GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,291 advisories
Filter by severity
A buffer overflow flaw was found in X.Org and Xwayland. If XkbChangeTypesOfKey() is called with a...
High
Unreviewed
CVE-2025-26597
was published
Feb 25, 2025
Buffer overflow in some Zoom Apps may allow an authenticated user to conduct an escalation of...
High
Unreviewed
CVE-2024-45421
was published
Feb 25, 2025
Buffer overflow in some Zoom Workplace Apps and SDKs may allow an authenticated user to conduct a...
Moderate
Unreviewed
CVE-2024-27245
was published
Feb 25, 2025
Memory safety bugs present in Firefox 135 and Thunderbird 135. Some of these bugs showed evidence...
High
Unreviewed
CVE-2025-1943
was published
Mar 4, 2025
An out-of-bounds write vulnerability exists in the ma_dr_flac__decode_samples__lpc functionality...
High
Unreviewed
CVE-2024-41147
was published
Mar 4, 2025
Heap-based buffer overflow in Role: Windows Hyper-V allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-24050
was published
Mar 11, 2025
Heap-based buffer overflow in Role: Windows Hyper-V allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-24048
was published
Mar 11, 2025
Substance3D - Designer versions 14.1 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-21169
was published
Mar 11, 2025
Heap-based buffer overflow in Windows exFAT File System allows an unauthorized attacker to...
High
Unreviewed
CVE-2025-21180
was published
Mar 11, 2025
Heap-based buffer overflow in Windows Kernel-Mode Drivers allows an authorized attacker to...
High
Unreviewed
CVE-2025-24066
was published
Mar 11, 2025
Heap-based buffer overflow in Windows Telephony Server allows an unauthorized attacker to execute...
High
Unreviewed
CVE-2025-24056
was published
Mar 11, 2025
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an...
High
Unreviewed
CVE-2025-24051
was published
Mar 11, 2025
Heap-based buffer overflow in Microsoft Streaming Service allows an authorized attacker to...
High
Unreviewed
CVE-2025-24067
was published
Mar 11, 2025
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code...
High
Unreviewed
CVE-2025-24057
was published
Mar 11, 2025
Integer overflow or wraparound in Windows Fast FAT Driver allows an unauthorized attacker to...
High
Unreviewed
CVE-2025-24985
was published
Mar 11, 2025
Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver allows an authorized...
High
Unreviewed
CVE-2025-24995
was published
Mar 11, 2025
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-24993
was published
Mar 11, 2025
Heap-based buffer overflow in Windows Core Messaging allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-26634
was published
Mar 11, 2025
Substance3D - Sampler versions 4.5.2 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-24443
was published
Mar 11, 2025
Substance3D - Sampler versions 4.5.2 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-24439
was published
Mar 11, 2025
InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by a Heap-based Buffer...
High
Unreviewed
CVE-2025-24453
was published
Mar 11, 2025
InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by a Heap-based Buffer...
High
Unreviewed
CVE-2025-27177
was published
Mar 11, 2025
InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by a Heap-based Buffer...
High
Unreviewed
CVE-2025-27171
was published
Mar 11, 2025
Substance3D - Modeler versions 1.15.0 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-27173
was published
Mar 11, 2025
Ashlar-Vellum Cobalt VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution...
High
Unreviewed
CVE-2025-2019
was published
Mar 11, 2025
ProTip!
Advisories are also available from the
GraphQL API