GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,455
Maven
5,000+
npm
5,000+
NuGet
1,090
pip
5,000+
Pub
13
RubyGems
1,135
Rust
1,509
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
96 advisories
Filter by severity
zebrad has persistent on-disk corruption of Sapling/Orchard subtree roots after chain fork via pop_tip
Moderate
CVE-2026-52733
was published
for
zebra-state
(Rust)
Jul 2, 2026
Multer vulnerable to Denial of Service via incomplete cleanup of aborted uploads
Moderate
CVE-2026-5038
was published
for
multer
(npm)
Jun 17, 2026
Capgo before 12.128.2 fails to delete previously uploaded profile images from backend storage...
Moderate
Unreviewed
CVE-2026-53867
was published
Jun 13, 2026
Improper cleanup of shared register resources in GPU firmware could allow an admin-privileged...
Moderate
Unreviewed
CVE-2026-0427
was published
May 15, 2026
In the Linux kernel, the following vulnerability has been resolved:
drm/xe/sync: Cleanup...
Moderate
Unreviewed
CVE-2026-43395
was published
May 8, 2026
nesquena hermes-webui contains an environment variable leakage vulnerability where profile...
Moderate
Unreviewed
CVE-2026-6830
was published
Apr 22, 2026
webtransport-go: Memory Exhaustion Attack due to Missing Cleanup of Streams Map
Moderate
CVE-2026-21438
was published
for
github.com/quic-go/webtransport-go
(Go)
Feb 12, 2026
Tanium addressed an uncontrolled resource consumption vulnerability in Connect.
Moderate
Unreviewed
CVE-2025-15331
was published
Feb 5, 2026
Babylon Incorrect FP inactive accounting in costaking creates “phantom stake” that earns rewards after BTC unbond
Moderate
GHSA-4rmq-mc2c-r495
was published
for
github.com/babylonlabs-io/babylon
(Go)
Dec 9, 2025
A bug within some AMD CPUs could allow a local admin-privileged attacker to run a SEV-SNP guest...
Moderate
Unreviewed
CVE-2025-29934
was published
Nov 21, 2025
A vulnerability in the Day One setup process of Cisco IOS XE Software for Catalyst 9800 Series...
Moderate
Unreviewed
CVE-2025-20293
was published
Sep 24, 2025
CMSEasy v7.7.8.0 and before is vulnerable to Arbitrary file deletion in database_admin.php.
Moderate
Unreviewed
CVE-2025-55910
was published
Sep 22, 2025
In the Linux kernel, the following vulnerability has been resolved:
sch_hfsc: make...
Moderate
Unreviewed
CVE-2025-38177
was published
Jul 4, 2025
Apache Tomcat Denial of Service via invalid HTTP priority header
Moderate
CVE-2025-31650
was published
for
org.apache.tomcat.embed:tomcat-embed-core
(Maven)
Apr 28, 2025
A denial of service vulnerability exists in the NetX Component HTTP server functionality of...
Moderate
Unreviewed
CVE-2024-50385
was published
Apr 2, 2025
A denial of service vulnerability exists in the NetX Component HTTP server functionality of...
Moderate
Unreviewed
CVE-2024-50384
was published
Apr 2, 2025
In the Linux kernel, the following vulnerability has been resolved:
net: hns3: make sure ptp...
Moderate
Unreviewed
CVE-2025-21924
was published
Apr 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
nvmem: core: fix cleanup...
Moderate
Unreviewed
CVE-2023-52929
was published
Mar 27, 2025
Insufficient clearing of GPU global memory could allow a malicious process running on the same...
Moderate
Unreviewed
CVE-2024-36353
was published
Mar 2, 2025
In the Linux kernel, the following vulnerability has been resolved:
btrfs: do proper folio...
Moderate
Unreviewed
CVE-2024-57975
was published
Feb 27, 2025
In the Linux kernel, the following vulnerability has been resolved:
btrfs: do proper folio...
Moderate
Unreviewed
CVE-2024-57976
was published
Feb 27, 2025
NVIDIA Unified Memory driver for Linux contains a vulnerability where an attacker could leak...
Moderate
Unreviewed
CVE-2024-53869
was published
Jan 28, 2025
NVIDIA vGPU software contains a vulnerability in the host driver, where it can allow a guest to...
Moderate
Unreviewed
CVE-2024-53881
was published
Jan 28, 2025
Vulnerability in the PMB platform that allows an attacker to persist temporary files on the...
Moderate
Unreviewed
CVE-2025-0473
was published
Jan 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
afs: Fix server->active leak...
Moderate
Unreviewed
CVE-2022-49012
was published
Oct 21, 2024
ProTip!
Advisories are also available from the
GraphQL API