GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,782
Erlang
36
GitHub Actions
29
Go
2,347
Maven
5,000+
npm
3,976
NuGet
720
pip
3,774
Pub
12
RubyGems
923
Rust
981
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
125 advisories
Filter by severity
Multiple buffer overflows in the dissect_pft_fec_detailed function in the DCP-ETSI dissector in...
Low
Unreviewed
CVE-2013-1588
was published
May 17, 2022
Buffer overflow in the NTLMSSP dissector in Wireshark 1.6.x before 1.6.13 and 1.8.x before 1.8.5...
Low
Unreviewed
CVE-2013-1590
was published
May 17, 2022
The pioctl for the OSD FS command in OpenAFS before 1.6.13 uses the wrong pointer when writing...
Low
Unreviewed
CVE-2015-3285
was published
May 17, 2022
Stack-based buffer overflow in the new_msg_lsa_change_notify function in the OSPFD API (ospf_api...
Low
Unreviewed
CVE-2013-2236
was published
May 14, 2022
Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10,...
Low
Unreviewed
CVE-2017-17293
was published
May 14, 2022
The do_item_get function in items.c in memcached 1.4.4 and other versions before 1.4.17, when...
Low
Unreviewed
CVE-2013-7290
was published
May 14, 2022
memcached before 1.4.17, when running in verbose mode, allows remote attackers to cause a denial...
Low
Unreviewed
CVE-2013-7291
was published
May 14, 2022
Huawei eNSP software with software of versions earlier than V100R002C00B510 has a buffer overflow...
Low
Unreviewed
CVE-2017-17321
was published
May 14, 2022
SCCP (Signalling Connection Control Part) module in Huawei DP300 V500R002C00, RP200 V500R002C00,...
Low
Unreviewed
CVE-2017-17282
was published
May 14, 2022
The push_ascii function in smbd in Samba 3.6.x before 3.6.24, 4.0.x before 4.0.19, and 4.1.x...
Low
Unreviewed
CVE-2014-3493
was published
May 14, 2022
The Dumper method in Data::Dumper before 2.154, as used in Perl 5.20.1 and earlier, allows...
Low
Unreviewed
CVE-2014-4330
was published
May 14, 2022
Heap-based buffer overflow in the MPV_frame_start function in libavcodec/mpegvideo.c in FFmpeg...
Low
Unreviewed
CVE-2012-0856
was published
May 14, 2022
Xen 3.2.x through 4.4.x does not properly clean memory pages recovered from guests, which allows...
Low
Unreviewed
CVE-2014-4021
was published
May 14, 2022
Buffer overflow in Xen 4.4.x allows local users to read system memory or cause a denial of...
Low
Unreviewed
CVE-2014-3715
was published
May 14, 2022
The query_findclosestnsec3 function in query.c in named in ISC BIND 9.6, 9.7, and 9.8 before 9.8...
Low
Unreviewed
CVE-2014-0591
was published
May 14, 2022
The CSN.1 dissector in Wireshark 1.8.x before 1.8.6 does not properly manage function pointers,...
Low
Unreviewed
CVE-2013-2477
was published
May 14, 2022
The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x before 1.6.21 and 1.7.0 through 1...
Low
Unreviewed
CVE-2013-1845
was published
May 14, 2022
Stack-based buffer overflow in socat 1.3.0.0 through 1.7.2.2 and 2.0.0-b1 through 2.0.0-b6 allows...
Low
Unreviewed
CVE-2014-0019
was published
May 14, 2022
Buffer overflow in srtp.c in libsrtp in srtp 1.4.5 and earlier allows remote attackers to cause a...
Low
Unreviewed
CVE-2013-2139
was published
May 14, 2022
The bmexec_trans function in kwset.c in grep 2.19 through 2.21 allows local users to cause a...
Low
Unreviewed
CVE-2015-1345
was published
May 14, 2022
Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to...
Low
Unreviewed
CVE-2015-5218
was published
May 14, 2022
The _expand_arg function in the pam_env module (modules/pam_env/pam_env.c) in Linux-PAM (aka pam)...
Low
Unreviewed
CVE-2011-3149
was published
May 14, 2022
PuTTY 0.59 through 0.61 does not clear sensitive process memory when managing user replies that...
Low
Unreviewed
CVE-2011-4607
was published
May 14, 2022
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8,...
Low
Unreviewed
CVE-2015-1681
was published
May 14, 2022
The eSpace Meeting ActiveX control (eSpaceStatusCtrl.dll) in Huawei eSpace Desktop before...
Low
Unreviewed
CVE-2014-9418
was published
May 14, 2022
ProTip!
Advisories are also available from the
GraphQL API