GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,373
Erlang
33
GitHub Actions
22
Go
2,135
Maven
5,000+
npm
3,797
NuGet
687
pip
3,478
Pub
12
RubyGems
896
Rust
897
Swift
38
Unreviewed advisories
All unreviewed
5,000+
673 advisories
Filter by severity
Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 2 of 4). This is...
Critical
Unreviewed
CVE-2019-12260
was published
May 24, 2022
Wind River VxWorks 6.7 though 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 3 of...
Critical
Unreviewed
CVE-2019-12261
was published
May 24, 2022
Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the IPv4 component. There is an IPNET...
Critical
Unreviewed
CVE-2019-12256
was published
May 24, 2022
Wind River VxWorks 6.5 through 6.9.3 has a Buffer Overflow in the TCP component (issue 1 of 4)....
Critical
Unreviewed
CVE-2019-12255
was published
May 24, 2022
HP Color LaserJet Pro M280-M281 Multifunction Printer series (before v. 20190419), HP LaserJet...
Critical
Unreviewed
CVE-2019-6327
was published
May 24, 2022
NETGEAR WNR2000v3 devices before 1.1.2.14, WNR2000v4 devices before 1.0.0.66, and WNR2000v5...
Critical
Unreviewed
CVE-2017-6862
was published
May 17, 2022
The NETGEAR WNR2000v5 router contains a buffer overflow in the hidden_lang_avi parameter when...
Critical
Unreviewed
CVE-2016-10174
was published
May 17, 2022
nfs_lookup_reply in net/nfs.c in Das U-Boot through 2022.04 (and through 2022.07-rc2) has an...
Critical
Unreviewed
CVE-2022-30767
was published
May 17, 2022
Prime95 30.7 build 9 suffers from a Buffer Overflow vulnerability that could lead to Remote Code...
Critical
Unreviewed
CVE-2022-30055
was published
May 17, 2022
Buffer overflow in the ScStoragePathFromUrl function in the WebDAV service in Internet...
Critical
Unreviewed
CVE-2017-7269
was published
May 14, 2022
Several buffer overflow vulnerabilities have been identified in Moxa IKS and EDS, which may allow...
Critical
Unreviewed
CVE-2019-6557
was published
May 13, 2022
Buffer Overflow vulnerability in Ayukov NFTPD 2.0 and earlier allows remote attackers to execute...
Critical
Unreviewed
CVE-2017-15222
was published
May 13, 2022
The parse_string function in cjson.c in the cJSON library mishandles UTF8/16 strings, which...
Critical
Unreviewed
CVE-2016-4303
was published
May 13, 2022
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They have a buffer...
Critical
Unreviewed
CVE-2018-14359
was published
May 13, 2022
drivers/soc/qcom/qdsp6v2/voice_svc.c in the QDSP6v2 Voice Service driver for the Linux kernel 3.x...
Critical
Unreviewed
CVE-2016-5343
was published
May 13, 2022
The nsXBLProtoImpl::InstallImplementation function in Mozilla Firefox before 29.0, Firefox ESR 24...
Critical
Unreviewed
CVE-2014-1524
was published
May 13, 2022
Buffer overflow in the pcnet_receive function in hw/net/pcnet.c in QEMU, when a guest NIC has a...
Critical
Unreviewed
CVE-2015-7512
was published
May 13, 2022
Buffer overflow in the mipsnet_receive function in hw/net/mipsnet.c in QEMU, when the guest NIC...
Critical
Unreviewed
CVE-2016-4002
was published
May 13, 2022
BusyBox project BusyBox wget version prior to commit 8e2174e9bd836e53c8b9c6e00d1bc6e2a718686e...
Critical
Unreviewed
CVE-2018-1000517
was published
May 13, 2022
An issue was discovered in the base64d function in the SMTP listener in Exim before 4.90.1. By...
Critical
Unreviewed
CVE-2018-6789
was published
May 13, 2022
The datalen parameter in the refclock driver in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77...
Critical
Unreviewed
CVE-2015-7853
was published
May 13, 2022
A buffer overflow vulnerability exist in the web-based GUI of Schneider Electric's Pelco Sarix...
Critical
Unreviewed
CVE-2018-7238
was published
May 13, 2022
The ConnectionBase::preparseNewBytes function in resip/stack/ConnectionBase.cxx in reSIProcate...
Critical
Unreviewed
CVE-2018-12584
was published
May 13, 2022
An exploitable firmware downgrade vulnerability exists in the time syncing functionality of Yi...
Critical
Unreviewed
CVE-2018-3892
was published
May 13, 2022
An exploitable buffer overflow vulnerability exists in Insteon Hub running firmware version 1012....
Critical
Unreviewed
CVE-2017-14445
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API