GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
49
Go
3,479
Maven
5,000+
npm
5,000+
NuGet
886
pip
4,740
Pub
13
RubyGems
1,031
Rust
1,225
Swift
53
Unreviewed advisories
All unreviewed
5,000+
243 advisories
Filter by severity
An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding...
Moderate
Unreviewed
CVE-2026-33774
was published
Apr 10, 2026
An Improper Check for Unusual or Exceptional Conditions vulnerability in the chassis control...
Moderate
Unreviewed
CVE-2026-33786
was published
Apr 10, 2026
An Improper Check for Unusual or Exceptional Conditions vulnerability in the chassis control...
Moderate
Unreviewed
CVE-2026-33787
was published
Apr 10, 2026
Cosign's verify-blob-attestation reports false positive when payload parsing fails
Moderate
CVE-2026-39395
was published
for
github.com/sigstore/cosign
(Go)
Apr 8, 2026
Mattermost: Authenticated DoS through failure to prevent rendering of external SVGs on link embeds
Moderate
CVE-2026-20719
was published
for
github.com/mattermost/mattermost/server/v8
(Go)
Mar 25, 2026
A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on macOS allows...
Moderate
Unreviewed
CVE-2026-0230
was published
Mar 11, 2026
A denial-of-service (DoS) vulnerability in the Advanced DNS Security (ADNS) feature of Palo Alto...
Moderate
Unreviewed
CVE-2026-0229
was published
Feb 11, 2026
Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device...
Moderate
Unreviewed
CVE-2025-32735
was published
Feb 10, 2026
Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device...
Moderate
Unreviewed
CVE-2025-35992
was published
Feb 10, 2026
Improper conditions check for the Intel(R) Optane(TM) PMem management software before versions...
Moderate
Unreviewed
CVE-2025-20070
was published
Feb 10, 2026
Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal Group invite allows...
Moderate
Unreviewed
CVE-2026-0944
was published
Feb 4, 2026
Improper handling of exceptional conditions in VX800v v1.0 in SIP processing allows an attacker...
Moderate
Unreviewed
CVE-2025-15542
was published
Jan 29, 2026
Issue summary: An invalid or NULL pointer dereference can happen in
an application processing a...
Moderate
Unreviewed
CVE-2026-22795
was published
Jan 27, 2026
Issue summary: A type confusion vulnerability exists in the signature
verification of signed PKCS...
Moderate
Unreviewed
CVE-2026-22796
was published
Jan 27, 2026
A vulnerability in the Pix-Link LV-WR21Q router's language module allows remote attackers to...
Moderate
Unreviewed
CVE-2025-12387
was published
Jan 27, 2026
go-tuf affected by client DoS via malformed server response
Moderate
CVE-2026-23991
was published
for
github.com/theupdateframework/go-tuf/v2
(Go)
Jan 21, 2026
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Juniper DHCP service...
Moderate
Unreviewed
CVE-2025-59960
was published
Jan 15, 2026
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol...
Moderate
Unreviewed
CVE-2025-60011
was published
Jan 15, 2026
A vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to...
Moderate
Unreviewed
CVE-2026-0227
was published
Jan 15, 2026
CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper check for unusual or...
Moderate
Unreviewed
CVE-2025-66357
was published
Dec 16, 2025
An Improper Check for Unusual or Exceptional Conditions vulnerability in OpenSMTPD allows local...
Moderate
Unreviewed
CVE-2025-62875
was published
Nov 20, 2025
A denial-of-service (DoS) vulnerability in Palo Alto Networks PAN-OS software enables an...
Moderate
Unreviewed
CVE-2025-4619
was published
Nov 13, 2025
Improper conditions check for some Intel(R) QAT Windows software before version 2.6.0. within...
Moderate
Unreviewed
CVE-2025-32088
was published
Nov 11, 2025
The KMIP response parser built into mongo binaries is overly tolerant of certain malformed...
Moderate
Unreviewed
CVE-2025-12657
was published
Nov 3, 2025
InventoryGui affected by item duplication in GUIs which use GuiStorageElement
Moderate
CVE-2025-62783
was published
for
de.themoep:inventorygui
(Maven)
Oct 27, 2025
ProTip!
Advisories are also available from the
GraphQL API