GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,300
Erlang
31
GitHub Actions
21
Go
2,069
Maven
5,000+
npm
3,744
NuGet
668
pip
3,429
Pub
12
RubyGems
892
Rust
880
Swift
36
Unreviewed advisories
All unreviewed
5,000+
13 advisories
Filter by severity
An issue was discovered in the Linux kernel before 6.3.4. fs/ksmbd/connection.c in ksmbd has an...
Critical
Unreviewed
CVE-2023-38429
was published
Jul 18, 2023
Netatalk 3.2.0 has an off-by-one error and resultant heap-based buffer overflow because of...
Critical
Unreviewed
CVE-2024-38441
was published
Jun 16, 2024
In mjs_json.c in Cesanta MongooseOS mJS 1.26, a maliciously formed JSON string can trigger an off...
Critical
Unreviewed
CVE-2021-31875
was published
May 24, 2022
In Memcached before 1.6.22, an off-by-one error exists when processing proxy requests in proxy...
Critical
Unreviewed
CVE-2023-46853
was published
Oct 27, 2023
Buffer Overflow in galois_2p8
Critical
CVE-2022-24988
was published
for
galois_2p8
(Rust)
Feb 15, 2022
Off-by-one Error in v2fly/v2ray-core
Critical
CVE-2021-4070
was published
for
github.com/v2fly/v2ray-core
(Go)
Feb 24, 2022
A security issue in nginx resolver was identified, which might allow an attacker who is able to...
Critical
Unreviewed
CVE-2021-23017
was published
May 24, 2022
An issue was discovered in libX11 through 1.6.5. The function XListExtensions in ListExt.c is...
Critical
Unreviewed
CVE-2018-14599
was published
May 13, 2022
UltraVNC revision 1211 has multiple off-by-one vulnerabilities in VNC server code, which can...
Critical
Unreviewed
CVE-2019-8272
was published
May 13, 2022
UltraVNC revision 1206 has multiple off-by-one vulnerabilities in VNC client code connected with...
Critical
Unreviewed
CVE-2019-8268
was published
May 13, 2022
Crow before v1.0+4 was discovered to contain a buffer overflow via the function qs_parse at...
Critical
Unreviewed
CVE-2022-34970
was published
Aug 5, 2022
An issue was discovered in The Sleuth Kit (TSK) 4.6.6. There is an off-by-one overwrite due to an...
Critical
Unreviewed
CVE-2019-14532
was published
May 24, 2022
Off-by-one error in the phar_parse_pharfile function in ext/phar/phar.c in PHP before 5.6.30 and...
Critical
Unreviewed
CVE-2016-10160
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API