GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
42
GitHub Actions
43
Go
3,153
Maven
5,000+
npm
5,000+
NuGet
861
pip
4,451
Pub
12
RubyGems
991
Rust
1,179
Swift
50
Unreviewed advisories
All unreviewed
5,000+
458 advisories
Filter by severity
Improper Validation of Array Index (CWE-129) in the PostgreSQL protocol parser in Packetbeat can...
Moderate
Unreviewed
CVE-2026-26932
was published
Feb 26, 2026
Fiber has a Denial of Service Vulnerability via Route Parameter Overflow
Moderate
CVE-2026-25882
was published
for
github.com/gofiber/fiber/v2
(Go)
Feb 24, 2026
Improper input validation within RAS TA Driver can allow a local attacker to access out-of-bounds...
Moderate
Unreviewed
CVE-2023-20601
was published
Feb 12, 2026
Missing validation of multibyte character length in PostgreSQL text manipulation allows a...
High
Unreviewed
CVE-2026-2006
was published
Feb 12, 2026
cert-manager-controller DoS via Specially Crafted DNS Response
Moderate
CVE-2026-25518
was published
for
github.com/cert-manager/cert-manager
(Go)
Feb 2, 2026
alsa-lib versions 1.2.2 up to and including 1.2.15.2, prior to commit 5f7fe33, contain a heap...
Moderate
Unreviewed
CVE-2026-25068
was published
Jan 29, 2026
Improper Validation of Array Index (CWE-129) in Packetbeat’s MongoDB protocol parser can allow an...
Moderate
Unreviewed
CVE-2026-0529
was published
Jan 14, 2026
Metricbeat affected by multiple denial of service vulnerabilities
Moderate
CVE-2026-0528
was published
for
github.com/elastic/beats/v7
(Go)
Jan 13, 2026
Memory corruption when accessing resources in kernel driver.
High
Unreviewed
CVE-2025-47393
was published
Jan 7, 2026
FontForge SFD File Parsing Improper Validation of Array Index Remote Code Execution Vulnerability...
High
Unreviewed
CVE-2025-15270
was published
Dec 31, 2025
FontForge SFD File Parsing Improper Validation of Array Index Remote Code Execution Vulnerability...
High
Unreviewed
CVE-2025-15271
was published
Dec 31, 2025
The free5GC UPF suffers from a lack of bounds checking on the SEID when processing PFCP Session...
High
Unreviewed
CVE-2025-65562
was published
Dec 18, 2025
A weakness in Automated Logic and Carrier i-Vu Gen5 router on driver
version drv_gen5_106-01...
High
Unreviewed
CVE-2025-0657
was published
Nov 27, 2025
Array index error in tls_verify_call_back() in src/coap_openssl.c in OISM libcoap 4.3.5 allows...
Moderate
Unreviewed
CVE-2025-65499
was published
Nov 24, 2025
vLLM vulnerable to DoS with incorrect shape of multimodal embedding inputs
High
CVE-2025-62372
was published
for
vllm
(pip)
Nov 20, 2025
A malicious client acting as the receiver of an rsync file transfer can trigger an out of bounds...
Moderate
Unreviewed
CVE-2025-10158
was published
Nov 18, 2025
Memory corruption when triggering a subsystem crash with an out-of-range identifier.
High
Unreviewed
CVE-2025-47361
was published
Nov 4, 2025
Memory corruption while processing audio streaming operations.
High
Unreviewed
CVE-2025-47352
was published
Nov 4, 2025
In the Linux kernel, the following vulnerability has been resolved:
fs: jfs: Fix UBSAN: array...
High
Unreviewed
CVE-2023-53485
was published
Oct 1, 2025
Memory corruption while selecting the PLMN from SOR failed list.
Critical
Unreviewed
CVE-2025-27034
was published
Sep 24, 2025
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm where a user may cause...
Low
Unreviewed
CVE-2025-23338
was published
Sep 24, 2025
In the Linux kernel, the following vulnerability has been resolved:
f2fs: fix to do sanity check...
High
Unreviewed
CVE-2022-49170
was published
Sep 23, 2025
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: Add...
High
Unreviewed
CVE-2023-53395
was published
Sep 18, 2025
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Collect command...
High
Unreviewed
CVE-2023-53340
was published
Sep 17, 2025
In the Linux kernel, the following vulnerability has been resolved:
KVM: x86: use...
High
Unreviewed
CVE-2025-39823
was published
Sep 16, 2025
ProTip!
Advisories are also available from the
GraphQL API