GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,813 advisories
Filter by severity
Dell PowerEdge BIOS contains an improper input validation vulnerability. A local authenticated...
Moderate
Unreviewed
CVE-2022-34376
was published
Feb 10, 2023
In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2023-20605
was published
Feb 6, 2023
A vulnerability, which was classified as critical, was found in TRENDnet TEW-811DRU 1.0.10.0....
Moderate
Unreviewed
CVE-2023-0637
was published
Feb 2, 2023
The PowerVR GPU kernel driver maintains an "Information Page" used by its cache subsystem. This...
Moderate
Unreviewed
CVE-2022-20235
was published
Jan 26, 2023
A Segmentation fault was found in UPX in PackLinuxElf64::invert_pt_dynamic() in p_lx_elf.cpp. An...
Moderate
Unreviewed
CVE-2023-23457
was published
Jan 12, 2023
A buffer overflow flaw was found in the Linux kernel Broadcom Full MAC Wi-Fi driver. This issue...
Moderate
Unreviewed
CVE-2022-3628
was published
Jan 12, 2023
The software interfaces to ASP and SMU may not enforce the SNP memory security policy resulting...
Moderate
Unreviewed
CVE-2022-23813
was published
Jan 11, 2023
In wlan driver, there is a possible missing bounds check. This could lead to local denial of...
Moderate
Unreviewed
CVE-2022-44425
was published
Jan 4, 2023
A vulnerability in the SSL/TLS client of Cisco Adaptive Security Appliance (ASA) Software and...
Moderate
Unreviewed
CVE-2022-20927
was published
Nov 16, 2022
Improper buffer restrictions in BIOS firmware for some Intel(R) NUC M15 Laptop Kits before...
Moderate
Unreviewed
CVE-2022-32569
was published
Nov 11, 2022
Oxenstored 32->31 bit integer truncation issues Integers in Ocaml are 63 or 31 bits of signed...
Moderate
Unreviewed
CVE-2022-42324
was published
Nov 1, 2022
A vulnerability was found in Linux Kernel. It has been rated as problematic. Affected by this...
Moderate
Unreviewed
CVE-2022-3595
was published
Oct 19, 2022
A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is an...
Moderate
Unreviewed
CVE-2022-3523
was published
Oct 16, 2022
In camera driver, there is a possible memory corruption due to improper locking. This could lead...
Moderate
Unreviewed
CVE-2022-38690
was published
Oct 15, 2022
Due to lack of proper memory management, when a victim opens manipulated Right Hemisphere...
Moderate
Unreviewed
CVE-2022-41174
was published
Oct 12, 2022
Due to lack of proper memory management, when a victim opens manipulated SolidWorks Drawing (...
Moderate
Unreviewed
CVE-2022-39807
was published
Oct 12, 2022
Due to lack of proper memory management, when a victim opens manipulated Wavefront Object (.obj,...
Moderate
Unreviewed
CVE-2022-41166
was published
Oct 12, 2022
Due to lack of proper memory management, when a victim opens manipulated CATIA5 Part (.catpart,...
Moderate
Unreviewed
CVE-2022-41169
was published
Oct 12, 2022
Due to lack of proper memory management, when a victim opens manipulated CATIA4 Part (.model,...
Moderate
Unreviewed
CVE-2022-41171
was published
Oct 12, 2022
Due to lack of proper memory management, when a victim opens manipulated Enhanced Metafile (.emf,...
Moderate
Unreviewed
CVE-2022-41176
was published
Oct 12, 2022
Due to lack of proper memory management, when a victim opens manipulated AutoCAD (.dxf,...
Moderate
Unreviewed
CVE-2022-41173
was published
Oct 12, 2022
Due to lack of proper memory management, when a victim opens manipulated Portable Document Format...
Moderate
Unreviewed
CVE-2022-41181
was published
Oct 12, 2022
Due to lack of proper memory management, when a victim opens manipulated Iges Part and Assembly (...
Moderate
Unreviewed
CVE-2022-41178
was published
Oct 12, 2022
Due to lack of proper memory management, when a victim opens manipulated Windows Cursor File (...
Moderate
Unreviewed
CVE-2022-41183
was published
Oct 12, 2022
Due to lack of proper memory management, when a victim opens manipulated Parasolid Part and...
Moderate
Unreviewed
CVE-2022-41182
was published
Oct 12, 2022
ProTip!
Advisories are also available from the
GraphQL API