GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,675
Maven
5,000+
npm
4,297
NuGet
760
pip
4,077
Pub
12
RubyGems
957
Rust
1,058
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
932 advisories
Filter by severity
An issue was discovered in Samsung Mobile Processor Exynos 2200, 1480, and 2400. A Use-After-Free...
Moderate
Unreviewed
CVE-2025-23104
was published
Jun 2, 2025
Use after free in libvpx in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to...
Moderate
Unreviewed
CVE-2025-5283
was published
May 27, 2025
There is an issue in CPython when using `bytes.decode("unicode_escape", error="ignore|replace")`....
Moderate
Unreviewed
CVE-2025-4516
was published
May 15, 2025
Pixmeo OsiriX MD is vulnerable to a local use after free scenario, which could allow an attacker...
Moderate
Unreviewed
CVE-2025-31946
was published
May 9, 2025
Memory corruption while handling multiple IOCTL calls from userspace to operate DMA operations.
Moderate
Unreviewed
CVE-2024-45583
was published
May 6, 2025
Memory corruption during concurrent access to server info object due to unprotected critical field.
Moderate
Unreviewed
CVE-2024-45562
was published
May 6, 2025
IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0...
Moderate
Unreviewed
CVE-2025-27365
was published
May 2, 2025
In the Linux kernel, the following vulnerability has been resolved:
drm/nouveau: prime: fix...
Moderate
Unreviewed
CVE-2025-37765
was published
May 1, 2025
A null pointer dereference was addressed with improved input validation. This issue is fixed in...
Moderate
Unreviewed
CVE-2025-24179
was published
Apr 29, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4, tvOS 18...
Moderate
Unreviewed
CVE-2025-31197
was published
Apr 29, 2025
In the Linux kernel, the following vulnerability has been resolved:
nfsd: fix management of...
Moderate
Unreviewed
CVE-2025-22024
was published
Apr 16, 2025
Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
Moderate
Unreviewed
CVE-2025-26681
was published
Apr 8, 2025
Memory corruption while processing IOCTL calls to add route entry in the HW.
Moderate
Unreviewed
CVE-2024-45544
was published
Apr 7, 2025
Memory corruption while processing multiple IOCTL calls from HLOS to DSP.
Moderate
Unreviewed
CVE-2024-49848
was published
Apr 7, 2025
Memory corruption while invoking IOCTL map buffer request from userspace.
Moderate
Unreviewed
CVE-2024-45540
was published
Apr 7, 2025
JavaScript code running while transforming a document with the XSLTProcessor could lead to a use...
Moderate
Unreviewed
CVE-2025-3028
was published
Apr 1, 2025
A vulnerability was found in HDF5 up to 1.14.6. It has been rated as problematic. Affected by...
Moderate
Unreviewed
CVE-2025-2913
was published
Mar 28, 2025
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: Fix possible...
Moderate
Unreviewed
CVE-2023-53016
was published
Mar 27, 2025
In the Linux kernel, the following vulnerability has been resolved:
mm/migrate_device: don't add...
Moderate
Unreviewed
CVE-2025-21861
was published
Mar 12, 2025
Use after free in some Zoom Workplace Apps and SDKs may allow an authenticated user to conduct a...
Moderate
Unreviewed
CVE-2024-27246
was published
Feb 25, 2025
Use after free in some Zoom Workplace Apps and SDKs may allow an authenticated user to conduct a...
Moderate
Unreviewed
CVE-2024-27239
was published
Feb 25, 2025
A flaw was found in command/gpg. In some scenarios, hooks created by loaded modules are not...
Moderate
Unreviewed
CVE-2025-0622
was published
Feb 18, 2025
Use after free in Navigation in Google Chrome prior to 133.0.6943.98 allowed a remote attacker to...
Moderate
Unreviewed
CVE-2025-0997
was published
Feb 15, 2025
Use after free in V8 in Google Chrome prior to 133.0.6943.98 allowed a remote attacker to...
Moderate
Unreviewed
CVE-2025-0995
was published
Feb 15, 2025
Use-After-Free (UAF) vulnerability in the display module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-57959
was published
Feb 6, 2025
ProTip!
Advisories are also available from the
GraphQL API