GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,237
Erlang
31
GitHub Actions
21
Go
2,003
Maven
5,000+
npm
3,714
NuGet
661
pip
3,387
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
832 advisories
Filter by severity
Twister Antivirus v8.17 allows Elevation of Privileges on the computer where it's installed by...
High
Unreviewed
CVE-2024-1096
was published
Feb 13, 2024
A vulnerability has been identified in OpenPCS 7 V9.1 (All versions), SIMATIC BATCH V9.1 (All...
High
Unreviewed
CVE-2023-48364
was published
Feb 13, 2024
A vulnerability has been identified in OpenPCS 7 V9.1 (All versions), SIMATIC BATCH V9.1 (All...
High
Unreviewed
CVE-2023-48363
was published
Feb 13, 2024
Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.
High
Unreviewed
CVE-2023-43522
was published
Feb 6, 2024
Transmit requests in Xen's virtual network protocol can consist of
multiple parts. While not...
High
Unreviewed
CVE-2023-46838
was published
Jan 29, 2024
A NULL Pointer Dereference vulnerability in Juniper Networks Junos OS Evolved on ACX7024,...
High
Unreviewed
CVE-2024-21602
was published
Jan 12, 2024
Microsoft Message Queuing Denial of Service Vulnerability
High
Unreviewed
CVE-2024-20661
was published
Jan 9, 2024
IEEE 1609.2 dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows...
High
Unreviewed
CVE-2024-0209
was published
Jan 3, 2024
Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.
High
Unreviewed
CVE-2023-33109
was published
Jan 2, 2024
Permanent DOS in Hypervisor while untrusted VM without PSCI support makes a PSCI call.
High
Unreviewed
CVE-2023-33036
was published
Jan 2, 2024
OpenNDS, as used in Sierra Wireless ALEOS before 4.17.0.12 and other products, allows remote...
High
Unreviewed
CVE-2023-38321
was published
Dec 25, 2023
C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference in ndlz/ndlz8x8.c via...
High
Unreviewed
CVE-2023-37186
was published
Dec 25, 2023
C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference via the zfp/blosc2-zfp...
High
Unreviewed
CVE-2023-37187
was published
Dec 25, 2023
C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference via the function...
High
Unreviewed
CVE-2023-37188
was published
Dec 25, 2023
C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference via the function...
High
Unreviewed
CVE-2023-37185
was published
Dec 25, 2023
cJSON v1.7.16 was discovered to contain a segmentation violation via the function...
High
Unreviewed
CVE-2023-50472
was published
Dec 14, 2023
cJSON v1.7.16 was discovered to contain a segmentation violation via the function...
High
Unreviewed
CVE-2023-50471
was published
Dec 14, 2023
An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. A NULL pointer...
High
Unreviewed
CVE-2023-49936
was published
Dec 14, 2023
In multiple locations, there is a possible null dereference due to a missing null check. This...
High
Unreviewed
CVE-2023-48416
was published
Dec 8, 2023
Transient DOS when processing a NULL buffer while parsing WLAN vdev.
High
Unreviewed
CVE-2023-33089
was published
Dec 5, 2023
Memory corruption when processing cmd parameters while parsing vdev.
High
Unreviewed
CVE-2023-33088
was published
Dec 5, 2023
The
ACEManager component of ALEOS 4.16 and earlier does not adequately perform
input...
High
Unreviewed
CVE-2023-40459
was published
Dec 5, 2023
A null pointer dereference flaw was found in the nft_inner.c functionality of netfilter in the...
High
Unreviewed
CVE-2023-5972
was published
Nov 23, 2023
An issue was discovered in OpenNDS Captive Portal before version 10.1.2. It has a do_binauth NULL...
High
Unreviewed
CVE-2023-38322
was published
Nov 17, 2023
An issue was discovered in OpenNDS Captive Portal before 10.1.2. it has a do_binauth NULL pointer...
High
Unreviewed
CVE-2023-38313
was published
Nov 17, 2023
ProTip!
Advisories are also available from the
GraphQL API