GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
493 advisories
Filter by severity
Use of uninitialized resource in SQL Server allows an unauthorized attacker to disclose...
High
Unreviewed
CVE-2025-49718
was published
Jul 8, 2025
Use of uninitialized resource in Windows Netlogon allows an unauthorized attacker to elevate...
High
Unreviewed
CVE-2025-33070
was published
Jun 10, 2025
Use of uninitialized resource in Windows DWM Core Library allows an authorized attacker to...
Moderate
Unreviewed
CVE-2025-33052
was published
Jun 10, 2025
PDF-XChange Editor PDF File Parsing Uninitialized Variable Information Disclosure Vulnerability....
Low
Unreviewed
CVE-2023-39484
was published
May 3, 2024
MongoDB Server may access non-initialized region of memory leading to unexpected behaviour when...
Moderate
Unreviewed
CVE-2024-8654
was published
Sep 10, 2024
PDF-XChange Editor J2K File Parsing Uninitialized Variable Information Disclosure Vulnerability....
Low
Unreviewed
CVE-2023-42079
was published
May 3, 2024
PDF-XChange Editor U3D File Parsing Uninitialized Variable Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2023-42062
was published
May 3, 2024
PDF-XChange Editor U3D File Parsing Uninitialized Variable Information Disclosure Vulnerability....
Low
Unreviewed
CVE-2023-42056
was published
May 3, 2024
PDF-XChange Editor J2K File Parsing Uninitialized Variable Information Disclosure Vulnerability....
Low
Unreviewed
CVE-2023-42048
was published
May 3, 2024
PDF-XChange Editor J2K File Parsing Uninitialized Variable Information Disclosure Vulnerability....
Low
Unreviewed
CVE-2023-42046
was published
May 3, 2024
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an...
Moderate
Unreviewed
CVE-2025-29959
was published
May 13, 2025
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an...
Moderate
Unreviewed
CVE-2025-29958
was published
May 13, 2025
Use of uninitialized resource in Windows Trusted Runtime Interface Driver allows an authorized...
Moderate
Unreviewed
CVE-2025-29829
was published
May 13, 2025
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an...
Moderate
Unreviewed
CVE-2025-29830
was published
May 13, 2025
In the Linux kernel, the following vulnerability has been resolved:
tipc: fix the msg->req tlv...
Moderate
Unreviewed
CVE-2022-49862
was published
May 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
can: j1939: j1939_send_one()...
Moderate
Unreviewed
CVE-2022-49845
was published
May 1, 2025
A maliciously crafted STP file, when parsed in stp_aim_x64_vc15d.dll through Autodesk...
High
Unreviewed
CVE-2024-23159
was published
Jun 25, 2024
HDF5 Library through 1.14.3 may use an uninitialized value in H5A__attr_release_table in H5Aint.c.
Critical
Unreviewed
CVE-2024-32611
was published
May 14, 2024
A crafted CMS message could have been processed incorrectly, leading to an invalid memory read,...
High
Unreviewed
CVE-2022-31741
was published
Dec 22, 2022
In the Linux kernel, the following vulnerability has been resolved:
staging: rtl8712: fix uninit...
Moderate
Unreviewed
CVE-2022-49301
was published
Apr 14, 2025
In the Linux kernel, the following vulnerability has been resolved:
tipc: check attribute length...
Moderate
Unreviewed
CVE-2022-49374
was published
Apr 14, 2025
In the Linux kernel, the following vulnerability has been resolved:
staging: rtl8712: fix uninit...
Moderate
Unreviewed
CVE-2022-49298
was published
Apr 14, 2025
PCRE before 8.38 mishandles the [: and \\ substrings in character classes, which allows remote...
High
Unreviewed
CVE-2015-8390
was published
May 17, 2022
A maliciously crafted STP or SLDPRT file when ODXSW_DLL.dll parsed through Autodesk AutoCAD can...
High
Unreviewed
CVE-2024-23137
was published
Feb 22, 2024
Microsoft Internet Explorer 6 does not properly handle errors related to using the...
High
Unreviewed
CVE-2008-3475
was published
May 2, 2022
ProTip!
Advisories are also available from the
GraphQL API