GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,675
Maven
5,000+
npm
4,297
NuGet
760
pip
4,077
Pub
12
RubyGems
957
Rust
1,058
Swift
45
Unreviewed advisories
All unreviewed
5,000+
51 advisories
Filter by severity
When IPsec is configured on the BIG-IP system, undisclosed traffic can cause the Traffic...
High
Unreviewed
CVE-2025-58071
was published
Oct 15, 2025
Ashlar-Vellum Graphite VC6 File Parsing Uninitialized Variable Remote Code Execution...
High
Unreviewed
CVE-2025-7978
was published
Sep 17, 2025
Ashlar-Vellum Graphite VC6 File Parsing Uninitialized Variable Remote Code Execution...
High
Unreviewed
CVE-2025-7981
was published
Sep 17, 2025
Ashlar-Vellum Cobalt AR File Parsing Uninitialized Variable Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2025-7984
was published
Sep 17, 2025
A Use of Uninitialized Variable vulnerability affecting the JT file reading procedure in...
High
Unreviewed
CVE-2025-9450
was published
Sep 17, 2025
In dng_lossless_decoder::HuffDecode of dng_lossless_jpeg.cpp, there is a possible way to cause a...
High
Unreviewed
CVE-2025-0081
was published
Aug 27, 2025
A maliciously crafted DGN file, when parsed through Autodesk AutoCAD, can force an Uninitialized...
High
Unreviewed
CVE-2025-5047
was published
Aug 15, 2025
Use of Uninitialized Variable vulnerability exists in the JT file reading procedure in SOLIDWORKS...
High
Unreviewed
CVE-2025-6974
was published
Jul 15, 2025
The Honeywell Experion PKS contains an Uninitialized Variable in the common Epic Platform...
High
Unreviewed
CVE-2025-2520
was published
Jul 10, 2025
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series...
High
Unreviewed
CVE-2025-20271
was published
Jun 18, 2025
A local code execution vulnerability exists in the Rockwell Automation Arena® due to an...
High
Unreviewed
CVE-2025-2286
was published
Apr 8, 2025
A local code execution vulnerability exists in the Rockwell Automation Arena® due to an...
High
Unreviewed
CVE-2025-2287
was published
Apr 8, 2025
A local code execution vulnerability exists in the Rockwell Automation Arena® due to an...
High
Unreviewed
CVE-2025-2285
was published
Apr 8, 2025
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series...
High
Unreviewed
CVE-2025-20212
was published
Apr 2, 2025
A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an...
High
Unreviewed
CVE-2025-1427
was published
Mar 13, 2025
A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an...
High
Unreviewed
CVE-2025-1649
was published
Mar 13, 2025
A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an...
High
Unreviewed
CVE-2025-1650
was published
Mar 13, 2025
Ashlar-Vellum Cobalt VS File Parsing Use of Uninitialized Variable Remote Code Execution...
High
Unreviewed
CVE-2025-2014
was published
Mar 11, 2025
Trimble SketchUp SKP File Parsing Uninitialized Variable Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2025-2024
was published
Mar 7, 2025
Trimble SketchUp Viewer SKP File Parsing Uninitialized Variable Remote Code Execution...
High
Unreviewed
CVE-2024-9717
was published
Nov 22, 2024
PDF-XChange Editor RTF File Parsing Uninitialized Variable Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2024-8842
was published
Nov 22, 2024
A vulnerability in the SSL/TLS handler of Cisco Adaptive Security Appliance (ASA) Software...
High
Unreviewed
CVE-2020-27124
was published
Nov 18, 2024
Delta Electronics CNCSoft-G2 lacks proper initialization of memory prior to accessing it. An...
High
Unreviewed
CVE-2024-47966
was published
Oct 10, 2024
Golang FIPS OpenSSL has a Use of Uninitialized Variable vulnerability
High
CVE-2024-9355
was published
for
github.com/golang-fips/openssl
(Go)
Oct 1, 2024
Uninitialized Use in V8 in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to...
High
Unreviewed
CVE-2024-7022
was published
Sep 24, 2024
ProTip!
Advisories are also available from the
GraphQL API