GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
114,052 advisories
Filter by severity
Improper privilege management in Microsoft Streaming Service allows an authorized attacker to...
High
Unreviewed
CVE-2025-59514
was published
Nov 11, 2025
Use after free in Windows Broadcast DVR User Service allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-60717
was published
Nov 11, 2025
Out-of-bounds read in Windows Common Log File System Driver allows an authorized attacker to...
High
Unreviewed
CVE-2025-60709
was published
Nov 11, 2025
Untrusted pointer dereference in Windows Routing and Remote Access Service (RRAS) allows an...
High
Unreviewed
CVE-2025-60713
was published
Nov 11, 2025
InDesign Desktop versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability...
High
Unreviewed
CVE-2025-61814
was published
Nov 11, 2025
Protection mechanism failure in the UEFI firmware for the Slim Bootloader within firmware may...
High
Unreviewed
CVE-2025-35968
was published
Nov 11, 2025
InDesign Desktop versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability...
High
Unreviewed
CVE-2025-61815
was published
Nov 11, 2025
Out-of-bounds read for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23...
High
Unreviewed
CVE-2025-35967
was published
Nov 11, 2025
Missing authorization in Nuance PowerScribe allows an unauthorized attacker to disclose...
High
Unreviewed
CVE-2025-30398
was published
Nov 11, 2025
Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23...
High
Unreviewed
CVE-2025-35971
was published
Nov 11, 2025
Improper neutralization of special elements used in an sql command ('sql injection') in SQL...
High
Unreviewed
CVE-2025-59499
was published
Nov 11, 2025
Concurrent execution using shared resource with improper synchronization ('race condition') in...
High
Unreviewed
CVE-2025-59507
was published
Nov 11, 2025
Double free in Windows Smart Card allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-59505
was published
Nov 11, 2025
InCopy versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that...
High
Unreviewed
CVE-2025-61818
was published
Nov 11, 2025
Heap-based buffer overflow in Azure Monitor Agent allows an unauthorized attacker to execute code...
High
Unreviewed
CVE-2025-59504
was published
Nov 11, 2025
Concurrent execution using shared resource with improper synchronization ('race condition') in...
High
Unreviewed
CVE-2025-59508
was published
Nov 11, 2025
InCopy versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that...
High
Unreviewed
CVE-2025-61817
was published
Nov 11, 2025
External control of file name or path in Windows WLAN Service allows an authorized attacker to...
High
Unreviewed
CVE-2025-59511
was published
Nov 11, 2025
Concurrent execution using shared resource with improper synchronization ('race condition') in...
High
Unreviewed
CVE-2025-59506
was published
Nov 11, 2025
Improper access control in Customer Experience Improvement Program (CEIP) allows an authorized...
High
Unreviewed
CVE-2025-59512
was published
Nov 11, 2025
InCopy versions 20.5, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-61816
was published
Nov 11, 2025
InDesign Desktop versions 20.5, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-61832
was published
Nov 11, 2025
InDesign Desktop versions 20.5, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-61824
was published
Nov 11, 2025
Active debug code for some Intel UEFI reference platforms within Ring 0: Kernel may allow a...
High
Unreviewed
CVE-2025-30185
was published
Nov 11, 2025
Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23...
High
Unreviewed
CVE-2025-30255
was published
Nov 11, 2025
ProTip!
Advisories are also available from the
GraphQL API