GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,308 advisories
Filter by severity
Heap-based buffer overflow in Microsoft MPEG-2 Video Extension allows an authorized attacker to...
High
Unreviewed
CVE-2025-48805
was published
Jul 8, 2025
A heap-based buffer overflow in Fortinet FortiOS versions 7.6.0 through 7.6.2, 7.4.0 through 7.4...
Moderate
Unreviewed
CVE-2025-24477
was published
Jul 15, 2025
Heap-based Buffer Overflow vulnerability in Apache ORC.
A vulnerability has been identified in...
Moderate
Unreviewed
CVE-2025-47436
was published
May 14, 2025
Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to...
High
Unreviewed
CVE-2025-22881
was published
Jul 11, 2025
Giflib Project v5.2.2 is vulnerable to a heap buffer overflow via gif2rgb.
Moderate
Unreviewed
CVE-2024-45993
was published
Sep 30, 2024
For Realtek AmebaD devices, a heap-based buffer overflow was discovered in Ameba-AIoT ameba...
Moderate
Unreviewed
CVE-2025-49604
was published
Jul 9, 2025
Null pointer dereference vulnerability in the PDF preview module
Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2025-53184
was published
Jul 7, 2025
Null pointer dereference vulnerability in the PDF preview module
Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2025-53183
was published
Jul 7, 2025
Null pointer dereference vulnerability in the PDF preview module
Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2025-53180
was published
Jul 7, 2025
Null pointer dereference vulnerability in the PDF preview module
Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2025-53181
was published
Jul 7, 2025
Null pointer dereference vulnerability in the PDF preview module
Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2025-53182
was published
Jul 7, 2025
Null pointer dereference vulnerability in the PDF preview module
Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2025-53179
was published
Jul 7, 2025
Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47131
was published
Jul 9, 2025
InCopy versions 20.3, 19.5.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47099
was published
Jul 9, 2025
Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47123
was published
Jul 9, 2025
Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47125
was published
Jul 9, 2025
Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47122
was published
Jul 9, 2025
InDesign Desktop versions 19.5.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-43591
was published
Jul 9, 2025
InDesign Desktop versions 19.5.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47103
was published
Jul 9, 2025
InDesign Desktop versions 19.5.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47134
was published
Jul 9, 2025
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to...
High
Unreviewed
CVE-2025-27477
was published
Apr 8, 2025
Substance3D - Viewer versions 0.22 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-43582
was published
Jul 8, 2025
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an...
High
Unreviewed
CVE-2025-49729
was published
Jul 8, 2025
Time-of-check time-of-use (toctou) race condition in Microsoft Windows QoS scheduler allows an...
High
Unreviewed
CVE-2025-49730
was published
Jul 8, 2025
Integer overflow or wraparound in Microsoft Graphics Component allows an authorized attacker to...
High
Unreviewed
CVE-2025-49742
was published
Jul 8, 2025
ProTip!
Advisories are also available from the
GraphQL API