GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,238
Erlang
31
GitHub Actions
21
Go
2,005
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
593 advisories
Filter by severity
A stack overflow in FAST FW300R v1.3.13 Build 141023 Rel.61347n allows attackers to execute...
Critical
Unreviewed
CVE-2024-41285
was published
Aug 26, 2024
An issue was discovered in Fort before 1.6.3. A malicious RPKI repository that descends from a ...
Critical
Unreviewed
CVE-2024-45237
was published
Aug 25, 2024
In TRENDnet TEW-752DRU FW1.03B01, there is a buffer overflow vulnerability due to the lack of...
Critical
Unreviewed
CVE-2024-42813
was published
Aug 19, 2024
In D-Link DIR-860L v2.03, there is a buffer overflow vulnerability due to the lack of length...
Critical
Unreviewed
CVE-2024-42812
was published
Aug 19, 2024
TOTOLINK A3100R V4.1.2cu.5050_B20200504 has a buffer overflow vulnerability in the http_host...
Critical
Unreviewed
CVE-2024-42547
was published
Aug 12, 2024
TOTOLINK A3100R V4.1.2cu.5050_B20200504 has a buffer overflow vulnerability in the password...
Critical
Unreviewed
CVE-2024-42546
was published
Aug 12, 2024
TOTOLINK A3700R v9.1.2u.5822_B20200513 has a buffer overflow vulnerability in the ssid parameter...
Critical
Unreviewed
CVE-2024-42545
was published
Aug 12, 2024
TOTOLINK A3700R v9.1.2u.5822_B20200513 has a buffer overflow vulnerability in the http_host...
Critical
Unreviewed
CVE-2024-42543
was published
Aug 12, 2024
TOTOLINK A3002R v4.0.0-B20230531.1404 contains a buffer overflow vulnerability in /bin/boa via...
Critical
Unreviewed
CVE-2024-42520
was published
Aug 12, 2024
Improper Input Validation vulnerability in Microchip Techology Advanced Software Framework...
Critical
Unreviewed
CVE-2024-7490
was published
Aug 8, 2024
Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300...
Critical
Unreviewed
CVE-2024-20454
was published
Aug 7, 2024
Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300...
Critical
Unreviewed
CVE-2024-20450
was published
Aug 7, 2024
open5gs v2.6.4 is vulnerable to Buffer Overflow. via /lib/core/abts.c.
Critical
Unreviewed
CVE-2024-40130
was published
Jul 16, 2024
Tenda AC18 V15.03.3.10_EN was discovered to contain a stack-based buffer overflow vulnerability...
Critical
Unreviewed
CVE-2024-33180
was published
Jul 16, 2024
A potential security vulnerability has been identified in certain HP PC products using AMI BIOS,...
Critical
Unreviewed
CVE-2024-4143
was published
Jul 16, 2024
A vulnerability in /goform/SetStaticRouteCfg in the sub_519F4 function in Tenda AX1806 1.0.0.1...
Critical
Unreviewed
CVE-2024-40415
was published
Jul 15, 2024
Buffer Overflow vulnerability in ASUS router RT-AX88U with firmware versions v3.0.0.4.388_24198...
Critical
Unreviewed
CVE-2024-33278
was published
Jun 24, 2024
In the Linux kernel, the following vulnerability has been resolved:
of: module: add buffer...
Critical
Unreviewed
CVE-2024-38541
was published
Jun 19, 2024
Netatalk 3.2.0 has an off-by-one error and resultant heap-based buffer overflow because of...
Critical
Unreviewed
CVE-2024-38441
was published
Jun 16, 2024
TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via ssid5g in...
Critical
Unreviewed
CVE-2024-37637
was published
Jun 14, 2024
TOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via ssid in the...
Critical
Unreviewed
CVE-2024-37635
was published
Jun 13, 2024
robdns commit d76d2e6 was discovered to contain a heap overflow via the component block->filename...
Critical
Unreviewed
CVE-2024-24192
was published
Jun 7, 2024
Memory corruption in Hypervisor when platform information mentioned is not aligned.
Critical
Unreviewed
CVE-2023-43556
was published
Jun 3, 2024
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
Critical
Unreviewed
CVE-2023-43538
was published
Jun 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf, sockmap: Don't let...
Critical
Unreviewed
CVE-2023-52735
was published
May 21, 2024
ProTip!
Advisories are also available from the
GraphQL API