GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,737
Maven
5,000+
npm
4,337
NuGet
765
pip
4,112
Pub
12
RubyGems
960
Rust
1,068
Swift
45
Unreviewed advisories
All unreviewed
5,000+
122 advisories
Filter by severity
A flaw was found in glibc. An off-by-one buffer overflow and underflow in getcwd() may lead to...
High
Unreviewed
CVE-2021-3999
was published
Aug 25, 2022
In the Linux kernel, the following vulnerability has been resolved:
wifi: mt76: mt7925: fix off...
Moderate
Unreviewed
CVE-2025-38600
was published
Aug 19, 2025
In the Linux kernel, the following vulnerability has been resolved:
ext4: fix another off-by-one...
Moderate
Unreviewed
CVE-2023-53143
was published
May 2, 2025
Off by one error in V8 in Google Chrome prior to 141.0.7390.54 allowed a remote attacker to...
Moderate
Unreviewed
CVE-2025-11215
was published
Nov 7, 2025
In the Linux kernel, the following vulnerability has been resolved:
ext4: fix off-by-one error...
Moderate
Unreviewed
CVE-2025-23150
was published
May 1, 2025
GIMP PSP File Parsing Off-By-One Remote Code Execution Vulnerability. This vulnerability allows...
High
Unreviewed
CVE-2023-44444
was published
May 3, 2024
In rds_recv_track_latency in net/rds/af_rds.c in the Linux kernel through 6.7.1, there is an off...
Moderate
Unreviewed
CVE-2024-23849
was published
Jan 23, 2024
Netatalk 3.2.0 has an off-by-one error and resultant heap-based buffer overflow because of...
Critical
Unreviewed
CVE-2024-38441
was published
Jun 16, 2024
In the Linux kernel, the following vulnerability has been resolved:
ep93xx: clock: Fix off by...
High
Unreviewed
CVE-2024-47686
was published
Oct 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
scsi: sd: Fix off-by-one...
High
Unreviewed
CVE-2024-47682
was published
Oct 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
dma-buf: heaps: Fix off-by...
High
Unreviewed
CVE-2024-46852
was published
Sep 27, 2024
Netatalk 3.2.0 has an off-by-one error and resultant heap-based buffer overflow because of...
High
Unreviewed
CVE-2024-38440
was published
Jun 16, 2024
ImageMagick has a Heap Buffer Overflow in InterpretImageFilename
Low
CVE-2025-53014
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Aug 25, 2025
In iperf before 3.19.1, iperf_auth.c has an off-by-one error and resultant heap-based buffer...
Moderate
Unreviewed
CVE-2025-54349
was published
Aug 3, 2025
Mbed TLS before 3.6.4 has a PEM parsing one-byte heap-based buffer underflow, in...
Moderate
Unreviewed
CVE-2025-52497
was published
Jul 4, 2025
In the Linux kernel, the following vulnerability has been resolved:
bpf, sockmap: Several fixes...
Moderate
Unreviewed
CVE-2024-56720
was published
Dec 29, 2024
sqfs_search_dir in Das U-Boot before 2025.01-rc1 exhibits an off-by-one error and resultant heap...
High
Unreviewed
CVE-2024-57259
was published
Feb 19, 2025
In the Linux kernel, the following vulnerability has been resolved:
wifi: nl80211: fix...
High
Unreviewed
CVE-2024-56663
was published
Dec 27, 2024
In the Linux kernel, the following vulnerability has been resolved:
timers/migration: Fix off-by...
Moderate
Unreviewed
CVE-2025-21813
was published
Feb 27, 2025
Sudo before 1.9.5p2 has a Heap-based Buffer Overflow, allowing privilege escalation to root via ...
High
Unreviewed
CVE-2021-3156
was published
May 24, 2022
In the Linux kernel, the following vulnerability has been resolved:
mmmremap.c: avoid pointless...
Moderate
Unreviewed
CVE-2022-49077
was published
Oct 14, 2025
In the Linux kernel, the following vulnerability has been resolved:
wifi: mt76: mt7925: fix off...
High
Unreviewed
CVE-2024-57990
was published
Feb 27, 2025
FFmpeg version n5.1 to n6.1 was discovered to contain an Off-by-one Error vulnerability in...
Moderate
Unreviewed
CVE-2024-31585
was published
Apr 17, 2024
There's a flaw in the nbdkit server when handling responses from its plugins regarding the status...
Moderate
Unreviewed
CVE-2025-47711
was published
Jun 9, 2025
GNU Libtasn1 before 4.19.0 has an ETYPE_OK off-by-one array size check that affects...
Critical
Unreviewed
CVE-2021-46848
was published
Oct 24, 2022
ProTip!
Advisories are also available from the
GraphQL API