GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
41
Go
3,026
Maven
5,000+
npm
4,763
NuGet
824
pip
4,366
Pub
12
RubyGems
987
Rust
1,143
Swift
50
Unreviewed advisories
All unreviewed
5,000+
565 advisories
Filter by severity
Information disclosure due to uninitialized memory in Firefox and Firefox Focus for Android. This...
High
Unreviewed
CVE-2026-2794
was published
Feb 24, 2026
Uninitialized memory in the Graphics: Text component. This vulnerability affects Firefox < 148.
Critical
Unreviewed
CVE-2026-2806
was published
Feb 24, 2026
GIMP PGM File Parsing Uninitialized Memory Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2026-2044
was published
Feb 21, 2026
A specially-crafted file can cause libjxl's decoder to read pixel data from uninitialized (but...
Low
Unreviewed
CVE-2025-12474
was published
Feb 11, 2026
Calling wordexp with WRDE_REUSE in conjunction with WRDE_APPEND in the GNU C Library version 2.0...
High
Unreviewed
CVE-2025-15281
was published
Jan 20, 2026
Calling getnetbyaddr or getnetbyaddr_r with a configured nsswitch.conf that specifies the library...
High
Unreviewed
CVE-2026-0915
was published
Jan 16, 2026
Use of uninitialized resource in Dynamic Root of Trust for Measurement (DRTM) allows an...
Moderate
Unreviewed
CVE-2026-20962
was published
Jan 13, 2026
Panda3D versions up to and including 1.10.16 deploy-stub contains a denial of service...
Moderate
Unreviewed
CVE-2026-22188
was published
Jan 7, 2026
A vulnerability has been identified in Simcenter Femap (All versions < V2512). The affected...
High
Unreviewed
CVE-2025-40829
was published
Dec 12, 2025
A privilege escalation vulnerability exists in the ControlVault WBDI Driver WBIO_USH_ADD_RECORD...
High
Unreviewed
CVE-2025-31361
was published
Nov 18, 2025
A hard-coded password vulnerability exists in the ControlVault WBDI Driver functionality of Dell...
High
Unreviewed
CVE-2025-31649
was published
Nov 18, 2025
In the Linux kernel, the following vulnerability has been resolved:
clocksource: hyper-v:...
Moderate
Unreviewed
CVE-2022-49726
was published
Oct 24, 2025
In the Linux kernel, the following vulnerability has been resolved:
tick/nohz: unexport __init...
Moderate
Unreviewed
CVE-2022-49675
was published
Oct 24, 2025
In the Linux kernel, the following vulnerability has been resolved:
RDMA/hfi1: Prevent use of...
Moderate
Unreviewed
CVE-2022-49433
was published
Oct 22, 2025
Direct Ring Buffer has uninitialized memory exposure in create_ring_buffer
Low
GHSA-fp5x-7m4q-449f
was published
for
direct_ring_buffer
(Rust)
Oct 21, 2025
A flaw was found in Samba, in the vfs_streams_xattr module, where uninitialized heap memory could...
Moderate
Unreviewed
CVE-2025-9640
was published
Oct 15, 2025
Use of uninitialized resource in Windows Management Services allows an authorized attacker to...
Moderate
Unreviewed
CVE-2025-59204
was published
Oct 14, 2025
Use of uninitialized resource in Windows Kernel allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-59194
was published
Oct 14, 2025
A Use of Uninitialized Resource vulnerability in the Packet Forwarding Engine (PFE) of Juniper...
High
Unreviewed
CVE-2025-59964
was published
Oct 9, 2025
In the Linux kernel, the following vulnerability has been resolved:
ext4: fix uninititialized...
High
Unreviewed
CVE-2022-50546
was published
Oct 7, 2025
In the Linux kernel, the following vulnerability has been resolved:
net: qrtr: Fix an uninit...
High
Unreviewed
CVE-2023-53578
was published
Oct 4, 2025
In the Linux kernel, the following vulnerability has been resolved:
mm/damon/core: initialize...
Moderate
Unreviewed
CVE-2023-53555
was published
Oct 4, 2025
In the Linux kernel, the following vulnerability has been resolved:
cpufreq: Init completion...
Moderate
Unreviewed
CVE-2022-50473
was published
Oct 4, 2025
In the Linux kernel, the following vulnerability has been resolved:
iommu/vt-d: Clean up...
Moderate
Unreviewed
CVE-2022-50482
was published
Oct 4, 2025
In the Linux kernel, the following vulnerability has been resolved:
crypto: af_alg - Set merge...
Moderate
Unreviewed
CVE-2025-39931
was published
Oct 4, 2025
ProTip!
Advisories are also available from the
GraphQL API