GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,831
Maven
5,000+
npm
4,462
NuGet
775
pip
4,226
Pub
12
RubyGems
972
Rust
1,093
Swift
47
Unreviewed advisories
All unreviewed
5,000+
11,599 advisories
Filter by severity
Tenda TX3 US_TX3V1.0br_V16.03.13.11 is vulnerable to stack overflow via compare_parentcontrol_time.
Critical
Unreviewed
CVE-2022-40942
was published
Sep 29, 2022
An out-of-bounds write vulnerability exists in the JPG sof_nb_comp header processing...
High
Unreviewed
CVE-2021-21793
was published
May 24, 2022
The function AES_UnWRAP() in the Realtek RTL8195A Wi-Fi Module prior to versions released in...
High
Unreviewed
CVE-2020-25855
was published
May 24, 2022
The function ClientEAPOLKeyRecvd() in the Realtek RTL8195A Wi-Fi Module prior to versions...
High
Unreviewed
CVE-2020-25857
was published
May 24, 2022
In vpu, there is a possible out of bounds write due to a missing bounds check. This could lead to...
High
Unreviewed
CVE-2021-0348
was published
May 24, 2022
In aee, there is a possible memory corruption due to a stack buffer overflow. This could lead to...
Moderate
Unreviewed
CVE-2021-0362
was published
May 24, 2022
In netdiag, there is a possible out of bounds write due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2021-0357
was published
May 24, 2022
In netdiag, there is a possible out of bounds write due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2021-0359
was published
May 24, 2022
The function DecWPA2KeyData() in the Realtek RTL8195A Wi-Fi Module prior to versions released in...
High
Unreviewed
CVE-2020-25854
was published
May 24, 2022
Out of bounds write in V8 in Google Chrome prior to 86.0.4240.99 allowed a remote attacker to...
High
Unreviewed
CVE-2020-15995
was published
May 24, 2022
Insufficient policy enforcement in ANGLE in Google Chrome prior to 86.0.4240.183 allowed a remote...
High
Unreviewed
CVE-2020-16005
was published
May 24, 2022
Stack buffer overflow in WebRTC in Google Chrome prior to 86.0.4240.183 allowed a remote attacker...
Critical
Unreviewed
CVE-2020-16008
was published
May 24, 2022
In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/oppo_vooc.c, the function...
Moderate
Unreviewed
CVE-2020-11834
was published
May 24, 2022
_gcry_md_block_write in cipher/hash-common.c in Libgcrypt before 1.9.1 has a heap-based buffer...
High
Unreviewed
CVE-2021-3345
was published
May 24, 2022
NVIDIA CUDA Toolkit, all versions prior to 11.1.1, contains a vulnerability in the NVJPEG library...
High
Unreviewed
CVE-2020-5991
was published
May 24, 2022
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed...
High
Unreviewed
CVE-2020-35448
was published
May 24, 2022
An issue was discovered on Accfly Wireless Security IR Camera System 720P with software versions...
Critical
Unreviewed
CVE-2020-25784
was published
May 24, 2022
An issue was discovered on Accfly Wireless Security IR Camera System 720P with software versions...
Critical
Unreviewed
CVE-2020-25785
was published
May 24, 2022
Heap overflow with full parsing of HTTP respose in Rostelecom CS-C2SHW 5.0.082.1. AgentUpdater...
Critical
Unreviewed
CVE-2020-27539
was published
May 24, 2022
FastStone Image Viewer 7.5 has an out-of-bounds write (via a crafted image file) at FSViewer.exe...
High
Unreviewed
CVE-2020-35845
was published
May 24, 2022
TPEditor (v1.98 and prior) is vulnerable to two out-of-bounds write instances in the way it...
High
Unreviewed
CVE-2020-27284
was published
May 24, 2022
An unauthenticated stack-based buffer overflow vulnerability in common.c's handle_PORT in uftpd...
Critical
Unreviewed
CVE-2020-20276
was published
May 24, 2022
A vulnerability in the input parameter handling of HCL Client Application Access v9 could...
High
Unreviewed
CVE-2020-14231
was published
May 24, 2022
A logic issue existed resulting in memory corruption. This was addressed with improved state...
High
Unreviewed
CVE-2019-8534
was published
May 24, 2022
A vulnerability in the MIME message handling of the HCL Notes v9 client could potentially be...
Critical
Unreviewed
CVE-2020-14224
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API