GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,521
Maven
5,000+
npm
5,000+
NuGet
1,103
pip
5,000+
Pub
13
RubyGems
1,145
Rust
1,514
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
60 advisories
Filter by severity
Integer overflow in the UEFI firmware for the Intel(R) Slim Bootloader may allow an information...
Low
Unreviewed
CVE-2026-28729
was published
Aug 11, 2026
Integer overflow in GPU in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who...
Low
Unreviewed
CVE-2026-19167
was published
Aug 7, 2026
diff3 tool from GNU diffutils is vulnerable to a heap‑based buffer overflow due to multiple...
Low
Unreviewed
CVE-2026-53910
was published
Jul 22, 2026
A signed integer overflow vulnerability was found in libarchive's ZIP writer. In the...
Low
Unreviewed
CVE-2026-16517
was published
Jul 22, 2026
Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may...
Low
Unreviewed
CVE-2026-40468
was published
Jul 13, 2026
NewNTUnicodeString does not check for string length overflow. When provided with a string that...
Low
Unreviewed
CVE-2026-39824
was published
May 26, 2026
ImageMagick: Division by Zero in binomial kernel
Low
GHSA-vf33-6r7x-66xx
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
May 21, 2026
in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.
Low
Unreviewed
CVE-2026-27781
was published
May 19, 2026
A compromised Trusted OS (TOS) driver could issue a malformed call that could potentially allow ...
Low
Unreviewed
CVE-2021-26380
was published
May 15, 2026
bettercap Has an Integer Coercion Error in the ippReadChunkedBody Function
Low
CVE-2026-8275
was published
for
github.com/bettercap/bettercap/v2
(Go)
May 11, 2026
MediaMTX affected by CVE-2026-27143 due to vulnerable dependency
Low
GHSA-2ccx-cjjh-r2j8
was published
for
github.com/bluenviron/mediamtx
(Go)
May 6, 2026
A client might theoretically be able to cause a mismatch between queries sent to a backend and...
Low
Unreviewed
CVE-2026-33596
was published
Apr 22, 2026
A flaw was found in GIMP's PSP (Paint Shop Pro) file parser. A remote attacker could exploit an...
Low
Unreviewed
CVE-2026-2271
was published
Mar 26, 2026
ImageMagick: Integer Overflow in PSB (PSD v2) RLE decoding path causes heap Out of Bounds reads for 32-bit builds
Low
CVE-2026-25984
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Feb 25, 2026
A flaw was found in glib. Missing validation of offset and count parameters in the...
Low
Unreviewed
CVE-2026-0988
was published
Jan 21, 2026
Malwarebytes 1.0.14 for Linux doesn't properly compute signatures in some scenarios. This allows...
Low
Unreviewed
CVE-2023-29144
was published
Dec 12, 2025
An integer overflow in the SMU could allow a privileged attacker to potentially write memory...
Low
Unreviewed
CVE-2023-31365
was published
Sep 6, 2025
Failure to validate the address and size in TEE (Trusted Execution Environment) may allow a...
Low
Unreviewed
CVE-2021-46750
was published
Sep 6, 2025
Integer overflow or wraparound in the Linux kernel-mode driver for some Intel(R) 800 Series...
Low
Unreviewed
CVE-2025-24324
was published
Aug 12, 2025
Duplicate Advisory: CosmWasm affected by arithmetic overflows
Low
GHSA-rm83-pxjx-pr5j
was published
for
cosmwasm-std
(Rust)
Jul 27, 2025
•
withdrawn
An integer overflow in the image processing binary of the MIB3 infotainment unit allows an...
Low
Unreviewed
CVE-2023-28903
was published
Jun 28, 2025
A flaw was found in how GLib’s GString manages memory when adding data to strings. If a string is...
Low
Unreviewed
CVE-2025-6052
was published
Jun 13, 2025
A vulnerability has been identified in the libarchive library, specifically within the...
Low
Unreviewed
CVE-2025-5914
was published
Jun 9, 2025
A vulnerability has been identified in the libarchive library. This flaw involves an integer...
Low
Unreviewed
CVE-2025-5916
was published
Jun 9, 2025
A flaw was found in the cookie parsing logic of the libsoup HTTP library, used in GNOME...
Low
Unreviewed
CVE-2025-4945
was published
May 19, 2025
ProTip!
Advisories are also available from the
GraphQL API