GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,883
Maven
5,000+
npm
4,522
NuGet
785
pip
4,262
Pub
12
RubyGems
975
Rust
1,105
Swift
49
Unreviewed advisories
All unreviewed
5,000+
118,057 advisories
Filter by severity
Frigate Professional 3.36.0.9 contains a local buffer overflow vulnerability in the 'Find...
High
Unreviewed
CVE-2020-37042
was published
Jan 31, 2026
Code Blocks 17.12 contains a local buffer overflow vulnerability that allows attackers to execute...
High
Unreviewed
CVE-2020-37040
was published
Jan 31, 2026
10-Strike Bandwidth Monitor 3.9 contains a buffer overflow vulnerability that allows attackers to...
High
Unreviewed
CVE-2020-37043
was published
Jan 31, 2026
OpenCTI 3.3.1 is vulnerable to a directory traversal attack via the static/css endpoint. An...
High
Unreviewed
CVE-2020-37041
was published
Jan 31, 2026
Quick Player 1.3 contains a buffer overflow vulnerability that allows attackers to execute...
High
Unreviewed
CVE-2020-37050
was published
Jan 31, 2026
Frigate 3.36.0.9 contains a local buffer overflow vulnerability in the Command Line input field...
High
Unreviewed
CVE-2020-37049
was published
Jan 31, 2026
Navigate CMS 2.8.7 contains an authenticated SQL injection vulnerability that allows attackers to...
High
Unreviewed
CVE-2020-37053
was published
Jan 31, 2026
Online-Exam-System 2015 contains a time-based blind SQL injection vulnerability in the feedback...
High
Unreviewed
CVE-2020-37051
was published
Jan 31, 2026
Online-Exam-System 2015 contains a SQL injection vulnerability in the feedback module that allows...
High
Unreviewed
CVE-2020-37057
was published
Jan 31, 2026
RM Downloader 2.50.60 contains a local buffer overflow vulnerability in the 'Load' parameter that...
High
Unreviewed
CVE-2020-37036
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 could allow an...
High
Unreviewed
CVE-2025-36184
was published
Jan 31, 2026
NetPCLinker 1.0.0.0 contains a buffer overflow vulnerability in the Clients Control Panel DNS/IP...
High
Unreviewed
CVE-2019-25232
was published
Jan 31, 2026
Nidesoft DVD Ripper 5.2.18 contains a local buffer overflow vulnerability in the License Code...
High
Unreviewed
CVE-2020-37024
was published
Jan 31, 2026
Port Forwarding Wizard 4.8.0 contains a buffer overflow vulnerability that allows local attackers...
High
Unreviewed
CVE-2020-37025
was published
Jan 31, 2026
Socusoft Photo to Video Converter Professional 8.07 contains a local buffer overflow...
High
Unreviewed
CVE-2020-37028
was published
Jan 31, 2026
Wing FTP Server 6.3.8 contains a remote code execution vulnerability in its Lua-based web console...
High
Unreviewed
CVE-2020-37032
was published
Jan 31, 2026
Koken CMS 0.22.24 contains a file upload vulnerability that allows authenticated attackers to...
High
Unreviewed
CVE-2020-37023
was published
Jan 31, 2026
Simple Startup Manager 1.17 contains a local buffer overflow vulnerability that allows attackers...
High
Unreviewed
CVE-2020-37031
was published
Jan 31, 2026
IBM Db2 for Windows 12.1.0 - 12.1.3 could allow a local user with filesystem access to escalate...
High
Unreviewed
CVE-2025-36384
was published
Jan 31, 2026
HelloWeb 2.0 contains an arbitrary file download vulnerability that allows remote attackers to...
High
Unreviewed
CVE-2020-37034
was published
Jan 31, 2026
FTPDummy 4.80 contains a local buffer overflow vulnerability in its preference file handling that...
High
Unreviewed
CVE-2020-37029
was published
Jan 31, 2026
Infor Storefront B2B 1.0 contains a SQL injection vulnerability that allows attackers to...
High
Unreviewed
CVE-2020-37033
was published
Jan 31, 2026
e-Learning PHP Script 0.1.0 contains a SQL injection vulnerability in the search functionality...
High
Unreviewed
CVE-2020-37035
was published
Jan 31, 2026
SQL injection vulnerability in geopandas before v.1.1.2 allows an attacker to obtain sensitive...
High
Unreviewed
CVE-2025-69662
was published
Jan 30, 2026
Salt's junos execution module contained an unsafe YAML decode/load usage. A specially crafted...
High
Unreviewed
CVE-2025-62348
was published
Jan 30, 2026
ProTip!
Advisories are also available from the
GraphQL API