GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,746
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,736
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
80 advisories
Filter by severity
In Bluetooth driver, there is a possible out of bounds write due to an incorrect bounds check....
Critical
Unreviewed
CVE-2025-20672
was published
Jun 2, 2025
An integer overflow in WhatsApp could result in remote code execution in an established video call.
Critical
Unreviewed
CVE-2022-36934
was published
Sep 23, 2022
The calling logic for WhatsApp for Android prior to v2.21.23, WhatsApp Business for Android prior...
Critical
Unreviewed
CVE-2021-24042
was published
Jan 5, 2022
Medtronic MyCareLink Smart 25000 all versions are vulnerable when an attacker who gains auth runs...
Critical
Unreviewed
CVE-2020-25187
was published
May 24, 2022
mruby is vulnerable to Heap-based Buffer Overflow
Critical
Unreviewed
CVE-2022-0080
was published
Jan 3, 2022
A malicious actor with access to the management network could execute a remote code execution ...
Critical
Unreviewed
CVE-2025-23123
was published
May 19, 2025
A Heap Overflow vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3...
Critical
Unreviewed
CVE-2024-29204
was published
Apr 19, 2024
A memory corruption vulnerability in Fluent Bit versions 2.0.7 thru 3.0.3. This issue lies in the...
Critical
Unreviewed
CVE-2024-4323
was published
May 20, 2024
Augeas versions up to and including 1.8.0 are vulnerable to heap-based buffer overflow due to...
Critical
Unreviewed
CVE-2017-7555
was published
May 17, 2022
HDF5 Library through 1.14.3 contains a heap-based buffer overflow in...
Critical
Unreviewed
CVE-2024-32615
was published
May 14, 2024
A Heap overflow vulnerability in WLInfoRailService component of Ivanti Avalanche before 6.4.3...
Critical
Unreviewed
CVE-2024-24996
was published
Apr 19, 2024
vCenter Server contains a heap-overflow vulnerability in the implementation of the DCERPC...
Critical
Unreviewed
CVE-2024-37080
was published
Jun 18, 2024
This vulnerability allows remote attackers to execute arbitrary code on affected installations of...
Critical
Unreviewed
CVE-2022-2848
was published
Mar 29, 2023
A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston...
Critical
Unreviewed
CVE-2023-45318
was published
Feb 20, 2024
A buffer overflow vulnerability in WhatsApp VOIP stack allowed remote code execution via...
Critical
Unreviewed
CVE-2019-3568
was published
May 24, 2022
A flaw was found in htmldoc before v1.9.12. Heap buffer overflow in pspdf_prepare_outpages(), in...
Critical
Unreviewed
CVE-2021-23165
was published
Mar 17, 2022
SunGrow WiNet-SV200.001.00.P027 and earlier versions is vulnerable to heap-based buffer overflow...
Critical
Unreviewed
CVE-2024-50698
was published
Jan 25, 2025
OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component...
Critical
Unreviewed
CVE-2024-55192
was published
Jan 24, 2025
A heap-based buffer overflow vulnerability exists in the .egi parsing functionality of The Biosig...
Critical
Unreviewed
CVE-2024-21795
was published
Feb 20, 2024
A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper...
Critical
Unreviewed
CVE-2024-12084
was published
Jan 15, 2025
A vulnerability has been identified in Opcenter Execution Foundation (All versions), Opcenter...
Critical
Unreviewed
CVE-2024-49775
was published
Dec 16, 2024
Handlers for *_CFG_PAGE read / write ioctls in the mpr, mps, and mpt drivers allocated a buffer...
Critical
Unreviewed
CVE-2022-23086
was published
Feb 15, 2024
Wyze Cam v3 Realtek Wi-Fi Driver Heap-Based Buffer Overflow Remote Code Execution Vulnerability....
Critical
Unreviewed
CVE-2024-6246
was published
Nov 22, 2024
A heap buffer overflow could be triggered by sending a specific packet to TCP port 7700.
Critical
Unreviewed
CVE-2023-29125
was published
Nov 5, 2024
Heap buffer overflow in Blink in Google Chrome prior to 101.0.4951.41 allowed a remote attacker...
Critical
Unreviewed
CVE-2022-4920
was published
Jul 29, 2023
ProTip!
Advisories are also available from the
GraphQL API