GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
55
GitHub Actions
50
Go
3,732
Maven
5,000+
npm
5,000+
NuGet
935
pip
4,952
Pub
13
RubyGems
1,055
Rust
1,343
Swift
54
Unreviewed advisories
All unreviewed
5,000+
416 advisories
Filter by severity
CVE-2026-33452 is a buffer overflow vulnerability in the Secure Access
Windows client prior to...
Moderate
Unreviewed
CVE-2026-33452
was published
Apr 30, 2026
CVE-2026-40949 is a buffer overflow vulnerability in the Secure Access
Windows client prior to...
Moderate
Unreviewed
CVE-2026-40949
was published
Apr 30, 2026
ZigBee protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of...
Moderate
Unreviewed
CVE-2026-6537
was published
Apr 30, 2026
BEEP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of...
Moderate
Unreviewed
CVE-2026-6538
was published
Apr 30, 2026
AMR-NB codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Moderate
Unreviewed
CVE-2026-5654
was published
Apr 30, 2026
HTTP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of...
Moderate
Unreviewed
CVE-2026-6868
was published
Apr 30, 2026
A post-authentication Stack-based Buffer Overflow vulnerabilities in SonicOS allows a remote...
Moderate
Unreviewed
CVE-2026-0206
was published
Apr 29, 2026
Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2025 release version 8.3.1.0...
Moderate
Unreviewed
CVE-2026-26951
was published
Apr 20, 2026
ImageMagick has has a stack-buffer-overflow in MNG encoder with oversized pallete
Moderate
GHSA-98cp-rj9f-6v5g
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Apr 14, 2026
The "profiling.sampling" module (Python 3.15+) and "asyncio introspection capabilities" (3.14+, ...
Moderate
Unreviewed
CVE-2026-5713
was published
Apr 14, 2026
A stack overflow in the experimental/tinyobj_loader_opt.h file of tinyobjloader commit d56555b...
Moderate
Unreviewed
CVE-2026-29628
was published
Apr 13, 2026
A stack-based buffer overflow vulnerability exists in Notepad++ version 8.9.3 in the file drop...
Moderate
Unreviewed
CVE-2026-5525
was published
Apr 10, 2026
A stack buffer overflow exists in wolfSSL's PKCS7 implementation in the wc_PKCS7_DecryptOri()...
Moderate
Unreviewed
CVE-2026-5295
was published
Apr 10, 2026
Stack-based buffer overflow vulnerability in Softing Industrial Automation GmbH gateways allows...
Moderate
Unreviewed
CVE-2023-7339
was published
Mar 27, 2026
ImageMagick has an Out-of-bounds Write via InterpretImageFilename
Moderate
CVE-2026-33536
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 26, 2026
A remote attacker with user privileges for the webUI can use the setting of the TFTP Filename...
Moderate
Unreviewed
CVE-2026-22316
was published
Mar 18, 2026
A stack-based buffer overflow in the device's file installation workflow allows a high-privileged...
Moderate
Unreviewed
CVE-2026-22319
was published
Mar 18, 2026
A stack-based buffer overflow in the CLI's TFTP file‑transfer command handling allows a low...
Moderate
Unreviewed
CVE-2026-22320
was published
Mar 18, 2026
A stack-based buffer overflow vulnerability in the device's file transfer parameter workflow...
Moderate
Unreviewed
CVE-2026-22318
was published
Mar 18, 2026
A stack-based buffer overflow in the device's Telnet/SSH CLI login routine occurs when a...
Moderate
Unreviewed
CVE-2026-22321
was published
Mar 18, 2026
ImageMagick has stack write buffer overflow in MNG encoder
Moderate
CVE-2026-28690
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 12, 2026
A stack-based buffer overflow vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.3, FortiWeb 7...
Moderate
Unreviewed
CVE-2026-30897
was published
Mar 10, 2026
A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiWeb 8.0.0...
Moderate
Unreviewed
CVE-2026-24640
was published
Mar 10, 2026
A post-authentication Stack-based Buffer Overflow vulnerability in SonicOS certificate handling...
Moderate
Unreviewed
CVE-2026-3439
was published
Mar 4, 2026
Golioth Firmware SDK version 0.10.0 prior to 0.22.0, fixed in commit 48f521b, contain a stack...
Moderate
Unreviewed
CVE-2026-23747
was published
Feb 26, 2026
ProTip!
Advisories are also available from the
GraphQL API