GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,799 advisories
Filter by severity
Memory corruption while IOCTL call is invoked from user-space to read board data.
High
Unreviewed
CVE-2025-21438
was published
Apr 7, 2025
In Modem, there is a possible system crash due to improper input validation. This could lead to...
High
Unreviewed
CVE-2025-20659
was published
Apr 7, 2025
A flaw was found in libsoup. The package is vulnerable to a heap buffer over-read when sniffing...
High
Unreviewed
CVE-2025-2784
was published
Apr 3, 2025
In the Linux kernel, the following vulnerability has been resolved:
iscsi_ibft: Fix UBSAN shift...
High
Unreviewed
CVE-2025-21993
was published
Apr 2, 2025
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Fix out-of...
High
Unreviewed
CVE-2025-21985
was published
Apr 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix out-of-bounds in...
High
Unreviewed
CVE-2025-21946
was published
Apr 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
vlan: enforce underlying...
High
Unreviewed
CVE-2025-21920
was published
Apr 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
wifi: iwlwifi: limit printed...
High
Unreviewed
CVE-2025-21905
was published
Apr 1, 2025
A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of...
High
Unreviewed
CVE-2025-1658
was published
Apr 1, 2025
A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of...
High
Unreviewed
CVE-2025-1659
was published
Apr 1, 2025
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-24228
was published
Apr 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
f2fs: fix to do sanity check...
High
Unreviewed
CVE-2022-49738
was published
Mar 27, 2025
In the Linux kernel, the following vulnerability has been resolved:
wifi: brcmfmac: Check the...
High
Unreviewed
CVE-2022-49740
was published
Mar 27, 2025
PDF-XChange Editor RTF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-2231
was published
Mar 24, 2025
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS...
High
Unreviewed
CVE-2024-44199
was published
Mar 21, 2025
Ollama Allows Out-of-Bounds Read
High
CVE-2024-12055
was published
for
github.com/ollama/ollama
(Go)
Mar 20, 2025
In the Linux kernel, the following vulnerability has been resolved:
drm/dp: Fix OOB read when...
High
Unreviewed
CVE-2022-49218
was published
Mar 18, 2025
In the Linux kernel, the following vulnerability has been resolved:
ubifs: Fix read out-of...
High
Unreviewed
CVE-2021-47636
was published
Mar 18, 2025
A maliciously crafted CATPART file, when parsed through Autodesk AutoCAD, can force an Out-of...
High
Unreviewed
CVE-2025-1428
was published
Mar 13, 2025
A maliciously crafted MODEL file, when parsed through Autodesk AutoCAD, can force an Out-of...
High
Unreviewed
CVE-2025-1433
was published
Mar 13, 2025
A maliciously crafted MODEL file, when parsed through Autodesk AutoCAD, can force an Out-of...
High
Unreviewed
CVE-2025-1652
was published
Mar 13, 2025
A maliciously crafted SLDPRT file, when parsed through Autodesk AutoCAD, can force an Out-of...
High
Unreviewed
CVE-2025-1431
was published
Mar 13, 2025
Out-of-bounds Read in Ruby JSON Parser
High
CVE-2025-27788
was published
for
json
(RubyGems)
Mar 12, 2025
In the Linux kernel, the following vulnerability has been resolved:
powerpc/xive/spapr: correct...
High
Unreviewed
CVE-2022-49623
was published
Mar 12, 2025
Ashlar-Vellum Cobalt VS File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-2012
was published
Mar 11, 2025
ProTip!
Advisories are also available from the
GraphQL API