GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,291 advisories
Filter by severity
libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow...
Moderate
Unreviewed
CVE-2025-47815
was published
May 11, 2025
libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow...
Moderate
Unreviewed
CVE-2025-47814
was published
May 11, 2025
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges...
High
Unreviewed
CVE-2025-24063
was published
May 13, 2025
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over...
High
Unreviewed
CVE-2025-29963
was published
May 13, 2025
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over...
High
Unreviewed
CVE-2025-29962
was published
May 13, 2025
Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized attacker to execute...
High
Unreviewed
CVE-2025-29966
was published
May 13, 2025
Heap-based buffer overflow in Remote Desktop Gateway Service allows an unauthorized attacker to...
High
Unreviewed
CVE-2025-29967
was published
May 13, 2025
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute...
High
Unreviewed
CVE-2025-29979
was published
May 13, 2025
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over...
High
Unreviewed
CVE-2025-29964
was published
May 13, 2025
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute...
High
Unreviewed
CVE-2025-30376
was published
May 13, 2025
Heap-based buffer overflow in Windows Win32K - GRFX allows an unauthorized attacker to execute...
High
Unreviewed
CVE-2025-30388
was published
May 13, 2025
Illustrator versions 29.3, 28.7.5 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-30330
was published
May 13, 2025
Heap-based Buffer Overflow vulnerability in Apache ORC.
A vulnerability has been identified in...
Moderate
Unreviewed
CVE-2025-47436
was published
May 14, 2025
IBM Semeru Runtime 8.0.302.0 through 8.0.442.0, 11.0.12.0 through 11.0.26.0, 17.0.0.0 through 17...
High
Unreviewed
CVE-2025-2900
was published
May 14, 2025
FCGI versions 0.44 through 0.82, for Perl, include a vulnerable version of the FastCGI fcgi2 (aka...
Moderate
Unreviewed
CVE-2025-40907
was published
May 16, 2025
BSON::XS versions 0.8.4 and earlier for Perl includes a bundled libbson 1.1.7, which has several...
Critical
Unreviewed
CVE-2025-40906
was published
May 16, 2025
A malicious actor with access to the management network could execute a remote code execution ...
Critical
Unreviewed
CVE-2025-23123
was published
May 19, 2025
A flaw was found in GIMP when processing certain TGA image files. If a user opens one of these...
High
Unreviewed
CVE-2025-48797
was published
May 27, 2025
hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5Z__filter_scaleoffset...
High
Unreviewed
CVE-2025-44905
was published
May 30, 2025
hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5VM_memcpyvv function.
High
Unreviewed
CVE-2025-44904
was published
May 30, 2025
In Bluetooth driver, there is a possible out of bounds write due to an incorrect bounds check....
Critical
Unreviewed
CVE-2025-20672
was published
Jun 2, 2025
Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability...
High
Unreviewed
CVE-2025-1051
was published
Jun 2, 2025
Buffer overflow vulnerability in the DFile module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-48910
was published
Jun 6, 2025
WOLFBOX Level 2 EV Charger tuya_svc_devos_activate_result_parse Heap-based Buffer Overflow Remote...
High
Unreviewed
CVE-2025-5750
was published
Jun 6, 2025
A vulnerability has been identified in the libarchive library. This flaw can lead to a heap...
Low
Unreviewed
CVE-2025-5915
was published
Jun 9, 2025
ProTip!
Advisories are also available from the
GraphQL API