GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,819
Erlang
36
GitHub Actions
32
Go
2,410
Maven
5,000+
npm
4,046
NuGet
723
pip
3,842
Pub
12
RubyGems
933
Rust
1,003
Swift
38
Unreviewed advisories
All unreviewed
5,000+
13 advisories
Filter by severity
OpenEXR Heap-Based Buffer Overflow in Deep Scanline Parsing via Forged Unpacked Size
High
CVE-2025-48071
was published
for
OpenEXR
(pip)
Jul 31, 2025
ExecuTorch vulnerable to Heap-based Buffer Overflow attack
High
CVE-2025-30402
was published
for
executorch
(pip)
Jul 11, 2025
Pillow vulnerability can cause write buffer overflow on BCn encoding
High
CVE-2025-48379
was published
for
pillow
(pip)
Jul 1, 2025
OpenH264 Rust API Openh264 Decoding Functions Heap Overflow Vulnerability
High
GHSA-5pmw-9j92-3c4c
was published
for
openh264-sys2
(Rust)
Feb 24, 2025
Microsoft Security Advisory CVE-2025-21172 | .NET and Visual Studio Remote Code Execution Vulnerability
High
CVE-2025-21172
was published
for
Microsoft.NetCore.App.Runtime.linux-arm
(NuGet)
Jan 14, 2025
Microsoft Security Advisory CVE-2025-21171 | .NET Remote Code Execution Vulnerability
High
CVE-2025-21171
was published
for
Microsoft.NetCore.App.Runtime.linux-arm
(NuGet)
Jan 14, 2025
LightGBM Remote Code Execution Vulnerability
High
CVE-2024-43598
was published
for
lightgbm
(pip)
Nov 12, 2024
Heap-based Buffer Overflow in sqlite-vec
High
CVE-2024-46488
was published
for
sqlite-vec
(RubyGems)
Sep 25, 2024
PyTorch heap buffer overflow vulnerability
High
CVE-2024-31580
was published
for
torch
(pip)
Apr 17, 2024
.NET Remote Code Execution Vulnerability
High
CVE-2023-24897
was published
for
Microsoft.NetCore.App.Runtime.win-arm
(NuGet)
Jun 14, 2023
TensorFlow has Heap-buffer-overflow in AvgPoolGrad
High
CVE-2023-25664
was published
for
tensorflow
(pip)
Mar 24, 2023
LIEF heap buffer overflow in the LIEF::MachO::BinaryParser::parse_dyldinfo_generic_bind
High
CVE-2022-43171
was published
for
lief
(pip)
Nov 18, 2022
ProTip!
Advisories are also available from the
GraphQL API