GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,680
Maven
5,000+
npm
4,308
NuGet
760
pip
4,080
Pub
12
RubyGems
958
Rust
1,061
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
956 advisories
Filter by severity
NULL pointer dereference in get_san_or_cn_from_cert() in src/coap_openssl.c in OISM libcoap 4.3.5...
High
Unreviewed
CVE-2025-65494
was published
Nov 24, 2025
NULL pointer dereference in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to...
High
Unreviewed
CVE-2025-65493
was published
Nov 24, 2025
A flaw was found in libsoup, where the soup_message_headers_get_content_disposition() function is...
High
Unreviewed
CVE-2025-32913
was published
Apr 14, 2025
A null pointer dereference vulnerability exists in airpig2011 IEC104 thru Commit be6d841 (2019-07...
High
Unreviewed
CVE-2025-63929
was published
Nov 12, 2025
NULL pointer dereference vulnerability exists in GNU libmicrohttpd v1.0.2 and earlier. The...
High
Unreviewed
CVE-2025-59777
was published
Nov 10, 2025
An issue was discovered in AnyDesk through 9.0.4. Remote Denial of Service can occur because of...
High
Unreviewed
CVE-2025-27917
was published
Nov 6, 2025
[This CNA information record relates to multiple CVEs; the
text explains which aspects...
High
Unreviewed
CVE-2025-58144
was published
Sep 11, 2025
If a DHCPv4 client sends a request with some specific options, and Kea fails to find an...
High
Unreviewed
CVE-2025-40779
was published
Aug 27, 2025
In Alinto SOPE SOGo 2.0.2 through 5.12.2, sope-core/NGExtensions/NGHashMap.m allows a NULL...
High
Unreviewed
CVE-2025-53603
was published
Jul 5, 2025
cJSON v1.7.16 was discovered to contain a segmentation violation via the function...
High
Unreviewed
CVE-2023-50471
was published
Dec 14, 2023
An issue was discovered in NPU in Samsung Mobile Processor Exynos through July 2025. There is a...
High
Unreviewed
CVE-2025-54332
was published
Nov 4, 2025
An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. A NULL pointer...
High
Unreviewed
CVE-2023-49936
was published
Dec 14, 2023
An issue was discovered in the NPU driver in Samsung Mobile Processor Exynos 1280, 2200, 1380,...
High
Unreviewed
CVE-2025-54334
was published
Nov 4, 2025
A vulnerability exists in SMM (System Management Mode) branch that registers a SWSMI handler that...
High
Unreviewed
CVE-2021-41839
was published
Feb 10, 2022
Mesa 23.0.4 was discovered to contain a NULL pointer dereference in check_xshm() for the...
High
Unreviewed
CVE-2023-45931
was published
Mar 27, 2024
Transmit requests in Xen's virtual network protocol can consist of
multiple parts. While not...
High
Unreviewed
CVE-2023-46838
was published
Jan 29, 2024
Multiple invalid pointer dereference vulnerabilities exist in the OpenPLC Runtime EtherNet/IP...
High
Unreviewed
CVE-2024-39589
was published
Sep 18, 2024
null pointer dereference in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows an attacker...
High
Unreviewed
CVE-2024-38477
was published
Jul 1, 2024
IEEE 1609.2 dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows...
High
Unreviewed
CVE-2024-0209
was published
Jan 3, 2024
Crash in the Gryphon dissector in Wireshark 3.4.0 to 3.4.10 allows denial of service via packet...
High
Unreviewed
CVE-2021-4186
was published
Dec 31, 2021
A null pointer dereference vulnerability exists in the net_connectmsg Protocol Buffer Message...
High
Unreviewed
CVE-2025-36520
was published
Jul 22, 2025
A null pointer dereference vulnerability exists in the Distributed Transaction component of...
High
Unreviewed
CVE-2025-48498
was published
Jul 22, 2025
A null pointer dereference vulnerability exists in the CDB2SQLQUERY protocol buffer message...
High
Unreviewed
CVE-2025-35966
was published
Jul 22, 2025
LuaJIT through 2.1 has an unsinking of IR_FSTORE for NULL metatable, which leads to Denial of...
High
Unreviewed
CVE-2024-25177
was published
Jul 7, 2025
Segmentation fault in fig2dev in version 3.2.9a allows an attacker to availability via local...
High
Unreviewed
CVE-2025-46400
was published
Apr 23, 2025
ProTip!
Advisories are also available from the
GraphQL API