GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,820
Erlang
36
GitHub Actions
32
Go
2,412
Maven
5,000+
npm
4,050
NuGet
723
pip
3,844
Pub
12
RubyGems
933
Rust
1,004
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,148 advisories
Filter by severity
A flaw was found in X.Org server. In the XISendDeviceHierarchyEvent function, it is possible to...
High
Unreviewed
CVE-2024-21885
was published
Feb 28, 2024
A heap buffer overflow flaw was found in the DisableDevice function in the X.Org server. This...
High
Unreviewed
CVE-2024-21886
was published
Feb 28, 2024
A flaw was found in the X.org server. Due to improperly tracked allocation size in...
High
Unreviewed
CVE-2024-9632
was published
Oct 30, 2024
An integer overflow can be triggered in SQLite’s `concat_ws()` function. The resulting, truncated...
Moderate
Unreviewed
CVE-2025-3277
was published
Apr 14, 2025
OpenEXR Heap-Based Buffer Overflow in Deep Scanline Parsing via Forged Unpacked Size
High
CVE-2025-48071
was published
for
OpenEXR
(pip)
Jul 31, 2025
A memory corruption issue was addressed with improved validation. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-31280
was published
Jul 30, 2025
A flaw was found in GIMP when processing certain TGA image files. If a user opens one of these...
High
Unreviewed
CVE-2025-48797
was published
May 27, 2025
A maliciously crafted 3DM file, when linked or imported into certain Autodesk products, can force...
High
Unreviewed
CVE-2025-5043
was published
Jul 29, 2025
Tenda AC8V4 V16.03.34.06` was discovered to contain heap overflow at /goform/GetParentControlInfo...
Moderate
Unreviewed
CVE-2025-51089
was published
Jul 24, 2025
A Heap-based buffer overflow vulnerability in the SMA100 series web interface allows remote,...
High
Unreviewed
CVE-2025-40597
was published
Jul 23, 2025
A buffer overflow vulnerability was reported in the Lenovo Protection Driver, prior to version 5...
High
Unreviewed
CVE-2025-4657
was published
Jul 17, 2025
NanoMQ v0.22.10 was discovered to contain a heap overflow which allows attackers to cause a...
Moderate
Unreviewed
CVE-2024-42648
was published
Jul 14, 2025
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-49696
was published
Jul 8, 2025
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an...
High
Unreviewed
CVE-2025-47998
was published
Jul 8, 2025
Heap-based buffer overflow in Microsoft MPEG-2 Video Extension allows an authorized attacker to...
High
Unreviewed
CVE-2025-48805
was published
Jul 8, 2025
A heap-based buffer overflow in Fortinet FortiOS versions 7.6.0 through 7.6.2, 7.4.0 through 7.4...
Moderate
Unreviewed
CVE-2025-24477
was published
Jul 15, 2025
Heap-based Buffer Overflow vulnerability in Apache ORC.
A vulnerability has been identified in...
Moderate
Unreviewed
CVE-2025-47436
was published
May 14, 2025
ExecuTorch vulnerable to Heap-based Buffer Overflow attack
High
CVE-2025-30402
was published
for
executorch
(pip)
Jul 11, 2025
Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to...
High
Unreviewed
CVE-2025-22881
was published
Jul 11, 2025
Giflib Project v5.2.2 is vulnerable to a heap buffer overflow via gif2rgb.
Moderate
Unreviewed
CVE-2024-45993
was published
Sep 30, 2024
A maliciously crafted RTE file, when parsed through Autodesk Revit, can force a Heap-Based...
High
Unreviewed
CVE-2025-5040
was published
Jul 10, 2025
A heap-buffer-overflow (off-by-one) flaw was found in the GnuTLS software in the template parsing...
Moderate
Unreviewed
CVE-2025-32990
was published
Jul 10, 2025
For Realtek AmebaD devices, a heap-based buffer overflow was discovered in Ameba-AIoT ameba...
Moderate
Unreviewed
CVE-2025-49604
was published
Jul 9, 2025
Null pointer dereference vulnerability in the PDF preview module
Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2025-53184
was published
Jul 7, 2025
Null pointer dereference vulnerability in the PDF preview module
Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2025-53183
was published
Jul 7, 2025
ProTip!
Advisories are also available from the
GraphQL API