GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,308 advisories
Filter by severity
Heap-based Buffer Overflow in Conda vim prior to 8.2.
High
Unreviewed
CVE-2022-0392
was published
Feb 15, 2022
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
Critical
Unreviewed
CVE-2022-0572
was published
Feb 15, 2022
Heap-based Buffer Overflow in Conda vim prior to 8.2.
High
Unreviewed
CVE-2022-0417
was published
Feb 12, 2022
Heap-based Buffer Overflow in Conda vim prior to 8.2.
High
Unreviewed
CVE-2022-0359
was published
Jan 27, 2022
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
High
Unreviewed
CVE-2022-1942
was published
Jun 1, 2022
The target's backtrace indicates that libc has detected a heap error or that the target was...
High
Unreviewed
CVE-2022-4141
was published
Nov 25, 2022
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1969.
Moderate
Unreviewed
CVE-2023-5344
was published
Oct 2, 2023
A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when...
Moderate
Unreviewed
CVE-2024-56826
was published
Jan 9, 2025
A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when...
Moderate
Unreviewed
CVE-2024-56827
was published
Jan 9, 2025
A vulnerability in the Object Linking and Embedding 2 (OLE2) decryption routine of ClamAV could...
Moderate
Unreviewed
CVE-2025-20128
was published
Jan 22, 2025
A vulnerability in the PDF scanning processes of ClamAV could allow an unauthenticated, remote...
Critical
Unreviewed
CVE-2025-20260
was published
Jun 18, 2025
heap-buffer overflow in fig2dev in version 3.2.9a allows an attacker to availability via local...
Moderate
Unreviewed
CVE-2025-31164
was published
Mar 28, 2025
The various bson_append functions in the MongoDB C driver library may be susceptible to buffer...
High
Unreviewed
CVE-2025-0755
was published
Mar 18, 2025
A heap-based buffer overflow vulnerability exists in the Nex parsing functionality of The Biosig...
Critical
Unreviewed
CVE-2025-54462
was published
Aug 25, 2025
A memory corruption vulnerability exists in the PCX Image Decoding functionality of the SAIL...
High
Unreviewed
CVE-2025-35984
was published
Aug 26, 2025
A memory corruption vulnerability exists in the PCX Image Decoding functionality of the SAIL...
High
Unreviewed
CVE-2025-50129
was published
Aug 26, 2025
A memory corruption vulnerability exists in the PSD RLE Decoding functionality of the SAIL Image...
High
Unreviewed
CVE-2025-53085
was published
Aug 26, 2025
A heap-based buffer overflow vulnerability exists in the ISHNE parsing functionality of The...
Critical
Unreviewed
CVE-2025-53853
was published
Aug 25, 2025
ImageMagick (WriteBMPImage): 32-bit integer overflow when writing BMP scanline stride → heap buffer overflow
High
CVE-2025-57803
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Aug 26, 2025
A memory corruption issue was addressed with improved validation. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-31280
was published
Jul 30, 2025
A heap-based buffer overflow vulnerability exists in the RHS2000 parsing functionality of The...
Critical
Unreviewed
CVE-2025-48005
was published
Aug 25, 2025
A heap-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig...
Critical
Unreviewed
CVE-2025-53511
was published
Aug 25, 2025
A heap-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig...
Critical
Unreviewed
CVE-2025-53557
was published
Aug 25, 2025
ImageMagick BlobStream Forward-Seek Under-Allocation
Low
CVE-2025-57807
was published
for
Magick.NET-Q16-HDRI-OpenMP-arm64
(NuGet)
Sep 5, 2025
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm where an attacker may...
Low
Unreviewed
CVE-2025-23308
was published
Sep 24, 2025
ProTip!
Advisories are also available from the
GraphQL API