GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,189
Erlang
31
GitHub Actions
19
Go
1,985
Maven
5,000+
npm
3,701
NuGet
657
pip
3,326
Pub
11
RubyGems
882
Rust
836
Swift
35
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
574 advisories
Filter by severity
In Eclipse Mosquitto, from version 1.3.2 through 2.0.18, if a malicious broker sends a crafted...
High
Unreviewed
CVE-2024-10525
was published
Oct 30, 2024
A flaw was found in the X.org server. Due to improperly tracked allocation size in...
High
Unreviewed
CVE-2024-9632
was published
Oct 30, 2024
A maliciously crafted MODEL file when parsed in libodxdll.dll through Autodesk AutoCAD can force...
High
Unreviewed
CVE-2024-8594
was published
Oct 30, 2024
A maliciously crafted 3DM file when parsed in AcTranslators.exe through Autodesk AutoCAD can...
High
Unreviewed
CVE-2024-8591
was published
Oct 30, 2024
A maliciously crafted SLDPRT file when parsed in odxsw_dll.dll through Autodesk AutoCAD can force...
High
Unreviewed
CVE-2024-8587
was published
Oct 29, 2024
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-43578
was published
Oct 18, 2024
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-43579
was published
Oct 18, 2024
Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to...
High
Unreviewed
CVE-2024-47964
was published
Oct 10, 2024
Substance3D - Stager versions 3.0.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2024-45143
was published
Oct 9, 2024
Substance3D - Stager versions 3.0.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2024-45139
was published
Oct 9, 2024
Animate versions 23.0.7, 24.0.4 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2024-47417
was published
Oct 9, 2024
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-43592
was published
Oct 8, 2024
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-43611
was published
Oct 8, 2024
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-43593
was published
Oct 8, 2024
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-43589
was published
Oct 8, 2024
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-43607
was published
Oct 8, 2024
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-43608
was published
Oct 8, 2024
Microsoft Windows Storage Port Driver Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-43560
was published
Oct 8, 2024
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-43564
was published
Oct 8, 2024
Windows Kernel Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-43527
was published
Oct 8, 2024
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-43522
was published
Oct 8, 2024
Windows Secure Kernel Mode Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-43528
was published
Oct 8, 2024
Windows Telephony Server Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-43518
was published
Oct 8, 2024
Microsoft ActiveX Data Objects Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-43517
was published
Oct 8, 2024
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
High
Unreviewed
CVE-2024-38261
was published
Oct 8, 2024
ProTip!
Advisories are also available from the
GraphQL API