GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,744
Maven
5,000+
npm
4,341
NuGet
765
pip
4,113
Pub
12
RubyGems
960
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
282 advisories
Filter by severity
vLLM deserialization vulnerability leading to DoS and potential RCE
High
CVE-2025-62164
was published
for
vllm
(pip)
Nov 20, 2025
ChakraCore RCE Vulnerability
High
CVE-2016-7200
was published
for
Microsoft.ChakraCore
(NuGet)
May 14, 2022
Denial of service in jackson-dataformat-toml
High
CVE-2023-3894
was published
for
com.fasterxml.jackson.dataformat:jackson-dataformat-toml
(Maven)
Aug 8, 2023
Uncontrolled Recursion in Akka HTTP
High
CVE-2021-42697
was published
for
com.typesafe.akka:aakka-http-core_2.13.0-M3
(Maven)
May 24, 2022
protobuf-java has potential Denial of Service issue
High
CVE-2024-7254
was published
for
com.google.protobuf:protobuf-java
(RubyGems)
Sep 19, 2024
Out-of-bounds Write in Chakra
High
CVE-2020-17131
was published
for
Microsoft.ChakraCore
(NuGet)
Apr 13, 2021
protobuf susceptible to buffer overflow
High
CVE-2015-5237
was published
for
Google.Protobuf
(Composer)
May 13, 2022
libwebp: OOB write in BuildHuffmanTable
High
CVE-2023-4863
was published
for
Pillow
(Go)
Sep 12, 2023
Wasmi Out-of-bounds Write for host to Wasm calls with more than 128 Parameters
High
CVE-2024-28123
was published
for
wasmi
(Rust)
Mar 7, 2024
Chakra Scripting Engine RCE via Out-of-bounds write
High
CVE-2019-1052
was published
for
Microsoft.ChakraCore
(NuGet)
May 24, 2022
Chakra Scripting Engine RCE via Out-of-bounds write
High
CVE-2019-1051
was published
for
Microsoft.ChakraCore
(NuGet)
May 24, 2022
Chakra Scripting Engine RCE Vulnerability
High
CVE-2019-1024
was published
for
Microsoft.ChakraCore
(NuGet)
May 24, 2022
Chakra Scripting Engine Out-of-bounds write
High
CVE-2019-1003
was published
for
Microsoft.ChakraCore
(NuGet)
Mar 29, 2021
ChakraCore RCE via Out-of-bounds write
High
CVE-2019-1002
was published
for
Microsoft.ChakraCore
(NuGet)
May 24, 2022
Chakra Scripting Engine Out-of-bounds write
High
CVE-2019-0993
was published
for
Microsoft.ChakraCore
(NuGet)
Mar 29, 2021
Chakra Scripting Engine Out-of-bounds write
High
CVE-2019-0992
was published
for
Microsoft.ChakraCore
(NuGet)
Mar 29, 2021
Chakra Scripting Engine Out-of-bounds write
High
CVE-2019-0991
was published
for
Microsoft.ChakraCore
(NuGet)
Mar 29, 2021
Chakra Scripting Engine Memory Corruption Vulnerability
High
CVE-2019-0989
was published
for
Microsoft.ChakraCore
(NuGet)
Mar 29, 2021
LIEF heap buffer overflow in the LIEF::MachO::BinaryParser::parse_dyldinfo_generic_bind
High
CVE-2022-43171
was published
for
lief
(pip)
Nov 18, 2022
Out-of-bounds Write in SixLabors ImageSharp
High
CVE-2025-27598
was published
for
SixLabors.ImageSharp
(NuGet)
Mar 6, 2025
htmlcleaner vulnerable to stack exhaustion
High
CVE-2023-34624
was published
for
net.sourceforge.htmlcleaner:htmlcleaner
(Maven)
Jun 14, 2023
jsonij vulnerable to stack exhaustion
High
CVE-2023-34614
was published
for
cc.plural:jsonij
(Maven)
Jun 14, 2023
sojo vulnerable to stack exhaustion
High
CVE-2023-34613
was published
for
net.sf.sojo:sojo
(Maven)
Jun 14, 2023
ProTip!
Advisories are also available from the
GraphQL API