GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,894
Erlang
38
GitHub Actions
38
Go
2,556
Maven
5,000+
npm
4,226
NuGet
746
pip
4,000
Pub
12
RubyGems
953
Rust
1,041
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
273,437 advisories
Filter by severity
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose...
High
Unreviewed
CVE-2025-59235
was published
Oct 14, 2025
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-59224
was published
Oct 14, 2025
Use of uninitialized resource in Windows Management Services allows an authorized attacker to...
Moderate
Unreviewed
CVE-2025-59204
was published
Oct 14, 2025
Improper access control in Software Protection Platform (SPP) allows an authorized attacker to...
High
Unreviewed
CVE-2025-59199
was published
Oct 14, 2025
Concurrent execution using shared resource with improper synchronization ('race condition') in...
High
Unreviewed
CVE-2025-59195
was published
Oct 14, 2025
Concurrent execution using shared resource with improper synchronization ('race condition') in...
High
Unreviewed
CVE-2025-59196
was published
Oct 14, 2025
Concurrent execution using shared resource with improper synchronization ('race condition') in...
High
Unreviewed
CVE-2025-59205
was published
Oct 14, 2025
Use after free in Windows Remote Desktop Services allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-59202
was published
Oct 14, 2025
Concurrent execution using shared resource with improper synchronization ('race condition') in...
High
Unreviewed
CVE-2025-59200
was published
Oct 14, 2025
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2025-59210
was published
Oct 14, 2025
Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core...
Moderate
Unreviewed
CVE-2025-59211
was published
Oct 14, 2025
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2025-59206
was published
Oct 14, 2025
Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core...
Moderate
Unreviewed
CVE-2025-59209
was published
Oct 14, 2025
Insertion of sensitive information into log file in Windows ETL Channel allows an authorized...
Moderate
Unreviewed
CVE-2025-59197
was published
Oct 14, 2025
Insertion of sensitive information into log file in Windows StateRepository API allows an...
Moderate
Unreviewed
CVE-2025-59203
was published
Oct 14, 2025
Improper access control in Network Connection Status Indicator (NCSI) allows an authorized...
High
Unreviewed
CVE-2025-59201
was published
Oct 14, 2025
Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-59207
was published
Oct 14, 2025
Improper input validation in Microsoft Windows Search Component allows an authorized attacker to...
Moderate
Unreviewed
CVE-2025-59198
was published
Oct 14, 2025
Out-of-bounds read in Windows MapUrlToZone allows an unauthorized attacker to disclose...
High
Unreviewed
CVE-2025-59208
was published
Oct 14, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-59222
was published
Oct 14, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-59221
was published
Oct 14, 2025
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-59223
was published
Oct 14, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-59227
was published
Oct 14, 2025
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-59225
was published
Oct 14, 2025
Improper input validation in Microsoft Office SharePoint allows an authorized attacker to execute...
High
Unreviewed
CVE-2025-59228
was published
Oct 14, 2025
ProTip!
Advisories are also available from the
GraphQL API