GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,747
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,736
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
141 advisories
Filter by severity
Heap-based Buffer Overflow vulnerability in Apache ORC.
A vulnerability has been identified in...
Moderate
Unreviewed
CVE-2025-47436
was published
May 14, 2025
libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow...
Moderate
Unreviewed
CVE-2025-47814
was published
May 11, 2025
libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow...
Moderate
Unreviewed
CVE-2025-47815
was published
May 11, 2025
Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows...
Moderate
Unreviewed
CVE-2025-1252
was published
May 8, 2025
gnuplot is affected by a heap buffer overflow at function utf8_copy_one.
Moderate
Unreviewed
CVE-2025-31177
was published
May 7, 2025
An Heap-based Buffer Overflow in RT-Labs P-Net version 1.0.1 or earlier allows an attacker to...
Moderate
Unreviewed
CVE-2025-32401
was published
May 7, 2025
An integer overflow can be triggered in SQLite’s `concat_ws()` function. The resulting, truncated...
Moderate
Unreviewed
CVE-2025-3277
was published
Apr 14, 2025
There is a Heap-based Buffer Overflow vulnerability in QTextMarkdownImporter. This requires an...
Moderate
Unreviewed
CVE-2025-3512
was published
Apr 11, 2025
heap-buffer overflow in fig2dev in version 3.2.9a allows an attacker to availability via local...
Moderate
Unreviewed
CVE-2025-31164
was published
Mar 28, 2025
Buffer overflow in some Zoom Workplace Apps and SDKs may allow an authenticated user to conduct a...
Moderate
Unreviewed
CVE-2024-27245
was published
Feb 25, 2025
Heap-based Buffer Overflow vulnerability in iniparser_dumpsection_ini() in iniparser allows...
Moderate
Unreviewed
CVE-2025-0633
was published
Feb 19, 2025
A heap buffer overflow vulnerability in FFmpeg before commit 4bf784c allows attackers to trigger...
Moderate
Unreviewed
CVE-2025-22920
was published
Feb 19, 2025
An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible heap...
Moderate
Unreviewed
CVE-2024-37601
was published
Feb 14, 2025
A Structured Exception Handler based buffer overflow vulnerability exists in Effectmatrix Total...
Moderate
Unreviewed
CVE-2024-53310
was published
Feb 14, 2025
NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause a heap-based...
Moderate
Unreviewed
CVE-2024-0145
was published
Feb 12, 2025
In some cases, the ktrace facility will log the contents of kernel structures to userspace. In...
Moderate
Unreviewed
CVE-2025-0662
was published
Jan 30, 2025
A vulnerability in the Object Linking and Embedding 2 (OLE2) decryption routine of ClamAV could...
Moderate
Unreviewed
CVE-2025-20128
was published
Jan 22, 2025
A potential TOCTOU vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store...
Moderate
Unreviewed
CVE-2024-10253
was published
Jan 15, 2025
A potential buffer overflow vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo...
Moderate
Unreviewed
CVE-2024-10254
was published
Jan 15, 2025
Windows Digital Media Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2025-21256
was published
Jan 14, 2025
A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when...
Moderate
Unreviewed
CVE-2024-56826
was published
Jan 9, 2025
A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when...
Moderate
Unreviewed
CVE-2024-56827
was published
Jan 9, 2025
A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in...
Moderate
Unreviewed
CVE-2020-12819
was published
Dec 19, 2024
Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2024-49094
was published
Dec 12, 2024
Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2024-49081
was published
Dec 12, 2024
ProTip!
Advisories are also available from the
GraphQL API