GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,361
Erlang
33
GitHub Actions
22
Go
2,127
Maven
5,000+
npm
3,794
NuGet
685
pip
3,473
Pub
12
RubyGems
895
Rust
894
Swift
38
Unreviewed advisories
All unreviewed
5,000+
2,005 advisories
Filter by severity
A vulnerability classified as critical was found in code-projects Police FIR Record Management...
Moderate
Unreviewed
CVE-2025-1187
was published
Feb 12, 2025
When reading the language .mo file in grub_mofile_open(), grub2 fails to verify an integer...
Moderate
Unreviewed
CVE-2024-45776
was published
Feb 18, 2025
A flaw was found in grub2. A specially crafted JPEG file can cause the JPEG parser of grub2 to...
Moderate
Unreviewed
CVE-2024-45774
was published
Feb 18, 2025
Memory safety bugs present in Firefox 135. Some of these bugs showed evidence of memory...
Moderate
Unreviewed
CVE-2025-1414
was published
Feb 18, 2025
Out-of-bounds write vulnerability exists in DocuPrint CP225w 01.22.01 and earlier, DocuPrint...
Moderate
Unreviewed
CVE-2024-45320
was published
Feb 18, 2025
In the Linux kernel, the following vulnerability has been resolved:
sysctl: Fix out of bounds...
Moderate
Unreviewed
CVE-2023-52596
was published
Mar 6, 2024
An incorrect implementation handling file descriptor in dpu driver prior to SMR Mar-2021 Release...
Moderate
Unreviewed
CVE-2021-25370
was published
May 24, 2022
An issue was discovered in libbzip3.a in bzip3 before 1.3.0. A bz3_decode_block out-of-bounds...
Moderate
Unreviewed
CVE-2023-29416
was published
Apr 6, 2023
Apache Commons Configuration: StackOverflowError adding property in AbstractListDelimiterHandler.flattenIterator()
Moderate
CVE-2024-29131
was published
for
org.apache.commons:commons-configuration2
(Maven)
Mar 21, 2024
Apache Commons Configuration: StackOverflowError calling ListDelimiterHandler.flatten(Object, int) with a cyclical object tree
Moderate
CVE-2024-29133
was published
for
org.apache.commons:commons-configuration2
(Maven)
Mar 21, 2024
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the EditSTList...
Moderate
Unreviewed
CVE-2023-27805
was published
Apr 7, 2023
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the DelDNSHnList...
Moderate
Unreviewed
CVE-2023-27801
was published
Apr 7, 2023
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the...
Moderate
Unreviewed
CVE-2023-27803
was published
Apr 7, 2023
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the...
Moderate
Unreviewed
CVE-2023-27806
was published
Apr 7, 2023
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the Delstlist...
Moderate
Unreviewed
CVE-2023-27807
was published
Apr 7, 2023
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the DeltriggerList...
Moderate
Unreviewed
CVE-2023-27808
was published
Apr 7, 2023
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the...
Moderate
Unreviewed
CVE-2023-27810
was published
Apr 7, 2023
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the EditvsList...
Moderate
Unreviewed
CVE-2023-27802
was published
Apr 7, 2023
Out-of-bounds write in mPOS TUI trustlet prior to SMR Feb-2025 Release 1 allows local privileged...
Moderate
Unreviewed
CVE-2025-20904
was published
Feb 4, 2025
Out-of-bounds read in decoding malformed bitstream for smp4vtd in libsthmbc.so prior to SMR Jan...
Moderate
Unreviewed
CVE-2025-20889
was published
Feb 4, 2025
Out-of-bounds write in softsim TA prior to SMR Jan-2025 Release 1 allows local privileged...
Moderate
Unreviewed
CVE-2025-20885
was published
Feb 4, 2025
NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause an out-of-bounds...
Moderate
Unreviewed
CVE-2024-0142
was published
Feb 12, 2025
NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause an out-of-bounds...
Moderate
Unreviewed
CVE-2024-0143
was published
Feb 12, 2025
H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the DelvsList...
Moderate
Unreviewed
CVE-2023-27804
was published
Apr 7, 2023
Stack-based buffer overflow vulnerability in bootloader prior to SMR Jun-2024 Release 1 allows...
Moderate
Unreviewed
CVE-2024-20880
was published
Jun 4, 2024
ProTip!
Advisories are also available from the
GraphQL API