GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
46
GitHub Actions
47
Go
3,340
Maven
5,000+
npm
5,000+
NuGet
881
pip
4,549
Pub
12
RubyGems
1,012
Rust
1,202
Swift
51
Unreviewed advisories
All unreviewed
5,000+
1,500 advisories
Filter by severity
The Eclipse Jetty Server Artifact has a Gzip request memory leak
High
CVE-2026-1605
was published
for
org.eclipse.jetty:jetty-server
(Maven)
Mar 5, 2026
A vulnerability in the OSPF protocol of Cisco Secure Firewall Adaptive Security Appliance (ASA)...
Moderate
Unreviewed
CVE-2026-20021
was published
Mar 4, 2026
Buffer Overflow vulnerability in libpng 1.6.43-1.6.46 allows a local attacker to cause a denial...
Moderate
Unreviewed
CVE-2025-28164
was published
Jan 27, 2026
A vulnerability in the Remote Access SSL VPN functionality of Cisco Secure Firewall Adaptive...
High
Unreviewed
CVE-2026-20105
was published
Mar 4, 2026
A vulnerability in the Remote Access SSL VPN, HTTP management and MUS functionality, of Cisco...
Moderate
Unreviewed
CVE-2026-20106
was published
Mar 4, 2026
A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD...
Moderate
Unreviewed
CVE-2026-20015
was published
Mar 4, 2026
A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD...
High
Unreviewed
CVE-2026-20014
was published
Mar 4, 2026
A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD...
Moderate
Unreviewed
CVE-2026-20013
was published
Mar 4, 2026
In the Linux kernel, the following vulnerability has been resolved:
net: fix memory leak in...
Moderate
Unreviewed
CVE-2026-22979
was published
Jan 23, 2026
In the Linux kernel, the following vulnerability has been resolved:
net: usb: rtl8150: fix...
Moderate
Unreviewed
CVE-2025-71154
was published
Jan 23, 2026
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_conncount: fix...
Moderate
Unreviewed
CVE-2025-71146
was published
Jan 23, 2026
In the Linux kernel, the following vulnerability has been resolved:
KEYS: trusted: Fix a memory...
Moderate
Unreviewed
CVE-2025-71147
was published
Jan 23, 2026
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: Fix memory leak in...
Moderate
Unreviewed
CVE-2025-71153
was published
Jan 23, 2026
In the Linux kernel, the following vulnerability has been resolved:
cifs: Fix memory and...
Moderate
Unreviewed
CVE-2025-71151
was published
Jan 23, 2026
In the Linux kernel, the following vulnerability has been resolved:
dmaengine: idxd: fix device...
Moderate
Unreviewed
CVE-2025-71163
was published
Jan 25, 2026
ImageMagick: Memory Leak in multiple coders that write raw pixel data
Low
GHSA-wfx3-6g53-9fgc
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Feb 25, 2026
ImageMagick: Memory leak in coders/txt.c without freetype
Low
GHSA-3q5f-gmjc-38r8
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Feb 25, 2026
ImageMagick: MSL image stack index may fail to refresh, leading to leaked images
Moderate
CVE-2026-25988
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Feb 24, 2026
Image Magick has a Memory Leak in coders/ashlar.c
Moderate
CVE-2026-25969
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Feb 24, 2026
ImageMagick has memory leak of watermark Image object in ReadSTEGANOImage on multiple error/early-return paths
Moderate
CVE-2026-25796
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Feb 24, 2026
ImageMagick has memory leak in msl encoder
Moderate
CVE-2026-25638
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Feb 24, 2026
ImageMagick: Possible memory leak in ASHLAR encoder
Moderate
CVE-2026-25637
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Feb 24, 2026
saitoha libsixel until v1.8.7 was discovered to contain a memory leak via the component...
Moderate
Unreviewed
CVE-2025-61146
was published
Feb 23, 2026
In the Linux kernel, the following vulnerability has been resolved:
clk: mediatek: fix of_iomap...
Moderate
Unreviewed
CVE-2023-53424
was published
Sep 18, 2025
webtransport-go: Memory Exhaustion Attack due to Missing Cleanup of Streams Map
Moderate
CVE-2026-21438
was published
for
github.com/quic-go/webtransport-go
(Go)
Feb 12, 2026
ProTip!
Advisories are also available from the
GraphQL API