GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,342
Erlang
31
GitHub Actions
22
Go
2,106
Maven
5,000+
npm
3,764
NuGet
679
pip
3,451
Pub
12
RubyGems
892
Rust
886
Swift
37
Unreviewed advisories
All unreviewed
5,000+
1,307 advisories
Filter by severity
Multiple buffer overflows in the printf functionality in SQLite, as used in Apple iOS before 8.4...
High
Unreviewed
CVE-2015-3717
was published
May 13, 2022
Buffer overflow in NetRxPkt::ehdr_buf in hw/net/net_rx_pkt.c in QEMU (aka Quick Emulator), when...
High
Unreviewed
CVE-2017-6058
was published
May 13, 2022
Buffer overflow in the stellaris_enet_receive function in hw/net/stellaris_enet.c in QEMU, when...
High
Unreviewed
CVE-2016-4001
was published
May 13, 2022
Multiple buffer overflows in the (1) png_set_PLTE and (2) png_get_PLTE functions in libpng before...
High
Unreviewed
CVE-2015-8126
was published
May 13, 2022
Buffer overflow in the complete_emulated_mmio function in arch/x86/kvm/x86.c in the Linux kernel...
High
Unreviewed
CVE-2014-0049
was published
May 13, 2022
Multiple buffer overflows in abcm2ps before 5.9.12 might allow remote attackers to execute...
High
Unreviewed
CVE-2010-3441
was published
May 13, 2022
Buffer overflow in the ecryptfs_uid_hash macro in fs/ecryptfs/messaging.c in the eCryptfs...
High
Unreviewed
CVE-2010-2492
was published
May 13, 2022
Buffer overflow in the CharDistributionAnalysis::HandleOneChar function in Mozilla Firefox before...
High
Unreviewed
CVE-2013-0760
was published
May 13, 2022
Buffer overflow in the e1000_receive function in the e1000 device driver (hw/e1000.c) in QEMU 1.3...
High
Unreviewed
CVE-2012-6075
was published
May 13, 2022
Multiple buffer overflows in the caiaq Native Instruments USB audio functionality in the Linux...
High
Unreviewed
CVE-2011-0712
was published
May 13, 2022
Buffer overflow in the SCSI implementation in QEMU, as used in Xen, when a SCSI controller has...
High
Unreviewed
CVE-2013-4344
was published
May 13, 2022
Buffer overflow in libpng 1.0.x before 1.0.55, 1.2.x before 1.2.45, 1.4.x before 1.4.8, and 1.5.x...
High
Unreviewed
CVE-2011-2690
was published
May 13, 2022
Buffer overflow in Arcext.dll 2.16.1 and earlier in pon software Explzh 5.62 and earlier allows...
High
Unreviewed
CVE-2010-2434
was published
May 13, 2022
Buffer overflow in the _cairo_truetype_index_to_ucs4 function in cairo, as used in Mozilla...
High
Unreviewed
CVE-2014-1509
was published
May 13, 2022
Buffer overflow in the clusterip_proc_write function in net/ipv4/netfilter/ipt_CLUSTERIP.c in the...
High
Unreviewed
CVE-2011-2534
was published
May 13, 2022
Multiple buffer overflows in vorbis_dec.c in the Vorbis decoder in FFmpeg, as used in Google...
High
Unreviewed
CVE-2011-0480
was published
May 13, 2022
Buffer overflow in Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 allows...
High
Unreviewed
CVE-2011-0481
was published
May 13, 2022
Buffer overflow in the password management functionality in NTP 4.2.x before 4.2.8p4, and 4.3.x...
High
Unreviewed
CVE-2015-7854
was published
May 13, 2022
Google Chrome before 10.0.648.204 does not properly handle base strings, which allows remote...
High
Unreviewed
CVE-2011-1291
was published
May 13, 2022
Buffer overflow in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of...
High
Unreviewed
CVE-2011-3915
was published
May 13, 2022
Buffer overflow in Google Chrome before 15.0.874.120 allows remote attackers to cause a denial of...
High
Unreviewed
CVE-2011-3896
was published
May 13, 2022
Buffer overflow in the locale implementation in Google Chrome before 17.0.963.46 allows remote...
High
Unreviewed
CVE-2011-3959
was published
May 13, 2022
Buffer overflow in Skia, as used in Google Chrome before 17.0.963.65, allows remote attackers to...
High
Unreviewed
CVE-2011-3033
was published
May 13, 2022
A buffer overflow in Smart Card authentication code in gpkcsp.dll in Microsoft Windows XP through...
High
Unreviewed
CVE-2017-0176
was published
May 13, 2022
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is...
High
Unreviewed
CVE-2019-4015
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API