GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,876
Erlang
37
GitHub Actions
37
Go
2,526
Maven
5,000+
npm
4,189
NuGet
742
pip
3,968
Pub
12
RubyGems
947
Rust
1,030
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,237 advisories
Filter by severity
Improper memory allocation during counter check DLM handling can lead to denial of service in...
High
Unreviewed
CVE-2021-35096
was published
Jun 15, 2022
Autodesk AutoCAD product suite, Revit, Design Review and Navisworks releases using PDFTron prior...
High
Unreviewed
CVE-2022-27871
was published
Jun 22, 2022
Denial of Service in Spring Cloud Function
High
CVE-2022-22979
was published
for
org.springframework.cloud:spring-cloud-function-parent
(Maven)
Jun 22, 2022
The schm_box_size function in GPAC 1.0.1 allows attackers to cause a denial of service via a...
Moderate
Unreviewed
CVE-2021-40607
was published
Jun 29, 2022
An issue was discovered in MediaWiki through 1.38.1. The lemma length of a Wikibase lexeme is...
High
Unreviewed
CVE-2022-34750
was published
Jun 29, 2022
There's a flaw in OpenEXR's scanline input file functionality in versions before 3.0.0-beta. An...
Moderate
Unreviewed
CVE-2021-3478
was published
May 24, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc...
High
Unreviewed
CVE-2022-32046
was published
Jul 2, 2022
In Bento4 1.6.0-638, there is an allocator is out of memory in the function AP4_Array...
High
Unreviewed
CVE-2021-40941
was published
Jun 28, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc...
High
Unreviewed
CVE-2022-32052
was published
Jul 2, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the url...
High
Unreviewed
CVE-2022-32049
was published
Jul 2, 2022
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function...
High
Unreviewed
CVE-2022-32043
was published
Jul 2, 2022
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function...
High
Unreviewed
CVE-2022-32041
was published
Jul 2, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the password...
High
Unreviewed
CVE-2022-32044
was published
Jul 2, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the cloneMac...
High
Unreviewed
CVE-2022-32053
was published
Jul 2, 2022
An issue was discovered in glFTPd 2.11a that allows remote attackers to cause a denial of service...
High
Unreviewed
CVE-2021-31645
was published
Jul 8, 2022
There's a flaw in OpenEXR's Scanline API functionality in versions before 3.0.0-beta. An attacker...
Moderate
Unreviewed
CVE-2021-3479
was published
May 24, 2022
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formSetAPCfg.
High
Unreviewed
CVE-2022-32037
was published
Jul 2, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc, week...
High
Unreviewed
CVE-2022-32051
was published
Jul 2, 2022
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the function formSetCfm.
High
Unreviewed
CVE-2022-32040
was published
Jul 2, 2022
Tenda M3 V1.0.0.12 was discovered to contain a stack overflow via the listN parameter in the...
High
Unreviewed
CVE-2022-32039
was published
Jul 2, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc...
High
Unreviewed
CVE-2022-32047
was published
Jul 2, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the desc...
High
Unreviewed
CVE-2022-32045
was published
Jul 2, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the cloneMac...
High
Unreviewed
CVE-2022-32050
was published
Jul 2, 2022
TOTOLINK T6 V4.1.9cu.5179_B20201015 was discovered to contain a stack overflow via the command...
High
Unreviewed
CVE-2022-32048
was published
Jul 2, 2022
Improper input validation vulnerability in Space of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote...
Moderate
Unreviewed
CVE-2022-29892
was published
Jul 5, 2022
ProTip!
Advisories are also available from the
GraphQL API