GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
20
Go
1,996
Maven
5,000+
npm
3,709
NuGet
661
pip
3,349
Pub
11
RubyGems
885
Rust
846
Swift
36
Unreviewed advisories
All unreviewed
5,000+
255,730 advisories
Filter by severity
D-LINK DI-8400 v16.07.26A1 was discovered to contain multiple remote command execution (RCE)...
High
Unreviewed
CVE-2024-52739
was published
Nov 20, 2024
In bta_dm_remove_sec_dev_entry of bta_dm_act.cc, there is a possible out of bounds read due to a...
Moderate
Unreviewed
CVE-2018-9483
was published
Nov 20, 2024
In bta_hd_get_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to improper...
Moderate
Unreviewed
CVE-2018-9480
was published
Nov 20, 2024
In the deserialization constructor of NanoAppFilter.java, there is a possible loss of data due to...
Critical
Unreviewed
CVE-2018-9471
was published
Nov 20, 2024
In setVpnForcedLocked of Vpn.java, there is a possible blocking of internet traffic through vpn...
Moderate
Unreviewed
CVE-2018-9487
was published
Nov 20, 2024
In process_service_attr_req and process_service_search_attr_req of sdp_server.cc, there is an out...
Critical
Unreviewed
CVE-2018-9479
was published
Nov 20, 2024
In hidh_l2cif_data_ind of hidh_conn.cc, there is a possible out of bounds read due to a missing...
Moderate
Unreviewed
CVE-2018-9486
was published
Nov 20, 2024
In HWCSession::SetColorModeById of hwc_session.cpp, there is a possible out of bounds write due...
High
Unreviewed
CVE-2018-9409
was published
Nov 19, 2024
Transient DOS while parsing probe response and assoc response frame when received frame length is...
High
Unreviewed
CVE-2024-33026
was published
Aug 5, 2024
In the Linux kernel, the following vulnerability has been resolved:
usb: gadget: uvc: Fix...
Moderate
Unreviewed
CVE-2024-50056
was published
Oct 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
wifi: ath12k: fix firmware...
Moderate
Unreviewed
CVE-2024-46827
was published
Sep 27, 2024
In multiple functions of ShortcutService.java, there is a possible creation of a spoofed shortcut...
High
Unreviewed
CVE-2018-9469
was published
Nov 20, 2024
In the Linux kernel, the following vulnerability has been resolved:
io_uring: check if we need...
Moderate
Unreviewed
CVE-2024-50060
was published
Oct 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
x86/tdx: Fix data leak in...
Low
Unreviewed
CVE-2024-46794
was published
Sep 18, 2024
In the Mediatek Preloader, there are out of bounds reads and writes due to an exposed interface...
High
Unreviewed
CVE-2018-9371
was published
Nov 19, 2024
D-LINK DI-8003 v16.07.26A1 was discovered to contain a buffer overflow via the ip parameter in...
Critical
Unreviewed
CVE-2024-52759
was published
Nov 19, 2024
A cross-site scripting (XSS) vulnerability in the component /master/header.php of Ganglia-web v3...
Moderate
Unreviewed
CVE-2024-52762
was published
Nov 19, 2024
Tenda AC6 v2.0 v15.03.06.50 was discovered to contain a buffer overflow in the function ...
Critical
Unreviewed
CVE-2024-52714
was published
Nov 19, 2024
A vulnerability was discovered in the firmware builds after 8.0.2.3267 and prior to 8.1.3.1301 in...
High
Unreviewed
CVE-2024-3281
was published
Apr 9, 2024
Improper access control vulnerability in Apaczka plugin for PrestaShop allows information...
High
Unreviewed
CVE-2024-2759
was published
Apr 4, 2024
The Libreswan Project was notified of an issue causing libreswan to restart under some IKEv2...
Moderate
Unreviewed
CVE-2024-2357
was published
Mar 11, 2024
The Button Generator WordPress plugin before 3.0 does not have CSRF check in place when bulk...
Low
Unreviewed
CVE-2024-3471
was published
May 2, 2024
Transient DOS while processing TID-to-link mapping IE elements.
High
Unreviewed
CVE-2024-33020
was published
Aug 5, 2024
The Newsletter Popup WordPress plugin through 1.2 does not sanitise and escape some of its...
Moderate
Unreviewed
CVE-2024-3644
was published
May 16, 2024
The HL Twitter WordPress plugin through 2014.1.18 does not have CSRF check in place when updating...
Low
Unreviewed
CVE-2024-3629
was published
May 15, 2024
ProTip!
Advisories are also available from the
GraphQL API