GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,273
Erlang
31
GitHub Actions
21
Go
2,056
Maven
5,000+
npm
3,740
NuGet
668
pip
3,417
Pub
12
RubyGems
891
Rust
872
Swift
36
Unreviewed advisories
All unreviewed
5,000+
10,758 advisories
Filter by severity
Improper input validation in the NPU driver could allow an attacker to supply a specially crafted...
High
Unreviewed
CVE-2024-21974
was published
Nov 12, 2024
Improper input validation in the NPU driver could allow an attacker to supply a specially crafted...
High
Unreviewed
CVE-2024-21975
was published
Nov 12, 2024
Improper validation of user input in the NPU driver could allow an attacker to provide a buffer...
Moderate
Unreviewed
CVE-2024-21949
was published
Nov 12, 2024
A Remote
Code Execution vulnerability exists in the affected product. The vulnerability requires...
High
Unreviewed
CVE-2024-10944
was published
Nov 12, 2024
Improper input validation in the NPU driver could allow an attacker to supply a specially crafted...
High
Unreviewed
CVE-2024-21976
was published
Nov 12, 2024
The command ctl_persistent_reserve_out allows the caller to specify an arbitrary size which will...
Moderate
Unreviewed
CVE-2024-39281
was published
Nov 12, 2024
Account users in Apache CloudStack by default are allowed to register templates to be downloaded...
High
Unreviewed
CVE-2024-50386
was published
Nov 12, 2024
A remote code execution vulnerability exists in the affected
product. The vulnerability allows...
High
Unreviewed
CVE-2024-37365
was published
Nov 12, 2024
A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All...
Low
Unreviewed
CVE-2024-50560
was published
Nov 12, 2024
A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All...
High
Unreviewed
CVE-2024-50557
was published
Nov 12, 2024
Ansible-Core vulnerable to content protections bypass
Low
CVE-2024-11079
was published
for
ansible-core
(pip)
Nov 12, 2024
Undertow Denial of Service vulnerability
Moderate
CVE-2023-1973
was published
for
io.undertow:undertow-core
(Maven)
Nov 7, 2024
A vulnerability in the External Agent Assignment Service (EAAS) feature of Cisco Enterprise Chat...
High
Unreviewed
CVE-2024-20484
was published
Nov 6, 2024
Symfony has an incorrect response from Validator when input ends with `\n`
Low
CVE-2024-50343
was published
for
symfony/symfony
(Composer)
Nov 6, 2024
Symfony allows changing the environment through a query
Moderate
CVE-2024-50340
was published
for
symfony/runtime
(Composer)
Nov 6, 2024
Vulnerability of input parameters not being verified in the HDC module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-51520
was published
Nov 5, 2024
Data verification vulnerability in the battery module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-51529
was published
Nov 5, 2024
Vulnerability of input parameters not being verified in the HDC module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-51519
was published
Nov 5, 2024
LaunchAnywhere vulnerability in the account module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-51530
was published
Nov 5, 2024
Vulnerability of parameter type not being verified in the WantAgent module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-51511
was published
Nov 5, 2024
Vulnerability of processes not being fully terminated in the VPN module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-51513
was published
Nov 5, 2024
Vulnerability of parameter type not being verified in the WantAgent module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-51512
was published
Nov 5, 2024
Vulnerability of pop-up windows belonging to no app in the VPN module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-51514
was published
Nov 5, 2024
memory corruption when WiFi display APIs are invoked with large random inputs.
Moderate
Unreviewed
CVE-2024-23386
was published
Nov 4, 2024
Memory corruption while processing the update SIM PB records request.
Moderate
Unreviewed
CVE-2024-33031
was published
Nov 4, 2024
ProTip!
Advisories are also available from the
GraphQL API