GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,750
Maven
5,000+
npm
4,356
NuGet
765
pip
4,116
Pub
12
RubyGems
960
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
129 advisories
Filter by severity
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS...
Low
Unreviewed
CVE-2019-8798
was published
May 24, 2022
Improper validation for loop variable received from firmware can lead to out of bound access in...
Low
Unreviewed
CVE-2019-10535
was published
May 24, 2022
Buffer overflow in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6618 ...
Low
Unreviewed
CVE-2019-11113
was published
May 24, 2022
IDRIX, Truecrypt Veracrypt, Truecrypt Prior to 1.23-Hotfix-1 (Veracrypt), all versions (Truecrypt...
Low
Unreviewed
CVE-2019-1010208
was published
May 24, 2022
Cisco AnyConnect Secure Mobility Client 3.0 before 3.0.08057 allows remote authenticated users to...
Low
Unreviewed
CVE-2012-1370
was published
May 17, 2022
Wireshark 1.4.x before 1.4.13 and 1.6.x before 1.6.8 on the SPARC and Itanium platforms does not...
Low
Unreviewed
CVE-2012-2394
was published
May 17, 2022
Cisco IOS 15.1 and 15.2, when a clientless SSL VPN is configured, allows remote authenticated...
Low
Unreviewed
CVE-2012-1344
was published
May 17, 2022
The fallocate implementation in the GFS2 filesystem in the Linux kernel before 3.2 relies on the...
Low
Unreviewed
CVE-2011-4098
was published
May 17, 2022
OpenStack Compute (Nova) Folsom, Grizzly, and earlier, when using Apache Qpid for the RPC backend...
Low
Unreviewed
CVE-2013-4261
was published
May 17, 2022
Multiple buffer overflows in the NMEA parser (nmea-gen.c) in gypsy 0.8 allow local users to cause...
Low
Unreviewed
CVE-2011-0524
was published
May 17, 2022
The (1) key_notify_sa_flush and (2) key_notify_policy_flush functions in net/key/af_key.c in the...
Low
Unreviewed
CVE-2013-2234
was published
May 17, 2022
The key_notify_policy_flush function in net/key/af_key.c in the Linux kernel before 3.9 does not...
Low
Unreviewed
CVE-2013-2237
was published
May 17, 2022
The av_probe_input_buffer function in libavformat/utils.c in FFmpeg before 1.0.2, when running...
Low
Unreviewed
CVE-2012-6618
was published
May 17, 2022
Symantec PGP Desktop 10.0.x through 10.2.x and Encryption Desktop Professional 10.3.x before 10.3...
Low
Unreviewed
CVE-2014-1647
was published
May 17, 2022
Symantec PGP Desktop 10.0.x through 10.2.x and Encryption Desktop Professional 10.3.x before 10.3...
Low
Unreviewed
CVE-2014-1646
was published
May 17, 2022
slapd in OpenLDAP before 2.4.30 allows remote attackers to cause a denial of service (assertion...
Low
Unreviewed
CVE-2012-1164
was published
May 17, 2022
There is a stack-based buffer overflow on some Tenda routers (FH1202/F1202/F1200: versions before...
Low
Unreviewed
CVE-2017-9139
was published
May 17, 2022
Buffer overflow in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.43, 8.0 before 8.0.0...
Low
Unreviewed
CVE-2016-0385
was published
May 17, 2022
The class file parser in IBM Java before 1.4.2 SR13 FP9, as used in IBM Runtimes for Java...
Low
Unreviewed
CVE-2011-0311
was published
May 17, 2022
The rfbSendFramebufferUpdate function in server/libvncserver/rfbserver.c in vino-server in Vino 2...
Low
Unreviewed
CVE-2011-0904
was published
May 17, 2022
The rfbSendFramebufferUpdate function in server/libvncserver/rfbserver.c in vino-server in Vino 2...
Low
Unreviewed
CVE-2011-0905
was published
May 17, 2022
ulp/sdp/sdp_proc.c in the ib_sdp module (aka ib_sdp.ko) in the ofa_kernel package in the...
Low
Unreviewed
CVE-2011-3345
was published
May 17, 2022
BazisVirtualCDBus.sys in WinCDEmu 3.6 allows local users to cause a denial of service (system...
Low
Unreviewed
CVE-2011-5202
was published
May 17, 2022
** DISPUTED ** Buffer overflow in the SQLDriverConnect function in unixODBC 2.3.1 allows local...
Low
Unreviewed
CVE-2012-2658
was published
May 17, 2022
** DISPUTED ** Buffer overflow in the SQLDriverConnect function in unixODBC 2.0.10, 2.3.1, and...
Low
Unreviewed
CVE-2012-2657
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API