GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,992
Erlang
39
GitHub Actions
38
Go
2,634
Maven
5,000+
npm
4,258
NuGet
760
pip
4,051
Pub
12
RubyGems
955
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
90 advisories
Filter by severity
/etc/timezone can be Arbitrarily Written.This issue affects BLU-IC2: through 1.19.5; BLU-IC4:...
Low
Unreviewed
CVE-2025-12603
was published
Nov 1, 2025
/etc/avahi/services/z9.service can be Arbitrarily Written.This issue affects BLU-IC2: through 1...
Low
Unreviewed
CVE-2025-12602
was published
Nov 1, 2025
Potential stack buffer overwrite on the SFTP server side when receiving a malicious packet that...
Low
Unreviewed
CVE-2025-11624
was published
Oct 21, 2025
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in...
Low
Unreviewed
CVE-2025-43349
was published
Sep 16, 2025
ImageMagick BlobStream Forward-Seek Under-Allocation
Low
CVE-2025-57807
was published
for
Magick.NET-Q16-HDRI-OpenMP-arm64
(NuGet)
Sep 5, 2025
Bouncy Castle for Java has Out-of-Bounds Write Vulnerability
Low
CVE-2025-9340
was published
for
org.bouncycastle:bc-fips
(Maven)
Aug 22, 2025
A vulnerability has been found in tcpreplay 4.5.1. This vulnerability affects the function...
Low
Unreviewed
CVE-2025-9019
was published
Aug 15, 2025
A vulnerability has been identified in the libarchive library. This flaw involves an 'off-by-one'...
Low
Unreviewed
CVE-2025-5917
was published
Jun 9, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in pre...
Low
Unreviewed
CVE-2025-27132
was published
May 6, 2025
Dell PowerScale OneFS, versions 9.4.0.0 through 9.10.0.0, contains an out-of-bounds write...
Low
Unreviewed
CVE-2025-26479
was published
Apr 10, 2025
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds...
Low
Unreviewed
CVE-2025-24304
was published
Apr 7, 2025
Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by an invalid VerticesPerRow value...
Low
Unreviewed
CVE-2025-3154
was published
Apr 3, 2025
A vulnerability was found in WebAssembly wabt 1.0.36. It has been declared as critical. This...
Low
Unreviewed
CVE-2025-2584
was published
Mar 21, 2025
Out-of-bounds array write in Xpdf 4.05 and earlier, due to incorrect integer overflow checking in...
Low
Unreviewed
CVE-2025-2574
was published
Mar 20, 2025
A vulnerability, which was classified as critical, was found in HDF5 1.14.6. Affected is the...
Low
Unreviewed
CVE-2025-2153
was published
Mar 10, 2025
An out-of-bounds write vulnerability has been reported to affect several QNAP operating system...
Low
Unreviewed
CVE-2024-53699
was published
Mar 7, 2025
An out-of-bounds write vulnerability has been reported to affect several QNAP operating system...
Low
Unreviewed
CVE-2024-53697
was published
Mar 7, 2025
An out-of-bounds write vulnerability has been reported to affect several QNAP operating system...
Low
Unreviewed
CVE-2024-38638
was published
Mar 7, 2025
in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre...
Low
Unreviewed
CVE-2025-23240
was published
Mar 4, 2025
in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre...
Low
Unreviewed
CVE-2025-23420
was published
Mar 4, 2025
in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre...
Low
Unreviewed
CVE-2025-24309
was published
Mar 4, 2025
in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre...
Low
Unreviewed
CVE-2025-22835
was published
Mar 4, 2025
AugAssign evaluation order causing OOB write within the object in Vyper
Low
CVE-2025-27105
was published
for
vyper
(pip)
Feb 21, 2025
Dell PowerProtect DD versions prior to 7.10.1.50 and 7.13.1.20 contain a Stack-based Buffer...
Low
Unreviewed
CVE-2024-53296
was published
Feb 1, 2025
Out-of-bounds write in some Zoom Workplace Apps may allow an authorized user to conduct a loss of...
Low
Unreviewed
CVE-2025-0144
was published
Jan 30, 2025
ProTip!
Advisories are also available from the
GraphQL API