GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,652
Erlang
34
GitHub Actions
26
Go
2,257
Maven
5,000+
npm
3,909
NuGet
704
pip
3,680
Pub
12
RubyGems
915
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,082 advisories
Filter by severity
Enabling Simple Ajax Uploader plugin included in Laragon open-source software allows for a remote...
Critical
Unreviewed
CVE-2024-0864
was published
Feb 29, 2024
In ccci, there is a possible out of bounds write due to improper input validation. This could...
Moderate
Unreviewed
CVE-2022-32634
was published
Dec 5, 2022
In Wi-Fi, there is a possible out of bounds write due to improper input validation. This could...
Moderate
Unreviewed
CVE-2022-32631
was published
Dec 5, 2022
In Wi-Fi, there is a possible out of bounds write due to improper input validation. This could...
Moderate
Unreviewed
CVE-2022-32632
was published
Dec 5, 2022
Memory corruption in SPI buses due to improper input validation while reading address...
High
Unreviewed
CVE-2022-25698
was published
Dec 13, 2022
An issue in code signature validation was addressed with improved checks. This issue is fixed in...
Moderate
Unreviewed
CVE-2022-42793
was published
Nov 2, 2022
Memory corruption in i2c buses due to improper input validation while reading address...
High
Unreviewed
CVE-2022-25697
was published
Dec 13, 2022
WithSecure DeepGuard 6 allows attackers to affect confidentiality, availability, and/or integrity.
High
Unreviewed
CVE-2022-45871
was published
Dec 13, 2022
This issue was addressed with improved checks. This issue is fixed in iOS 15.7.1 and iPadOS 15.7...
High
Unreviewed
CVE-2022-42800
was published
Nov 2, 2022
Improper Input Validation vulnerability in Apache Kvrocks.
The SETRANGE command didn't check if...
Unknown
Unreviewed
CVE-2025-26413
was published
Apr 22, 2025
An issue existed in the parsing of URLs. This issue was addressed with improved input validation....
Critical
Unreviewed
CVE-2022-42837
was published
Dec 15, 2022
In thermal_cooling_device_stats_update of thermal_sysfs.c, there is a possible out of bounds...
Moderate
Unreviewed
CVE-2022-20569
was published
Dec 21, 2022
In onMulticastListUpdateNotificationReceived of UwbEventManager.java, there is a possible...
High
Unreviewed
CVE-2022-20507
was published
Dec 20, 2022
In multiple locations, there is a possible display crash loop due to improper input validation....
Low
Unreviewed
CVE-2022-20543
was published
Dec 19, 2022
An improper input validation vulnerability is identified in the End of Life (EOL) OVA based...
Moderate
Unreviewed
CVE-2025-3837
was published
Apr 21, 2025
In Flexense SysGauge Server 3.6.18, the Control Protocol suffers from a denial of service. The...
High
Unreviewed
CVE-2017-15667
was published
May 14, 2022
An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10...
Moderate
Unreviewed
CVE-2017-7154
was published
May 14, 2022
A vulnerability has been identified in RUGGEDCOM ROS for RSL910 devices (All versions < ROS V5.0...
High
Unreviewed
CVE-2017-12736
was published
May 13, 2022
An issue was discovered in Enigmail before 1.9.9. Regular expressions are exploitable for Denial...
High
Unreviewed
CVE-2017-17846
was published
May 14, 2022
The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 does not correctly handle zero...
High
Unreviewed
CVE-2017-17805
was published
May 14, 2022
In Netwide Assembler (NASM) 2.14rc0, there is a "SEGV on unknown address" that will cause a...
Moderate
Unreviewed
CVE-2017-17810
was published
May 14, 2022
D-Link DIR-130 firmware version 1.23 and DIR-330 firmware version 1.12 are vulnerable to...
Critical
Unreviewed
CVE-2017-3191
was published
May 13, 2022
SAP Note Assistant tool (SAP BASIS from 7.00 to 7.02, from 7.10 to 7.11, 7.30, 7.31,7.40, from 7...
Moderate
Unreviewed
CVE-2017-16691
was published
May 14, 2022
Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012...
High
Unreviewed
CVE-2017-11885
was published
May 14, 2022
The bnep_add_connection function in net/bluetooth/bnep/core.c in the Linux kernel before 3.19...
High
Unreviewed
CVE-2017-15868
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API