GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,782
Erlang
36
GitHub Actions
29
Go
2,347
Maven
5,000+
npm
3,976
NuGet
720
pip
3,774
Pub
12
RubyGems
923
Rust
981
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
529 advisories
Filter by severity
A heap-use-after-free vulnerability was found in live555 version 2023.05.10 while handling the...
Critical
Unreviewed
CVE-2023-37117
was published
Jan 12, 2024
A use-after-free issue was addressed with improved memory management. This issue is fixed in...
Critical
Unreviewed
CVE-2023-40414
was published
Jan 11, 2024
Lotos WebServer through 0.1.1 (commit 3eb36cc) has a use-after-free in buffer_avail() at buffer.h...
Critical
Unreviewed
CVE-2024-22088
was published
Jan 5, 2024
Use after free in OpenVPN version 2.6.0 to 2.6.6 may lead to undefined behavoir, leaking memory...
Critical
Unreviewed
CVE-2023-46850
was published
Nov 11, 2023
If Windows failed to duplicate a handle during process creation, the sandbox code may have...
Critical
Unreviewed
CVE-2023-5174
was published
Sep 27, 2023
During process shutdown, it was possible that an `ImageBitmap` was created that would later be...
Critical
Unreviewed
CVE-2023-5175
was published
Sep 27, 2023
A hashtable in the Ion Engine could have been mutated while there was a live interior reference,...
Critical
Unreviewed
CVE-2023-5172
was published
Sep 27, 2023
A use-after-free vulnerability exists in the tif_parse_sub_IFD functionality of Accusoft...
Critical
Unreviewed
CVE-2023-39453
was published
Sep 25, 2023
dpic 2021.04.10 has a use-after-free in thedeletestringbox() function in dpic.y. A different...
Critical
Unreviewed
CVE-2021-33390
was published
Aug 22, 2023
A use after free issue discovered in ONLYOFFICE DocumentServer 4.0.3 through 7.3.2 allows remote...
Critical
Unreviewed
CVE-2023-30186
was published
Aug 14, 2023
Use after free in WebRTC in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who had...
Critical
Unreviewed
CVE-2022-4924
was published
Jul 29, 2023
A use-after-free issue was addressed with improved memory management. This issue is fixed in...
Critical
Unreviewed
CVE-2023-38598
was published
Jul 28, 2023
Radare2 has a use-after-free vulnerability in pyc parser's get_none_object function. Attacker can...
Critical
Unreviewed
CVE-2021-32495
was published
Jul 7, 2023
Use After Free (UAF) vulnerability in the audio PCM driver module under special conditions....
Critical
Unreviewed
CVE-2022-48511
was published
Jul 6, 2023
Use After Free (UAF) vulnerability in the Vdecoderservice service. Successful exploitation of...
Critical
Unreviewed
CVE-2022-48512
was published
Jul 6, 2023
Use After Free (UAF) vulnerability in the uinput module.Successful exploitation of this...
Critical
Unreviewed
CVE-2021-46894
was published
Jul 6, 2023
A use-after-free issue was addressed with improved memory management. This issue is fixed in...
Critical
Unreviewed
CVE-2023-32412
was published
Jun 23, 2023
A use-after-free issue was addressed with improved memory management. This issue is fixed in...
Critical
Unreviewed
CVE-2023-32387
was published
Jun 23, 2023
A use after free issue was addressed with improved memory management. This issue is fixed in...
Critical
Unreviewed
CVE-2022-22630
was published
Jun 23, 2023
The VMware vCenter Server contains a use-after-free vulnerability in the implementation of the...
Critical
Unreviewed
CVE-2023-20893
was published
Jun 22, 2023
A use-after-free related to unsound inference in the bytecode generation when optimizations are...
Critical
Unreviewed
CVE-2023-30470
was published
May 19, 2023
A bytecode optimization bug in Hermes prior to commit e6ed9c1a4b02dc219de1648f44cd808a56171b81...
Critical
Unreviewed
CVE-2023-28081
was published
May 19, 2023
In OnWakelockReleased of attribution_processor.cc, there is a use after free that could lead to...
Critical
Unreviewed
CVE-2023-21096
was published
Apr 19, 2023
Use after free vulnerability in decon driver prior to SMR Mar-2023 Release 1 allows attackers to...
Critical
Unreviewed
CVE-2023-21459
was published
Mar 16, 2023
An arbitrary file upload vulnerability in the camera_upload.php component of PMB v7.4.6 allows...
Critical
Unreviewed
CVE-2023-24734
was published
Mar 6, 2023
ProTip!
Advisories are also available from the
GraphQL API