GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
                  
                    
                      
                      All reviewed
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      Composer
                    
                    
                      4,963
                    
                  
                  
                    
                      
                      Erlang
                    
                    
                      39
                    
                  
                  
                    
                      
                      GitHub Actions
                    
                    
                      38
                    
                  
                  
                    
                      
                      Go
                    
                    
                      2,614
                    
                  
                  
                    
                      
                      Maven
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      npm
                    
                    
                      4,254
                    
                  
                  
                    
                      
                      NuGet
                    
                    
                      760
                    
                  
                  
                    
                      
                      pip
                    
                    
                      4,031
                    
                  
                  
                    
                      
                      Pub
                    
                    
                      12
                    
                  
                  
                    
                      
                      RubyGems
                    
                    
                      953
                    
                  
                  
                    
                      
                      Rust
                    
                    
                      1,049
                    
                  
                  
                    
                      
                      Swift
                    
                    
                      45
                    
                  
                  Unreviewed advisories
                  
                    
                      
                      All unreviewed
                    
                    
                      5,000+
                    
                  
            11,276 advisories
        Filter by severity
        
      
      
    
                    
                      GIMP ICNS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-10920
                      
                      was published
                      Oct 29, 2025 
                    
                  
                    
                      An out-of-bounds write vulnerability exists in the XML parser functionality of GCC Productions...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-53855
                      
                      was published
                      Oct 28, 2025 
                    
                  
                    
                      IBM DB2 High Performance Unload 6.1.0.3, 5.1.0.1, 6.1.0.2, 6.5, 6.5.0.0 IF1, 6.1.0.1, 6.1, and 5...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-33133
                      
                      was published
                      Oct 28, 2025 
                    
                  
                    
                      A security vulnerability has been detected in Kamailio 5.5. Impacted is the function rve_destroy...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-12204
                      
                      was published
                      Oct 27, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
ice: Fix memory corruption...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49722
                      
                      was published
                      Oct 24, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
drm/panfrost: Fix shrinker...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49645
                      
                      was published
                      Oct 23, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
power: supply: core: Fix...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49612
                      
                      was published
                      Oct 23, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
drm/i915/selftests: fix...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49635
                      
                      was published
                      Oct 23, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
net: stmmac: fix dma queue...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49592
                      
                      was published
                      Oct 22, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
be2net: Fix buffer overflow...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49581
                      
                      was published
                      Oct 22, 2025 
                    
                  
                    
                      Multiple buffer overflow vulnerabilities in the openSchedWifi function of Tenda AC6 v.15.03.06.50...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-60339
                      
                      was published
                      Oct 22, 2025 
                    
                  
                    
                      Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the ssid parameter in...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-60341
                      
                      was published
                      Oct 22, 2025 
                    
                  
                    
                      Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the page parameter in...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-60342
                      
                      was published
                      Oct 22, 2025 
                    
                  
                    
                      NVIDIA Bluefield and ConnectX contain a vulnerability in the management interface that could...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-23299
                      
                      was published
                      Oct 22, 2025 
                    
                  
                    
                      Tenda AC6 V2.0 15.03.06.50 was discovered to contain a buffer overflow in the speed_dir parameter...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-60337
                      
                      was published
                      Oct 22, 2025 
                    
                  
                    
                      Tenda AC6 V2.0 15.03.06.50 was discovered to contain a stack overflow in the page parameter in...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-60338
                      
                      was published
                      Oct 22, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
x86/fpu: KVM: Set the base...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49557
                      
                      was published
                      Oct 22, 2025 
                    
                  
                    
                      Potential stack buffer overwrite on the SFTP server side when receiving a malicious packet that...
                    
                      
  Low
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11624
                      
                      was published
                      Oct 21, 2025 
                    
                  
                    
                      Out-of-bounds Write in unfilter_scanline in warmcat libwebsockets allows, when the LWS_WITH_UPNG...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11680
                      
                      was published
                      Oct 20, 2025 
                    
                  
                    
                      An issue was discovered in Dolby UDC 4.5 through 4.13. A crash of the DD+ decoder process can...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-54957
                      
                      was published
                      Oct 20, 2025 
                    
                  
                    
                      When BIG-IP SSL Orchestrator explicit forward proxy is configured on a virtual server and the...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-55036
                      
                      was published
                      Oct 15, 2025 
                    
                  
                    
                      An out-of-bounds write vulnerability exists in F5OS-A and F5OS-C that could lead to memory...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-60015
                      
                      was published
                      Oct 15, 2025 
                    
                  
                    
                      When a classification profile is configured on a virtual server without an HTTP or HTTP/2 profile...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-54479
                      
                      was published
                      Oct 15, 2025 
                    
                  
                    
                      When the database variable tm.tcpudptxchecksum is configured as non-default value Software-only...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-58096
                      
                      was published
                      Oct 15, 2025 
                    
                  
                    
                      Illustrator versions 29.7, 28.7.9 and earlier are affected by an out-of-bounds write...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-54283
                      
                      was published
                      Oct 14, 2025 
                    
                  
        
        ProTip!
        Advisories are also available from the 
        GraphQL API