GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
5,420 advisories
Filter by severity
A Use After Free vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS...
High
Unreviewed
CVE-2025-52946
was published
Jul 11, 2025
A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that...
High
Unreviewed
CVE-2025-7425
was published
Jul 10, 2025
Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges...
High
Unreviewed
CVE-2025-49733
was published
Jul 8, 2025
Use after free in Windows KDC Proxy Service (KPSSVC) allows an unauthorized attacker to execute...
High
Unreviewed
CVE-2025-49735
was published
Jul 8, 2025
Use after free in Windows Notification allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-49725
was published
Jul 8, 2025
Use after free in Windows Notification allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-49726
was published
Jul 8, 2025
Use after free in Windows Connected Devices Platform Service allows an unauthorized attacker to...
High
Unreviewed
CVE-2025-49724
was published
Jul 8, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-49699
was published
Jul 8, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-49700
was published
Jul 8, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-49703
was published
Jul 8, 2025
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-49711
was published
Jul 8, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-49698
was published
Jul 8, 2025
Use after free in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to...
High
Unreviewed
CVE-2025-49675
was published
Jul 8, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-49695
was published
Jul 8, 2025
Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-49685
was published
Jul 8, 2025
Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized...
High
Unreviewed
CVE-2025-48821
was published
Jul 8, 2025
Use after free in Windows Event Tracing allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-49660
was published
Jul 8, 2025
Use after free in Microsoft Brokering File System allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-49677
was published
Jul 8, 2025
Use after free in Windows Media allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-49682
was published
Jul 8, 2025
Use after free in Microsoft MPEG-2 Video Extension allows an authorized attacker to execute code...
High
Unreviewed
CVE-2025-48806
was published
Jul 8, 2025
Use after free in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-47991
was published
Jul 8, 2025
Use after free in Windows SSDP Service allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-47976
was published
Jul 8, 2025
Use after free in Universal Print Management Service allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-47986
was published
Jul 8, 2025
Memory corruption while processing a private escape command in an event trigger.
High
Unreviewed
CVE-2025-21466
was published
Jul 8, 2025
Memory corruption during sub-system restart while processing clean-up to free up resources.
High
Unreviewed
CVE-2025-27056
was published
Jul 8, 2025
ProTip!
Advisories are also available from the
GraphQL API