GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,992
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,053
Pub
12
RubyGems
955
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
5,492 advisories
Filter by severity
A race condition Use-After-Free vulnerability exists in the virtio_transport_space_update...
High
Unreviewed
CVE-2025-1290
was published
Apr 17, 2025
ComponentInstaller Modification in ComponentInstaller in Google ChromeOS 124.0.6367.34 on...
Critical
Unreviewed
CVE-2025-1704
was published
Apr 17, 2025
Use after free in USB in Google Chrome prior to 135.0.7049.95 allowed a remote attacker to...
High
Unreviewed
CVE-2025-3620
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
md: fix mddev uaf while...
High
Unreviewed
CVE-2025-22126
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
RDMA/erdma: Prevent use...
High
Unreviewed
CVE-2025-22088
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
drm/vkms: Fix use after free...
High
Unreviewed
CVE-2025-22097
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
vhost-scsi: Fix handling of...
High
Unreviewed
CVE-2025-22083
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Fix use-after...
High
Unreviewed
CVE-2025-22085
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
ublk: make sure ubq-...
High
Unreviewed
CVE-2025-22068
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix use-after-free in...
High
Unreviewed
CVE-2025-22041
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix session use-after...
High
Unreviewed
CVE-2025-22040
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
exfat: fix random stack...
High
Unreviewed
CVE-2025-22036
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
tracing: Fix use-after-free...
High
Unreviewed
CVE-2025-22035
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
nfsd: fix management of...
Moderate
Unreviewed
CVE-2025-22024
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
PCI/ASPM: Fix link state...
High
Unreviewed
CVE-2024-58093
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
memstick: rtsx_usb_ms: Fix...
High
Unreviewed
CVE-2025-22020
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
usb: xhci: Don't skip on...
High
Unreviewed
CVE-2025-22023
was published
Apr 16, 2025
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS...
High
Unreviewed
CVE-2023-42970
was published
Apr 11, 2025
A flaw was found in OpenSSL's handling of the properties argument in certain functions. This...
Low
Unreviewed
CVE-2025-3416
was published
Apr 8, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-29820
was published
Apr 8, 2025
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-29823
was published
Apr 8, 2025
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-29824
was published
Apr 8, 2025
Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-29792
was published
Apr 8, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-27748
was published
Apr 8, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-27749
was published
Apr 8, 2025
ProTip!
Advisories are also available from the
GraphQL API