GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
                  
                    
                      
                      All reviewed
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      Composer
                    
                    
                      4,968
                    
                  
                  
                    
                      
                      Erlang
                    
                    
                      39
                    
                  
                  
                    
                      
                      GitHub Actions
                    
                    
                      38
                    
                  
                  
                    
                      
                      Go
                    
                    
                      2,616
                    
                  
                  
                    
                      
                      Maven
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      npm
                    
                    
                      4,255
                    
                  
                  
                    
                      
                      NuGet
                    
                    
                      760
                    
                  
                  
                    
                      
                      pip
                    
                    
                      4,040
                    
                  
                  
                    
                      
                      Pub
                    
                    
                      12
                    
                  
                  
                    
                      
                      RubyGems
                    
                    
                      953
                    
                  
                  
                    
                      
                      Rust
                    
                    
                      1,050
                    
                  
                  
                    
                      
                      Swift
                    
                    
                      45
                    
                  
                  Unreviewed advisories
                  
                    
                      
                      All unreviewed
                    
                    
                      5,000+
                    
                  
            2,455 advisories
        Filter by severity
        
      
      
    
                    
                      Integer overflow in V8 in Google Chrome prior to 137.0.7151.119 allowed a remote attacker to...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-6191
                      
                      was published
                      Jun 18, 2025 
                    
                  
                    
                      A flaw was found in libgepub, a library used to read EPUB files. The software mishandles file...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-6196
                      
                      was published
                      Jun 17, 2025 
                    
                  
                    
                      A flaw was found in the X Record extension. The RecordSanityCheckRegisterClients function does...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-49179
                      
                      was published
                      Jun 17, 2025 
                    
                  
                    
                      A flaw was found in the RandR extension, where the RRChangeProviderProperty function does not...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-49180
                      
                      was published
                      Jun 17, 2025 
                    
                  
                    
                      A flaw was found in the Big Requests extension. The request length is multiplied by 4 before...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-49176
                      
                      was published
                      Jun 17, 2025 
                    
                  
                    
                      A flaw was found in how GLib’s GString manages memory when adding data to strings. If a string is...
                    
                      
  Low
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-6052
                      
                      was published
                      Jun 13, 2025 
                    
                  
                    
                      A flaw was found in GIMP. An integer overflow vulnerability exists in the GIMP "Despeckle"  plug...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-6035
                      
                      was published
                      Jun 13, 2025 
                    
                  
                    
                      An integer overflow was present in `OrderedHashTable` used by the JavaScript engine This...
                    
                      
  Critical
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-49710
                      
                      was published
                      Jun 11, 2025 
                    
                  
                    
                      InCopy versions 20.2, 19.5.3 and earlier are affected by an Integer Overflow or Wraparound...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-30327
                      
                      was published
                      Jun 10, 2025 
                    
                  
                    
                      A vulnerability has been identified in the libarchive library. This flaw involves an integer...
                    
                      
  Low
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-5916
                      
                      was published
                      Jun 9, 2025 
                    
                  
                    
                      A flaw exists in the nbdkit "blocksize" filter that can be triggered by a specific type of client...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-47712
                      
                      was published
                      Jun 9, 2025 
                    
                  
                    
                      GIMP ICO File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-5473
                      
                      was published
                      Jun 6, 2025 
                    
                  
                    
                      An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2024-52035
                      
                      was published
                      Jun 2, 2025 
                    
                  
                    
                      A low privileged attacker can set the date of the devices to the 19th of January 2038 an...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-1235
                      
                      was published
                      Jun 2, 2025 
                    
                  
                    
                      A integer overflow or wraparound in Fortinet FortiOS versions 7.2.0 through 7.2.7, versions 7.0.0...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-47294
                      
                      was published
                      May 28, 2025 
                    
                  
                    
                      A vulnerability was found in GNU PSPP 82fb509fb2fedd33e7ac0c46ca99e108bb3bdffb. It has been...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-5001
                      
                      was published
                      May 21, 2025 
                    
                  
                    
                      A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME...
                    
                      
  Low
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-4945
                      
                      was published
                      May 19, 2025 
                    
                  
                    
                      FCGI versions 0.44 through 0.82, for Perl, include a vulnerable version of the FastCGI fcgi2 (aka...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-40907
                      
                      was published
                      May 16, 2025 
                    
                  
                    
                      In libavif before 1.3.0, makeRoom in stream.c has an integer overflow and resultant buffer...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-48174
                      
                      was published
                      May 16, 2025 
                    
                  
                    
                      In libavif before 1.3.0, avifImageRGBToYUV in reformat.c has integer overflows in multiplications...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-48175
                      
                      was published
                      May 16, 2025 
                    
                  
                    
                      Babylon Integer Overflow in Distribution Module CumulativeRewardRatio Calculation Leading to Chain Halt
                    
                      
  High
                    
                
                      
                        GHSA-869w-47c6-fq8q
                      
                      was published
                        for
                        
                          github.com/babylonlabs-io/babylon
                        
                        (Go)
                      May 15, 2025 
                    
                  
                    
                      Bridge versions 15.0.3, 14.1.6 and earlier are affected by an Integer Overflow or Wraparound...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-43547
                      
                      was published
                      May 13, 2025 
                    
                  
                    
                      Animate versions 24.0.8, 23.0.11 and earlier are affected by an Integer Overflow or Wraparound...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-43556
                      
                      was published
                      May 13, 2025 
                    
                  
                    
                      Photoshop Desktop versions 26.5, 25.12.2 and earlier are affected by an Integer Overflow or...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-30325
                      
                      was published
                      May 13, 2025 
                    
                  
                    
                      An integer overflow was addressed with improved input validation. This issue is fixed in watchOS...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-31221
                      
                      was published
                      May 13, 2025 
                    
                  
        
        ProTip!
        Advisories are also available from the 
        GraphQL API