GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
121
GitHub Actions
56
Go
4,845
Maven
5,000+
npm
5,000+
NuGet
1,131
pip
5,000+
Pub
13
RubyGems
1,158
Rust
1,578
Swift
63
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,513
Rust
20
26 advisories
Filter by severity
tor before 0.4.9.9 was prone to an infinite loop when decompressing a truncated zlib/gzip stream...
Low
Unreviewed
CVE-2026-77640
was published
Aug 20, 2026
Improper input validation in the PAM AD discovery endpoints in
Devolutions Server 2026.2.4.0...
Low
Unreviewed
CVE-2026-12755
was published
Jun 25, 2026
CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS...
Low
Unreviewed
CVE-2026-57062
was published
Jun 23, 2026
python-multipart: Negative Content-Length in parse_form buffers the entire body in memory
Low
CVE-2026-53540
was published
for
python-multipart
(pip)
Jun 15, 2026
Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches which fail to validate invalid sizes of the...
Low
Unreviewed
CVE-2026-47329
was published
May 28, 2026
Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a...
Low
Unreviewed
CVE-2026-0428
was published
May 15, 2026
Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a...
Low
Unreviewed
CVE-2025-66660
was published
May 15, 2026
Hono has improper validation of NumericDate claims (exp, nbf, iat) in JWT verify()
Low
CVE-2026-44459
was published
for
hono
(npm)
May 9, 2026
rust-opennssl has an Out-of-bounds read in PEM password callback when returning an oversized length
Low
CVE-2026-41677
was published
for
openssl
(Rust)
Apr 22, 2026
zlib before 1.3.2 allows CPU consumption via crc32_combine64 and crc32_combine_gen64 because...
Low
Unreviewed
CVE-2026-27171
was published
Feb 18, 2026
Tanium addressed an improper input validation vulnerability in Discover.
Low
Unreviewed
CVE-2026-0925
was published
Jan 26, 2026
The Secure Flag passed to Versal™ Adaptive SoC’s Arm® Trusted Firmware for Cortex®-A processors ...
Low
Unreviewed
CVE-2025-54515
was published
Nov 23, 2025
n affected platforms running Arista EOS, ACL policies may not be enforced. IPv4 ingress ACL, MAC...
Low
Unreviewed
CVE-2025-2826
was published
May 28, 2025
markdownify allows large headline prefixes such as <h9999999>, which causes memory consumption
Low
CVE-2025-46656
was published
for
markdownify
(pip)
Apr 27, 2025
In LibRaw before 0.21.4, tag 0x412 processing in phase_one_correct in decoders/load_mfbacks.cpp...
Low
Unreviewed
CVE-2025-43964
was published
Apr 21, 2025
In libxml2 before 2.13.8 and 2.14.x before 2.14.2, xmlSchemaIDCFillNodeTables in xmlschemas.c has...
Low
Unreviewed
CVE-2025-32415
was published
Apr 17, 2025
NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in the cuobjdump binary, where...
Low
Unreviewed
CVE-2024-53879
was published
Feb 25, 2025
NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in the cuobjdump binary, where...
Low
Unreviewed
CVE-2024-53878
was published
Feb 25, 2025
Improper access control in the IOMMU may allow a privileged attacker to bypass RMP checks,...
Low
Unreviewed
CVE-2023-20581
was published
Feb 12, 2025
Improper access control in the DRTM firmware could allow a privileged attacker to perform...
Low
Unreviewed
CVE-2023-31331
was published
Feb 12, 2025
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Ventura 13.7...
Low
Unreviewed
CVE-2025-24100
was published
Jan 28, 2025
Improper input validation in SMU may allow an attacker with privileges and a compromised physical...
Low
Unreviewed
CVE-2023-31304
was published
Aug 13, 2024
Improper Input Validation in Checkmk <2.2.0p15, <2.1.0p37, <=2.0.0p39 allows priviledged...
Low
Unreviewed
CVE-2023-23549
was published
Nov 15, 2023
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer driver...
Low
Unreviewed
CVE-2023-0195
was published
Apr 1, 2023
In multiple locations, there is a possible display crash loop due to improper input validation....
Low
Unreviewed
CVE-2022-20543
was published
Dec 19, 2022
ProTip!
Advisories are also available from the
GraphQL API