GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
515 advisories
Filter by severity
A vulnerability classified as critical has been found in SourceCodester Payroll Management System...
Moderate
Unreviewed
CVE-2024-10371
was published
Oct 25, 2024
A heap-buffer-overflow vulnerability has been identified in the OpenDDLParser::parseStructure...
Moderate
Unreviewed
CVE-2024-48424
was published
Oct 24, 2024
A segmentation fault (SEGV) was detected in the Assimp::SplitLargeMeshesProcess_Triangle:...
Moderate
Unreviewed
CVE-2024-48425
was published
Oct 24, 2024
A segmentation fault (SEGV) was detected in the SortByPTypeProcess::Execute function in the...
Moderate
Unreviewed
CVE-2024-48426
was published
Oct 24, 2024
Buffer Overflow vulnerability in IrfanView 32bit v.4.66 allows a local attacker to cause a denial...
Moderate
Unreviewed
CVE-2024-31007
was published
Oct 21, 2024
In TP-Link TL-WDR7660 1.0, the rtRuleJsonToBin function handles the parameter string name without...
Moderate
Unreviewed
CVE-2024-48712
was published
Oct 15, 2024
In TP-Link TL-WDR7660 1.0, the wacWhitelistJsonToBin function handles the parameter string name...
Moderate
Unreviewed
CVE-2024-48713
was published
Oct 15, 2024
In TP-Link TL-WDR7660 1.0, the wlanTimerRuleJsonToBin function handles the parameter string name...
Moderate
Unreviewed
CVE-2024-48710
was published
Oct 15, 2024
In TP-Link TL-WDR7660 v1.0, the guestRuleJsonToBin function handles the parameter string name...
Moderate
Unreviewed
CVE-2024-48714
was published
Oct 15, 2024
A vulnerability, which was classified as critical, was found in D-Link DIR-619L B1 2.06. Affected...
Moderate
Unreviewed
CVE-2024-9908
was published
Oct 13, 2024
An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with chipset...
Moderate
Unreviewed
CVE-2024-45184
was published
Oct 11, 2024
A vulnerability was discovered in KM08-708H-v1.1, There is a buffer overflow in the sub_445BDC()...
Moderate
Unreviewed
CVE-2024-46215
was published
Oct 11, 2024
A vulnerability was discovered in DI_8200-16.07.26A1, There is a buffer overflow in the dbsrv_asp...
Moderate
Unreviewed
CVE-2024-44415
was published
Oct 11, 2024
A stack buffer overflow was addressed through improved input validation. This issue is fixed in...
Moderate
Unreviewed
CVE-2024-44157
was published
Oct 11, 2024
Memory corruption while invoking IOCTL calls for MSM module from the user space during audio...
Moderate
Unreviewed
CVE-2024-23378
was published
Oct 7, 2024
Memory corruption during the network scan request.
Moderate
Unreviewed
CVE-2024-23375
was published
Oct 7, 2024
Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in...
Moderate
Unreviewed
CVE-2022-49040
was published
Sep 26, 2024
Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in backup...
Moderate
Unreviewed
CVE-2022-49041
was published
Sep 26, 2024
Sony XAV-AX5500 CarPlay TLV Stack-based Buffer Overflow Remote Code Execution Vulnerability. This...
Moderate
Unreviewed
CVE-2024-23933
was published
Sep 23, 2024
Sony XAV-AX5500 USB Configuration Descriptor Buffer Overflow Remote Code Execution Vulnerability....
Moderate
Unreviewed
CVE-2024-23972
was published
Sep 23, 2024
A vulnerability has been found in SourceCodester Telecom Billing Management System 1.0 and...
Moderate
Unreviewed
CVE-2024-9088
was published
Sep 23, 2024
Tenda CH22 V1.0.0.6(468) has a stack overflow vulnerability located in the frmL7PlotForm function.
Moderate
Unreviewed
CVE-2024-46045
was published
Sep 13, 2024
Buffer Copy without Checking Size of Input (CWE-120) in the Controller 6000 and Controller 7000...
Moderate
Unreviewed
CVE-2024-24972
was published
Sep 11, 2024
In getRegistration of RemoteProvisioningService.java, there is a possible way to permanently...
Moderate
Unreviewed
CVE-2024-40659
was published
Sep 11, 2024
A buffer copy without checking size of input vulnerability has been reported to affect several...
Moderate
Unreviewed
CVE-2023-51367
was published
Sep 6, 2024
ProTip!
Advisories are also available from the
GraphQL API