GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,440 advisories
Filter by severity
A flaw was found in WebKitGTK and WPE WebKit. This vulnerability allows an out-of-bounds read and...
High
Unreviewed
CVE-2025-13502
was published
Nov 25, 2025
An integer overflow in the case of failed ACME certificate renewal leads, after a number of...
High
Unreviewed
CVE-2025-55753
was published
Dec 5, 2025
A flaw was identified in the X.Org X server’s X Keyboard (Xkb) extension where improper bounds...
High
Unreviewed
CVE-2025-62231
was published
Oct 30, 2025
The snmp_pdu_parse function in snmp_api.c in net-snmp 5.7.2 and earlier does not remove the...
High
Unreviewed
CVE-2015-5621
was published
May 14, 2022
An integer overflow in xmlmemory.c in libxml2 before 2.9.5, as used in Google Chrome prior to 62...
High
Unreviewed
CVE-2017-5130
was published
May 13, 2022
A crafted NTFS image can cause an integer overflow in memmove, leading to a heap-based buffer...
High
Unreviewed
CVE-2021-39254
was published
May 24, 2022
KissFFT versions prior to the fix commit 1b083165 contain an integer overflow in kiss_fft_alloc()...
High
Unreviewed
CVE-2025-34297
was published
Dec 1, 2025
A heap-based buffer overflow problem was found in glib through an incorrect calculation of buffer...
High
Unreviewed
CVE-2025-13601
was published
Nov 26, 2025
An integer overflow can occur during conversion of text to some Unicode character sets due to an...
High
Unreviewed
CVE-2018-5144
was published
May 14, 2022
Improper input validation within the XOCL driver may allow a local attacker to generate an...
High
Unreviewed
CVE-2025-0005
was published
Nov 24, 2025
Improper input validation within the XOCL driver may allow a local attacker to generate an...
High
Unreviewed
CVE-2025-52538
was published
Nov 24, 2025
Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x...
High
Unreviewed
CVE-2013-2729
was published
May 17, 2022
An issue in `coap_pdu.c` in libcoap 4.3.4 allows attackers to cause undefined behavior via a...
High
Unreviewed
CVE-2024-31031
was published
Apr 17, 2024
Unlimited memory allocation in redis protocol parser in Apache bRPC (all versions < 1.14.1) on...
High
Unreviewed
CVE-2025-54472
was published
Aug 14, 2025
GStreamer MXF File Parsing Integer Overflow Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2023-40474
was published
May 3, 2024
GStreamer FLAC File Parsing Integer Overflow Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2023-37327
was published
May 3, 2024
Integer Overflow vulnerability in Mbed TLS 2.x before 2.28.7 and 3.x before 3.5.2, allows...
High
Unreviewed
CVE-2024-23775
was published
Jan 31, 2024
Multiple integer overflow vulnerabilities exist in the VZT facgeometry parsing functionality of...
High
Unreviewed
CVE-2023-38623
was published
Jan 8, 2024
Multiple integer overflow vulnerabilities exist in the LXT2 num_dict_entries functionality of...
High
Unreviewed
CVE-2023-39317
was published
Jan 8, 2024
An integer overflow vulnerability exists in the fstReaderIterBlocks2 time_table tsec_nitems...
High
Unreviewed
CVE-2023-35128
was published
Jan 8, 2024
Multiple integer overflow vulnerabilities exist in the VZT vzt_rd_block_vch_decode times parsing...
High
Unreviewed
CVE-2023-38651
was published
Jan 8, 2024
Multiple integer overflow vulnerabilities exist in the VZT vzt_rd_block_vch_decode times parsing...
High
Unreviewed
CVE-2023-38650
was published
Jan 8, 2024
Multiple integer overflow vulnerabilities exist in the VZT facgeometry parsing functionality of...
High
Unreviewed
CVE-2023-38619
was published
Jan 8, 2024
Multiple integer overflow vulnerabilities exist in the LXT2 num_dict_entries functionality of...
High
Unreviewed
CVE-2023-39316
was published
Jan 8, 2024
Multiple integer overflow vulnerabilities exist in the VZT facgeometry parsing functionality of...
High
Unreviewed
CVE-2023-38620
was published
Jan 8, 2024
ProTip!
Advisories are also available from the
GraphQL API