GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,822
Erlang
36
GitHub Actions
32
Go
2,413
Maven
5,000+
npm
4,052
NuGet
723
pip
3,844
Pub
12
RubyGems
933
Rust
1,005
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
880 advisories
Filter by severity
A memory abuse issue exists in the Rockwell Automation Arena® Simulation. A custom file can force...
High
Unreviewed
CVE-2025-7033
was published
Aug 5, 2025
A memory abuse issue exists in the Rockwell Automation Arena® Simulation. A custom file can force...
High
Unreviewed
CVE-2025-7025
was published
Aug 5, 2025
A flaw was found in X.Org server. In the XISendDeviceHierarchyEvent function, it is possible to...
High
Unreviewed
CVE-2024-21885
was published
Feb 28, 2024
A heap buffer overflow flaw was found in the DisableDevice function in the X.Org server. This...
High
Unreviewed
CVE-2024-21886
was published
Feb 28, 2024
A flaw was found in the X.org server. Due to improperly tracked allocation size in...
High
Unreviewed
CVE-2024-9632
was published
Oct 30, 2024
A memory corruption issue was addressed with improved validation. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-31280
was published
Jul 30, 2025
A flaw was found in GIMP when processing certain TGA image files. If a user opens one of these...
High
Unreviewed
CVE-2025-48797
was published
May 27, 2025
A maliciously crafted 3DM file, when linked or imported into certain Autodesk products, can force...
High
Unreviewed
CVE-2025-5043
was published
Jul 29, 2025
A Heap-based buffer overflow vulnerability in the SMA100 series web interface allows remote,...
High
Unreviewed
CVE-2025-40597
was published
Jul 23, 2025
A buffer overflow vulnerability was reported in the Lenovo Protection Driver, prior to version 5...
High
Unreviewed
CVE-2025-4657
was published
Jul 17, 2025
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-49696
was published
Jul 8, 2025
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an...
High
Unreviewed
CVE-2025-47998
was published
Jul 8, 2025
Heap-based buffer overflow in Microsoft MPEG-2 Video Extension allows an authorized attacker to...
High
Unreviewed
CVE-2025-48805
was published
Jul 8, 2025
Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to...
High
Unreviewed
CVE-2025-22881
was published
Jul 11, 2025
A maliciously crafted RTE file, when parsed through Autodesk Revit, can force a Heap-Based...
High
Unreviewed
CVE-2025-5040
was published
Jul 10, 2025
Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47131
was published
Jul 9, 2025
InCopy versions 20.3, 19.5.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47099
was published
Jul 9, 2025
Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47123
was published
Jul 9, 2025
Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47125
was published
Jul 9, 2025
Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47122
was published
Jul 9, 2025
InDesign Desktop versions 19.5.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-43591
was published
Jul 9, 2025
InDesign Desktop versions 19.5.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47103
was published
Jul 9, 2025
InDesign Desktop versions 19.5.3 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-47134
was published
Jul 9, 2025
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to...
High
Unreviewed
CVE-2025-27477
was published
Apr 8, 2025
Substance3D - Viewer versions 0.22 and earlier are affected by a Heap-based Buffer Overflow...
High
Unreviewed
CVE-2025-43582
was published
Jul 8, 2025
ProTip!
Advisories are also available from the
GraphQL API