GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
44
GitHub Actions
43
Go
3,181
Maven
5,000+
npm
5,000+
NuGet
863
pip
4,474
Pub
12
RubyGems
991
Rust
1,185
Swift
51
Unreviewed advisories
All unreviewed
5,000+
534 advisories
Filter by severity
An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch.
Critical
Unreviewed
CVE-2022-4337
was published
Jan 11, 2023
An integer underflow in Organization Specific TLV was found in various versions of OpenvSwitch.
Critical
Unreviewed
CVE-2022-4338
was published
Jan 11, 2023
Out-of-bounds read was discovered in YDB server. An attacker could construct a query with insert...
Critical
Unreviewed
CVE-2022-28228
was published
Dec 24, 2022
A heap out of bounds read vulnerability exists in the handling of IPTC data while parsing TIFF...
Critical
Unreviewed
CVE-2022-41649
was published
Dec 23, 2022
Mozilla developers Andrew McCreight, Nicolas B. Pierron, and the Mozilla Fuzzing Team reported...
Critical
Unreviewed
CVE-2022-31747
was published
Dec 22, 2022
The kernel module has an out-of-bounds read vulnerability. Successful exploitation of this...
Critical
Unreviewed
CVE-2022-46320
was published
Dec 20, 2022
An issue was discovered in Mbed TLS before 2.28.2 and 3.x before 3.3.0. There is a potential heap...
Critical
Unreviewed
CVE-2022-46393
was published
Dec 16, 2022
In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an...
Critical
Unreviewed
CVE-2022-20472
was published
Dec 13, 2022
In toLanguageTag of LocaleListCache.cpp, there is a possible out of bounds read due to an...
Critical
Unreviewed
CVE-2022-20473
was published
Dec 13, 2022
PaddlePaddle Out-of-bounds Read vulnerability
Critical
CVE-2022-46741
was published
for
paddlepaddle
(pip)
Dec 7, 2022
Mikrotik RouterOs before stable v7.6 was discovered to contain an out-of-bounds read in the snmp...
Critical
Unreviewed
CVE-2022-45315
was published
Dec 5, 2022
Mikrotik RouterOs before stable v7.5 was discovered to contain an out-of-bounds read in the...
Critical
Unreviewed
CVE-2022-45313
was published
Dec 5, 2022
drachtio-server 0.8.18 has a heap-based buffer over-read via a long Request-URI in an INVITE...
Critical
Unreviewed
CVE-2022-45909
was published
Nov 26, 2022
DexLoader function get_stringidx_fromdex() in Redex prior to commit 3b44c64 can load an out of...
Critical
Unreviewed
CVE-2022-36938
was published
Nov 11, 2022
Improper input validation vulnerability for processing SIB12 PDU in Exynos modems prior to SMR...
Critical
Unreviewed
CVE-2022-39881
was published
Nov 10, 2022
In wolfSSL before 5.5.2, if callback functions are enabled (via the WOLFSSL_CALLBACKS flag), then...
Critical
Unreviewed
CVE-2022-42905
was published
Nov 7, 2022
GNU Libtasn1 before 4.19.0 has an ETYPE_OK off-by-one array size check that affects...
Critical
Unreviewed
CVE-2021-46848
was published
Oct 24, 2022
Information disclosure in WLAN due to improper length check while processing authentication...
Critical
Unreviewed
CVE-2022-25719
was published
Oct 19, 2022
The HW_KEYMASTER module has a vulnerability of not verifying the data read.Successful...
Critical
Unreviewed
CVE-2022-41581
was published
Oct 14, 2022
The HW_KEYMASTER module has an out-of-bounds access vulnerability in parameter set verification...
Critical
Unreviewed
CVE-2021-46840
was published
Oct 14, 2022
The HW_KEYMASTER module has a vulnerability of missing bounds check on length.Successful...
Critical
Unreviewed
CVE-2021-46839
was published
Oct 14, 2022
An out-of-bounds read in the BGP daemon of FRRouting FRR before 8.4 may lead to a segmentation...
Critical
Unreviewed
CVE-2022-37032
was published
Sep 20, 2022
Out-of-bounds heap read vulnerability in the HW_KEYMASTER module. Successful exploitation of this...
Critical
Unreviewed
CVE-2021-40019
was published
Sep 17, 2022
The path in this case is a little bit convoluted. The end result is that via an ioctl an...
Critical
Unreviewed
CVE-2021-0942
was published
Sep 14, 2022
An out-of-bounds read can occur while parsing a server certificate due to improper length check...
Critical
Unreviewed
CVE-2022-22062
was published
Sep 3, 2022
ProTip!
Advisories are also available from the
GraphQL API