GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,820
Erlang
36
GitHub Actions
32
Go
2,412
Maven
5,000+
npm
4,050
NuGet
723
pip
3,844
Pub
12
RubyGems
933
Rust
1,004
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,148 advisories
Filter by severity
OpenEXR Heap-Based Buffer Overflow in Deep Scanline Parsing via Forged Unpacked Size
High
CVE-2025-48071
was published
for
OpenEXR
(pip)
Jul 31, 2025
A memory corruption issue was addressed with improved validation. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-31280
was published
Jul 30, 2025
A maliciously crafted 3DM file, when linked or imported into certain Autodesk products, can force...
High
Unreviewed
CVE-2025-5043
was published
Jul 29, 2025
Tenda AC8V4 V16.03.34.06` was discovered to contain heap overflow at /goform/GetParentControlInfo...
Moderate
Unreviewed
CVE-2025-51089
was published
Jul 24, 2025
A Heap-based buffer overflow vulnerability in the SMA100 series web interface allows remote,...
High
Unreviewed
CVE-2025-40597
was published
Jul 23, 2025
A buffer overflow vulnerability was reported in the Lenovo Protection Driver, prior to version 5...
High
Unreviewed
CVE-2025-4657
was published
Jul 17, 2025
A heap-based buffer overflow in Fortinet FortiOS versions 7.6.0 through 7.6.2, 7.4.0 through 7.4...
Moderate
Unreviewed
CVE-2025-24477
was published
Jul 15, 2025
NanoMQ v0.22.10 was discovered to contain a heap overflow which allows attackers to cause a...
Moderate
Unreviewed
CVE-2024-42648
was published
Jul 14, 2025
ExecuTorch vulnerable to Heap-based Buffer Overflow attack
High
CVE-2025-30402
was published
for
executorch
(pip)
Jul 11, 2025
Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to...
High
Unreviewed
CVE-2025-22881
was published
Jul 11, 2025
A maliciously crafted RTE file, when parsed through Autodesk Revit, can force a Heap-Based...
High
Unreviewed
CVE-2025-5040
was published
Jul 10, 2025
A heap-buffer-overflow (off-by-one) flaw was found in the GnuTLS software in the template parsing...
Moderate
Unreviewed
CVE-2025-32990
was published
Jul 10, 2025
For Realtek AmebaD devices, a heap-based buffer overflow was discovered in Ameba-AIoT ameba...
Moderate
Unreviewed
CVE-2025-49604
was published
Jul 9, 2025
Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47131
was published
Jul 9, 2025
InCopy versions 20.3, 19.5.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47099
was published
Jul 9, 2025
Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47122
was published
Jul 9, 2025
Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47123
was published
Jul 9, 2025
Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47125
was published
Jul 9, 2025
InDesign Desktop versions 19.5.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47134
was published
Jul 9, 2025
InDesign Desktop versions 19.5.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-43591
was published
Jul 9, 2025
InDesign Desktop versions 19.5.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47103
was published
Jul 9, 2025
Substance3D - Viewer versions 0.22 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-43582
was published
Jul 8, 2025
Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to...
High
Unreviewed
CVE-2025-49732
was published
Jul 8, 2025
Integer overflow or wraparound in Microsoft Graphics Component allows an authorized attacker to...
High
Unreviewed
CVE-2025-49742
was published
Jul 8, 2025
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an...
High
Unreviewed
CVE-2025-49753
was published
Jul 8, 2025
ProTip!
Advisories are also available from the
GraphQL API