GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,822
Erlang
36
GitHub Actions
32
Go
2,413
Maven
5,000+
npm
4,052
NuGet
723
pip
3,844
Pub
12
RubyGems
933
Rust
1,005
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,437 advisories
Filter by severity
In gatt_process_notification of gatt_cl.cc, there is a possible out of bounds write due to an...
Critical
Unreviewed
CVE-2021-39708
was published
Mar 17, 2022
Improper boundary check in UWB stack prior to SMR Mar-2022 Release 1 allows arbitrary code...
Critical
Unreviewed
CVE-2022-25818
was published
Mar 11, 2022
There is a memory address out of bounds in smartphones. Successful exploitation of this...
Critical
Unreviewed
CVE-2021-22429
was published
Feb 26, 2022
There is a memory address out of bounds in smartphones. Successful exploitation of this...
Critical
Unreviewed
CVE-2021-22426
was published
Feb 26, 2022
There is a vulnerability when configuring permission isolation in smartphones. Successful...
Critical
Unreviewed
CVE-2021-22432
was published
Feb 26, 2022
There is a vulnerability when configuring permission isolation in smartphones. Successful...
Critical
Unreviewed
CVE-2021-22431
was published
Feb 26, 2022
There is a memory address out of bounds vulnerability in smartphones. Successful exploitation of...
Critical
Unreviewed
CVE-2021-22434
was published
Feb 26, 2022
There is a memory address out of bounds in smartphones. Successful exploitation of this...
Critical
Unreviewed
CVE-2021-22433
was published
Feb 26, 2022
Missing fixes for CVE-2021-40438 and CVE-2021-26691 in the versions of httpd, as shipped in Red...
Critical
Unreviewed
CVE-2021-20325
was published
Feb 19, 2022
A flaw was found in mbsync versions prior to 1.4.4. Due to inadequate handling of extremely large...
Critical
Unreviewed
CVE-2021-3657
was published
Feb 19, 2022
njs through 0.7.0, used in NGINX, was discovered to contain an out-of-bounds array access via...
Critical
Unreviewed
CVE-2021-46461
was published
Feb 15, 2022
An issue was discovered in NvmExpressDxe in Insyde InsydeH2O with kernel 5.1 through 5.5. An SMM...
Critical
Unreviewed
CVE-2022-24031
was published
Feb 9, 2022
In ASQ in Stormshield Network Security (SNS) 1.0.0 through 2.7.8, 2.8.0 through 2.16.0, 3.0.0...
Critical
Unreviewed
CVE-2021-31617
was published
Feb 8, 2022
Use of a Broken or Risky Cryptographic Algorithm in crypto2
Critical
CVE-2021-45709
was published
for
crypto2
(Rust)
Jan 6, 2022
An out-of-bounds write vulnerability exists in the RS-274X aperture macro variables handling...
Critical
Unreviewed
CVE-2021-40393
was published
Dec 23, 2021
An out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST...
Critical
Unreviewed
CVE-2021-21950
was published
Dec 9, 2021
An out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST...
Critical
Unreviewed
CVE-2021-21951
was published
Dec 9, 2021
NetworkPkg/IScsiDxe has remotely exploitable buffer overflows.
Critical
Unreviewed
CVE-2021-38575
was published
Dec 2, 2021
Buffer overflow and format vulnerabilities in ncurses
Critical
CVE-2019-15548
was published
for
ncurses
(Rust)
Aug 25, 2021
Out of bounds write in nalgebra
Critical
CVE-2021-38190
was published
for
nalgebra
(Rust)
Aug 25, 2021
Uninitialized memory access in outer_cgi
Critical
CVE-2021-30454
was published
for
outer_cgi
(Rust)
Aug 25, 2021
nb-connect invalidly assumes the memory layout of std::net::SocketAddr
Critical
CVE-2021-27376
was published
for
nb-connect
(Rust)
Aug 25, 2021
Deserializing an array can free uninitialized memory in byte_struct
Critical
CVE-2021-28033
was published
for
byte_struct
(Rust)
Aug 25, 2021
ProTip!
Advisories are also available from the
GraphQL API