GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,680
Maven
5,000+
npm
4,308
NuGet
760
pip
4,080
Pub
12
RubyGems
958
Rust
1,061
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,470 advisories
Filter by severity
node-forge is vulnerable to ASN.1 OID Integer Truncation
Moderate
CVE-2025-66030
was published
for
node-forge
(npm)
Nov 26, 2025
Tinyproxy through 1.11.2 contains an integer overflow vulnerability in the strip_return_port()...
Moderate
Unreviewed
CVE-2025-63938
was published
Nov 26, 2025
A heap-based buffer overflow problem was found in glib through an incorrect calculation of buffer...
High
Unreviewed
CVE-2025-13601
was published
Nov 26, 2025
A flaw was identified in the X.Org X server’s X Keyboard (Xkb) extension where improper bounds...
High
Unreviewed
CVE-2025-62231
was published
Oct 30, 2025
An integer overflow vulnerability in the Skia library when allocating memory for edge builders on...
Moderate
Unreviewed
CVE-2018-12371
was published
May 24, 2022
An integer overflow can occur in the Skia library due to 32-bit integer use in an array without...
Critical
Unreviewed
CVE-2018-5159
was published
May 14, 2022
An integer overflow can occur during conversion of text to some Unicode character sets due to an...
High
Unreviewed
CVE-2018-5144
was published
May 14, 2022
An integer overflow vulnerability in the Skia library when allocating memory for edge builders on...
Critical
Unreviewed
CVE-2018-5095
was published
May 13, 2022
An error in argument length checking in JavaScript, leading to potential integer overflows or...
Critical
Unreviewed
CVE-2016-5297
was published
May 14, 2022
A flaw was found in WebKitGTK and WPE WebKit. This vulnerability allows an out-of-bounds read and...
High
Unreviewed
CVE-2025-13502
was published
Nov 25, 2025
A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME...
Low
Unreviewed
CVE-2025-4945
was published
May 19, 2025
Improper input validation within the XOCL driver may allow a local attacker to generate an...
High
Unreviewed
CVE-2025-52538
was published
Nov 24, 2025
Improper input validation within the XOCL driver may allow a local attacker to generate an...
High
Unreviewed
CVE-2025-0005
was published
Nov 24, 2025
Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x...
High
Unreviewed
CVE-2013-2729
was published
May 17, 2022
In the Linux kernel, the following vulnerability has been resolved:
bpf: fix potential 32-bit...
Moderate
Unreviewed
CVE-2022-50167
was published
Jun 18, 2025
In the Linux kernel, the following vulnerability has been resolved:
crypto: ecdsa - Harden...
Moderate
Unreviewed
CVE-2025-37984
was published
May 20, 2025
Integer wraparound in multiple PostgreSQL libpq client library functions allows an application...
Moderate
Unreviewed
CVE-2025-12818
was published
Nov 13, 2025
In the Linux kernel, the following vulnerability has been resolved:
scsi: st: Fix array overflow...
Moderate
Unreviewed
CVE-2025-37857
was published
May 9, 2025
In the Linux kernel, the following vulnerability has been resolved:
fs/jfs: Prevent integer...
Moderate
Unreviewed
CVE-2025-37858
was published
May 9, 2025
An issue was discovered in AnyDesk before 9.0.0. It has an integer overflow and resultant heap...
Critical
Unreviewed
CVE-2025-27918
was published
Nov 6, 2025
Apache Tomcat Catalina is vulnerable to DoS attack through bypassing of size limits
Moderate
CVE-2025-52520
was published
for
org.apache.tomcat:tomcat-catalina
(Maven)
Jul 10, 2025
An issue in `coap_pdu.c` in libcoap 4.3.4 allows attackers to cause undefined behavior via a...
High
Unreviewed
CVE-2024-31031
was published
Apr 17, 2024
Unlimited memory allocation in redis protocol parser in Apache bRPC (all versions < 1.14.1) on...
High
Unreviewed
CVE-2025-54472
was published
Aug 14, 2025
In libebml before 1.4.5, an integer overflow in MemIOCallback.cpp can occur when reading or...
Moderate
Unreviewed
CVE-2023-52339
was published
Jan 12, 2024
GStreamer MXF File Parsing Integer Overflow Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2023-40474
was published
May 3, 2024
ProTip!
Advisories are also available from the
GraphQL API