GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Language support
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
3,968
Erlang
29
GitHub Actions
16
Go
1,752
Maven
4,982
npm
3,516
NuGet
609
pip
3,090
Pub
10
RubyGems
832
Rust
782
Swift
34
Unreviewed advisories
All unreviewed
5,000+
140 advisories
Filter by severity
Transient DOS while processing an improperly formatted 802.11az Fine Time Measurement protocol...
High
Unreviewed
CVE-2023-43539
was published
Mar 4, 2024
Information Disclosure while processing IOCTL request in FastRPC.
Moderate
Unreviewed
CVE-2023-33078
was published
Mar 4, 2024
Transient DOS while processing channel information for speaker protection v2 module in ADSP.
Moderate
Unreviewed
CVE-2023-33090
was published
Mar 4, 2024
A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston...
Moderate
Unreviewed
CVE-2023-39541
was published
Feb 20, 2024
A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston...
Moderate
Unreviewed
CVE-2023-39540
was published
Feb 20, 2024
Windows Kernel Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-21340
was published
Feb 13, 2024
A vulnerability in the OLE2 file format parser of ClamAV could allow an unauthenticated, remote...
High
Unreviewed
CVE-2024-20290
was published
Feb 7, 2024
Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802...
High
Unreviewed
CVE-2023-43533
was published
Feb 6, 2024
Transient DOS while parse fils IE with length equal to 1.
High
Unreviewed
CVE-2023-43536
was published
Feb 6, 2024
Information disclosure in Audio while accessing AVCS services from ADSP payload.
Moderate
Unreviewed
CVE-2023-33065
was published
Feb 6, 2024
Information disclosure in Modem while processing SIB5.
High
Unreviewed
CVE-2023-33058
was published
Feb 6, 2024
Transient DOS in Core when DDR memory check is called while DDR is not initialized.
High
Unreviewed
CVE-2023-33060
was published
Feb 6, 2024
Transient DOS in Audio when invoking callback function of ASM driver.
Moderate
Unreviewed
CVE-2023-33064
was published
Feb 6, 2024
Transient DOS when WLAN firmware receives "reassoc response" frame including RIC_DATA element.
High
Unreviewed
CVE-2023-33112
was published
Jan 2, 2024
Transient DOS while parsing ieee80211_parse_mscs_ie in WIN WLAN driver.
High
Unreviewed
CVE-2023-33116
was published
Jan 2, 2024
Transient DOS while parsing GATT service data when the total amount of memory that is required by...
High
Unreviewed
CVE-2023-43512
was published
Jan 2, 2024
Transient DOS in Data Modem during DTLS handshake.
High
Unreviewed
CVE-2023-33040
was published
Jan 2, 2024
Transient DOS in WLAN Firmware while parsing a BTM request.
High
Unreviewed
CVE-2023-33062
was published
Jan 2, 2024
Transient DOS in WLAN Firmware while processing a FTMR frame.
High
Unreviewed
CVE-2023-33097
was published
Dec 5, 2023
Transient DOS while parsing WPA IES, when it is passed with length more than expected size.
High
Unreviewed
CVE-2023-33098
was published
Dec 5, 2023
Transient DOS while parsing a vender specific IE (Information Element) of reassociation response...
High
Unreviewed
CVE-2023-33080
was published
Dec 5, 2023
Transient DOS while converting TWT (Target Wake Time) frame parameters in the OTA broadcast.
High
Unreviewed
CVE-2023-33081
was published
Dec 5, 2023
Transient DOS in WLAN Firmware while parsing t2lm buffers.
High
Unreviewed
CVE-2023-33048
was published
Nov 14, 2023
Transient DOS in WLAN Firmware while parsing no-inherit IES.
High
Unreviewed
CVE-2023-33047
was published
Nov 14, 2023
Transient DOS in WLAN Firmware while parsing WLAN beacon or probe-response frame.
High
Unreviewed
CVE-2023-33061
was published
Nov 14, 2023
ProTip!
Advisories are also available from the
GraphQL API