GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,224
Erlang
31
GitHub Actions
19
Go
1,990
Maven
5,000+
npm
3,706
NuGet
661
pip
3,336
Pub
11
RubyGems
884
Rust
845
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,220 advisories
Filter by severity
A flaw was found within the handling of SMB2 read requests in the kernel ksmbd module. The issue...
High
Unreviewed
CVE-2023-39179
was published
Nov 18, 2024
An invalid memory access when handling the ProtocolIE_ID field of E-RAB...
High
Unreviewed
CVE-2024-24453
was published
Nov 15, 2024
An invalid memory access when handling the ProtocolIE_ID field of S1Setup Request messages in...
High
Unreviewed
CVE-2024-24459
was published
Nov 15, 2024
An invalid memory access when handling the ProtocolIE_ID field of E-RAB Release Indication...
High
Unreviewed
CVE-2024-24452
was published
Nov 15, 2024
An invalid memory access when handling the ProtocolIE_ID field of E-RAB Setup List Context SURes...
High
Unreviewed
CVE-2024-24457
was published
Nov 15, 2024
An invalid memory access when handling the ProtocolIE_ID field of E-RAB Modify Request messages...
High
Unreviewed
CVE-2024-24454
was published
Nov 15, 2024
An invalid memory access when handling the ENB Configuration Transfer messages containing invalid...
High
Unreviewed
CVE-2024-24458
was published
Nov 15, 2024
An invalid memory access when handling a UE Context Release message containing an invalid UE...
High
Unreviewed
CVE-2024-24455
was published
Nov 15, 2024
An out of bounds read in Ivanti Connect Secure before version 22.7R2.3 allows a remote...
High
Unreviewed
CVE-2024-37400
was published
Nov 13, 2024
An out-of-bounds write in IPsec of Ivanti Connect Secure before version 22.7R2.1 allows a remote...
High
Unreviewed
CVE-2024-38649
was published
Nov 13, 2024
Windows Client-Side Caching Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-43644
was published
Nov 12, 2024
Microsoft Excel Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-49028
was published
Nov 12, 2024
An out-of-bounds read vulnerability in Ivanti Avalanche before 6.4.6 allows a remote...
High
Unreviewed
CVE-2024-50331
was published
Nov 12, 2024
A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The...
High
Unreviewed
CVE-2024-47941
was published
Nov 12, 2024
A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The...
High
Unreviewed
CVE-2024-47940
was published
Nov 12, 2024
An issue was discovered in psi/zfile.c in Artifex Ghostscript before 10.04.0. Out-of-bounds data...
High
Unreviewed
CVE-2024-46956
was published
Nov 11, 2024
In the Linux kernel, the following vulnerability has been resolved:
fs/ntfs3: Check if more than...
High
Unreviewed
CVE-2024-50247
was published
Nov 9, 2024
In the Linux kernel, the following vulnerability has been resolved:
thunderbolt: Fix KASAN...
High
Unreviewed
CVE-2024-50227
was published
Nov 9, 2024
vmir e8117 was discovered to contain a heap buffer overflow via the wasm_parse_section_functions...
High
Unreviewed
CVE-2024-35423
was published
Nov 9, 2024
An issue in bytecodealliance wasm-micro-runtime before v.b3f728c and fixed in commit 06df58f...
High
Unreviewed
CVE-2024-25431
was published
Nov 8, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: wwan: fix global oob in...
High
Unreviewed
CVE-2024-50128
was published
Nov 5, 2024
In the Linux kernel, the following vulnerability has been resolved:
KVM: nSVM: Ignore nCR3[4:0]...
High
Unreviewed
CVE-2024-50115
was published
Nov 5, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf: Add the missing...
High
Unreviewed
CVE-2024-50123
was published
Nov 5, 2024
Transient DOS while parsing BTM ML IE when per STA profile is not included.
High
Unreviewed
CVE-2024-38403
was published
Nov 4, 2024
Transient DOS while processing the CU information from RNR IE.
High
Unreviewed
CVE-2024-38405
was published
Nov 4, 2024
ProTip!
Advisories are also available from the
GraphQL API