GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,303
Erlang
31
GitHub Actions
21
Go
2,072
Maven
5,000+
npm
3,744
NuGet
669
pip
3,430
Pub
12
RubyGems
892
Rust
880
Swift
36
Unreviewed advisories
All unreviewed
5,000+
91 advisories
Filter by severity
Multiple format string vulnerabilities in the parse_error_msg function in parsehelp.c in dpkg...
Moderate
Unreviewed
CVE-2014-8625
was published
May 17, 2022
Format string vulnerability in the b43_request_firmware function in drivers/net/wireless/b43/main...
Moderate
Unreviewed
CVE-2013-2852
was published
May 17, 2022
Huawei VP9660 V500R002C10 has a uncontrolled format string vulnerability when the license module...
Moderate
Unreviewed
CVE-2017-17132
was published
May 14, 2022
The Baxter Spectrum WBM (v16, v16D38) and Baxter Spectrum WBM (v17, v17D19, v20D29 to v20D32)...
Moderate
Unreviewed
CVE-2022-26392
was published
Sep 10, 2022
Format string vulnerability in the vinagre_utils_show_error function (src/vinagre-utils.c) in...
Moderate
Unreviewed
CVE-2008-5660
was published
May 14, 2022
The dissect_dsmcc_un_download function in epan/dissectors/packet-mpeg-dsmcc.c in the MPEG DSM-CC...
Moderate
Unreviewed
CVE-2013-3560
was published
May 14, 2022
In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user...
Moderate
Unreviewed
CVE-2017-7519
was published
May 13, 2022
The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a Format String Vulnerability.
Moderate
Unreviewed
CVE-2018-15749
was published
May 13, 2022
Assuming radio permission is gained, missing input validation in modem interface driver prior to...
Moderate
Unreviewed
CVE-2021-25489
was published
May 24, 2022
Format string vulnerability in the SetImageInfo function in image.c for ImageMagick 6.2.3 and...
Moderate
Unreviewed
CVE-2006-0082
was published
May 3, 2022
Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that...
Moderate
Unreviewed
CVE-2004-0179
was published
May 3, 2022
Multiple format string vulnerabilities in Network Authorization in Apple Mac OS X 10.6 before 10...
Moderate
Unreviewed
CVE-2010-1376
was published
May 2, 2022
VMware Authentication Daemon 1.0 in vmware-authd.exe in the VMware Authorization Service in...
Moderate
Unreviewed
CVE-2009-4811
was published
May 2, 2022
Format string vulnerability in Ipswitch WS_FTP Professional 12 before 12.2 allows remote...
Moderate
Unreviewed
CVE-2009-4775
was published
May 2, 2022
Format string vulnerability in War FTP Daemon (warftpd) 1.82 RC 12 allows remote authenticated...
Moderate
Unreviewed
CVE-2009-5141
was published
May 2, 2022
VMware Authentication Daemon 1.0 in vmware-authd.exe in the VMware Authorization Service in...
Moderate
Unreviewed
CVE-2009-3707
was published
May 2, 2022
Blocks/Common/Src/Configuration/Manageability/Adm/AdmContentBuilder.cs in Microsoft patterns &...
Moderate
Unreviewed
CVE-2009-3275
was published
May 2, 2022
The popen API function in TSRM/tsrm_win32.c in PHP before 5.2.11 and 5.3.x before 5.3.1, when...
Moderate
Unreviewed
CVE-2009-3294
was published
May 2, 2022
Format string vulnerability in Symantec pcAnywhere before 12.5 SP1 allows local users to read and...
Moderate
Unreviewed
CVE-2009-0538
was published
May 2, 2022
MySQL 5.0 before 5.0.66, 5.1 before 5.1.26, and 6.0 before 6.0.6 does not properly handle a b'' ...
Moderate
Unreviewed
CVE-2008-3963
was published
May 2, 2022
Format string vulnerability in the logDetail function of applib.dll in McAfee Common Management...
Moderate
Unreviewed
CVE-2008-1357
was published
May 1, 2022
Format string vulnerability in the Net Inspector HTTP server (mghttpd) in MG-SOFT Net Inspector 6...
Moderate
Unreviewed
CVE-2008-1401
was published
May 1, 2022
Format string vulnerability in c++filt in Apple Mac OS X 10.5 before 10.5.4 allows user-assisted...
Moderate
Unreviewed
CVE-2008-2310
was published
May 1, 2022
Format string vulnerability in the finger client in HP TCP/IP Services for OpenVMS 5.x allows...
Moderate
Unreviewed
CVE-2008-3940
was published
May 2, 2022
Format string vulnerability in the log_message function in lks.c in Linux Kiss Server 1.2, when...
Moderate
Unreviewed
CVE-2008-1206
was published
May 1, 2022
ProTip!
Advisories are also available from the
GraphQL API