GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,688
Erlang
34
GitHub Actions
26
Go
2,274
Maven
5,000+
npm
3,930
NuGet
706
pip
3,696
Pub
12
RubyGems
919
Rust
955
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,497 advisories
Filter by severity
Transient DOS while parsing per STA profile in ML IE.
High
Unreviewed
CVE-2025-21459
was published
May 6, 2025
Memory corruption while decoding of OTA messages from T3448 IE.
High
Unreviewed
CVE-2024-49846
was published
May 6, 2025
Memory corruption while processing escape code, when DisplayId is passed with large unsigned value.
High
Unreviewed
CVE-2025-21475
was published
May 6, 2025
Transient DOS while processing of a registration acceptance OTA due to incorrect ciphering key...
High
Unreviewed
CVE-2024-49847
was published
May 6, 2025
Horner Automation Cscape version 10.0 (10.0.415.2) SP1 is vulnerable to an out-of-bounds read...
High
Unreviewed
CVE-2025-4098
was published
May 8, 2025
Out-of-bounds Read, Out-of-bounds Write vulnerability in RTI Connext Professional (Core Libraries...
High
Unreviewed
CVE-2025-1254
was published
May 8, 2025
When a BIG-IP PEM system is licensed with URL categorization, and the URL categorization policy...
High
Unreviewed
CVE-2025-35995
was published
May 8, 2025
In the Linux kernel, the following vulnerability has been resolved:
can: dev: fix skb drop check...
High
Unreviewed
CVE-2022-49844
was published
May 1, 2025
A flaw was found in libsoup, where the soup_headers_parse_request() function may be vulnerable to...
High
Unreviewed
CVE-2025-32906
was published
Apr 14, 2025
An out-of-bounds Read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6...
High
Unreviewed
CVE-2024-23532
was published
Apr 19, 2024
Out-of-Bounds Read in Virglrenderer in ChromeOS 16093.57.0 allows a malicious guest VM to...
High
Unreviewed
CVE-2025-2509
was published
May 6, 2025
An issue found in SQLite SQLite3 v.3.35.4 that allows a remote attacker to cause a denial of...
High
Unreviewed
CVE-2021-31239
was published
May 9, 2023
Sudo 1.8.0 through 1.9.12, with the crypt() password backend, contains a plugins/sudoers/auth...
High
Unreviewed
CVE-2022-43995
was published
Nov 2, 2022
MicroDicom DICOM Viewer is vulnerable to an out-of-bounds read which may allow an attacker to...
High
Unreviewed
CVE-2025-36521
was published
May 2, 2025
In the Linux kernel, the following vulnerability has been resolved:
ext4: fix OOB read when...
High
Unreviewed
CVE-2025-37785
was published
Apr 18, 2025
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix potencial out-of...
High
Unreviewed
CVE-2024-26952
was published
May 1, 2024
A carefully crafted request uri-path can cause mod_proxy_uwsgi to read above the allocated memory...
High
Unreviewed
CVE-2021-36160
was published
May 24, 2022
In the Linux kernel, the following vulnerability has been resolved:
kvm: avoid speculation-based...
High
Unreviewed
CVE-2021-47277
was published
May 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: validate zero...
High
Unreviewed
CVE-2025-22038
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
objtool, nvmet: Fix out-of...
High
Unreviewed
CVE-2025-39778
was published
Apr 18, 2025
In the Linux kernel, the following vulnerability has been resolved:
jfs: fix slab-out-of-bounds...
High
Unreviewed
CVE-2025-39735
was published
Apr 18, 2025
The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced...
High
Unreviewed
CVE-2021-44142
was published
Feb 22, 2022
The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6...
High
Unreviewed
CVE-2022-32942
was published
Dec 15, 2022
In GraphicsMagick 1.4 snapshot-20171217 Q8, there is a heap-based buffer over-read in...
High
Unreviewed
CVE-2017-17912
was published
May 13, 2022
The File_read_line function in epan/wslua/wslua_file.c in Wireshark through 2.2.11 does not...
High
Unreviewed
CVE-2017-17935
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API