GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,333
Erlang
31
GitHub Actions
22
Go
2,095
Maven
5,000+
npm
3,760
NuGet
678
pip
3,446
Pub
12
RubyGems
892
Rust
882
Swift
37
Unreviewed advisories
All unreviewed
5,000+
12,830 advisories
Filter by severity
Improper Restriction of Operations within the Bounds of a Memory Buffer in Apache Tomcat
High
CVE-2016-6817
was published
for
org.apache.tomcat:tomcat
(Maven)
May 14, 2022
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer...
High
Unreviewed
CVE-2016-9428
was published
May 17, 2022
Buffer overflow in CoreAudio in Apple Mac OS X 10.5.8 and 10.6.2 allows remote attackers to...
High
Unreviewed
CVE-2010-0036
was published
May 2, 2022
Heap-based buffer overflow in the CreateDIBPatternBrushPt function in GDI in Microsoft Windows...
High
Unreviewed
CVE-2008-1083
was published
May 1, 2022
Improper Restriction of Operations within the Bounds of a Memory Buffer in python-cjson
Moderate
CVE-2010-1666
was published
for
python-cjson
(pip)
May 17, 2022
Dell PowerProtect DD, versions prior to 8.0, LTS 7.13.1.0, LTS 7.10.1.30, LTS 7.7.5.40 contain a...
High
Unreviewed
CVE-2024-29176
was published
Jun 26, 2024
Out of bounds memory access in WebHID in Google Chrome prior to 111.0.5563.110 allowed a remote...
Critical
Unreviewed
CVE-2023-1529
was published
Mar 21, 2023
Pillow Buffer overflow in Jpeg2KEncode.c
High
CVE-2016-3076
was published
for
pillow
(pip)
May 17, 2022
Pillow Buffer overflow in ImagingFliDecode
High
CVE-2016-0775
was published
for
Pillow
(pip)
Jul 24, 2018
Pillow Buffer overflow in ImagingLibTiffDecode
Moderate
CVE-2016-0740
was published
for
pillow
(pip)
Jul 24, 2018
Out of bounds memory access in DOM Bindings in Google Chrome prior to 112.0.5615.49 allowed a...
High
Unreviewed
CVE-2023-1812
was published
Apr 5, 2023
Microsoft Excel Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-1714.
High
Unreviewed
CVE-2021-1713
was published
May 24, 2022
Pillow buffer overflow in ImagingPcdDecode
High
CVE-2016-2533
was published
for
pillow
(pip)
Jul 24, 2018
Pillow Integer overflow in ImagingResampleHorizontal
Critical
CVE-2016-4009
was published
for
pillow
(pip)
Jul 24, 2018
A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC)...
High
Unreviewed
CVE-2021-31882
was published
May 24, 2022
A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC)...
High
Unreviewed
CVE-2021-31883
was published
May 24, 2022
A vulnerability has been discovered in Winhex affecting version 16.1 SR-1 and 20.4. This...
High
Unreviewed
CVE-2023-6361
was published
Oct 7, 2024
Memory corruption when invalid length is provided from HLOS for FRS/UDS request/response buffers.
High
Unreviewed
CVE-2024-23369
was published
Oct 7, 2024
A vulnerability has been discovered in Winhex affecting version 16.1 SR-1 and 20.4. This...
High
Unreviewed
CVE-2023-6362
was published
Oct 7, 2024
A vulnerability has been identified in Simcenter Femap (All versions < V2401.0000). The affected...
High
Unreviewed
CVE-2024-24921
was published
Feb 13, 2024
Memory safety bugs present in Firefox 130, Firefox ESR 128.2, and Thunderbird 128.2. Some of...
Critical
Unreviewed
CVE-2024-9402
was published
Oct 1, 2024
A potential memory corruption vulnerability could be triggered if an attacker had the ability to...
High
Unreviewed
CVE-2024-9400
was published
Oct 1, 2024
It is currently unknown if this issue is exploitable but a condition may arise where the...
High
Unreviewed
CVE-2024-9396
was published
Oct 1, 2024
Memory safety bugs present in Firefox 130, Firefox ESR 115.15, Firefox ESR 128.2, and Thunderbird...
Critical
Unreviewed
CVE-2024-9401
was published
Oct 1, 2024
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Western...
Critical
Unreviewed
CVE-2024-22170
was published
Sep 27, 2024
ProTip!
Advisories are also available from the
GraphQL API