GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
314 advisories
Filter by severity
Buffer over-read in Storport.sys Driver allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-59192
was published
Oct 14, 2025
Buffer over-read in Windows Storage Management Provider allows an authorized attacker to disclose...
Moderate
Unreviewed
CVE-2025-55325
was published
Oct 14, 2025
PerfreeBlog v4.0.11 has an arbitrary file read vulnerability in the validThemeFilePath function
Moderate
Unreviewed
CVE-2025-60729
was published
Oct 24, 2025
NGINX Open Source and NGINX Plus have a vulnerability in the ngx_http_mp4_module, which might...
Moderate
Unreviewed
CVE-2024-7347
was published
Aug 14, 2024
A flaw was found in libsoup. A vulnerability in sniff_feed_or_html() and skip_insignificant_space...
Moderate
Unreviewed
CVE-2025-32053
was published
Apr 3, 2025
A flaw was found in libsoup. A vulnerability in the sniff_unknown() function may lead to heap...
Moderate
Unreviewed
CVE-2025-32052
was published
Apr 3, 2025
iSCSI dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection...
Moderate
Unreviewed
CVE-2023-3649
was published
Jul 14, 2023
The researcher is showing that it is possible to leak a small amount of Zabbix Server memory...
Low
Unreviewed
CVE-2024-42333
was published
Nov 27, 2024
Information disclosure while registering commands from clients with diag through diagHal.
Moderate
Unreviewed
CVE-2025-27064
was published
Nov 4, 2025
Information disclosure while processing message from client with invalid payload.
Moderate
Unreviewed
CVE-2025-47362
was published
Nov 4, 2025
Memory corruption when dereferencing an invalid userspace address in a user buffer during MCDM...
High
Unreviewed
CVE-2025-47368
was published
Nov 4, 2025
StringIO buffer overread vulnerability
Critical
CVE-2024-27280
was published
for
stringio
(RubyGems)
Mar 25, 2024
Mesa 23.0.4 was discovered to contain a buffer over-read in glXQueryServerString(). NOTE: this is...
Moderate
Unreviewed
CVE-2023-45919
was published
Mar 27, 2024
Buffer over-read in Windows TDX.sys allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-60720
was published
Nov 11, 2025
ProTip!
Advisories are also available from the
GraphQL API