-2021-3185
was published
May 24, 2022
Sagemcom F@ST 3686 v2 3.495 devices have a buffer overflow via a long sessionKey to the goform...
Critical
Unreviewed
CVE-2021-3304
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API