GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
116
GitHub Actions
55
Go
4,701
Maven
5,000+
npm
5,000+
NuGet
1,104
pip
5,000+
Pub
13
RubyGems
1,150
Rust
1,566
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
19
67 advisories
Filter by severity
Nokogiri does not check the return value from xmlC14NExecute
Moderate
CVE-2026-79772
was published
for
nokogiri
(RubyGems)
Feb 18, 2026
Duplicate Advisory: Nokogiri does not check the return value from xmlC14NExecute
Moderate
GHSA-xqqh-3w52-q8p7
was published
for
nokogiri
(RubyGems)
Aug 25, 2026
•
withdrawn
tor before 0.4.9.9 was prone to a NULL write after free when sending a CONFLUX_SWITCH cell fails....
Moderate
Unreviewed
CVE-2026-77641
was published
Aug 20, 2026
Microsoft Security Advisory CVE-2026-62909 – .NET Elevation of Privilege Vulnerability
Moderate
CVE-2026-62909
was published
for
Microsoft.NETCore.App.Runtime.linux-arm
(NuGet)
Aug 11, 2026
ImageMagick before 7.1.2-26 contains a heap use-after-free vulnerability caused by missing null...
Moderate
Unreviewed
CVE-2026-61857
was published
Jul 11, 2026
chmod: recursive mode returns exit code 0 even when some files fail (last-file-wins)
Moderate
CVE-2026-35339
was published
for
uu_chmod
(Rust)
Jul 6, 2026
In the Linux kernel, the following vulnerability has been resolved:
nfsd: don't ignore the...
Moderate
Unreviewed
CVE-2025-22026
was published
Apr 16, 2025
ImageMagick: Heap Buffer Over-Write in MIFF encoder when using LZMA compression
Moderate
CVE-2026-46521
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
May 18, 2026
In the Linux kernel, the following vulnerability has been resolved:
ASoC: SDCA: Add allocation...
Moderate
Unreviewed
CVE-2026-23301
was published
Mar 25, 2026
Unchecked return value for some Intel(R) QAT software drivers for Windows before version 1.13...
Moderate
Unreviewed
CVE-2026-20793
was published
May 12, 2026
A security flaw has been discovered in GNU Binutils 2.45. Impacted is the function tg_tag_type of...
Moderate
Unreviewed
CVE-2025-11839
was published
Oct 16, 2025
Withdrawn Advisory: Kirby CMS has Persistent DoS via Malformed Image Upload
Moderate
CVE-2026-29905
was published
for
getkirby/cms
(Composer)
Mar 27, 2026
•
withdrawn
Internet Systems Consortium (ISC) BIND 9.6.0 and earlier does not properly check the return value...
Moderate
Unreviewed
CVE-2009-0265
was published
May 2, 2022
Fault Injection vulnerability in RsaPrivateDecryption function in wolfssl/wolfcrypt/src/rsa.c in...
Moderate
Unreviewed
CVE-2024-1545
was published
Aug 30, 2024
In the Linux kernel, the following vulnerability has been resolved:
iwlwifi: Add missing check...
Moderate
Unreviewed
CVE-2025-38602
was published
Aug 19, 2025
In the Linux kernel, the following vulnerability has been resolved:
ACPI: PPTT: Fix to avoid...
Moderate
Unreviewed
CVE-2023-53070
was published
May 2, 2025
A use after return issue was found in Opensc before version 0.22.0 in insert_pin function that...
Moderate
Unreviewed
CVE-2021-42780
was published
Apr 19, 2022
Unchecked return value in firmware for some Intel(R) CSME may allow an unauthenticated user to...
Moderate
Unreviewed
CVE-2023-40067
was published
Aug 14, 2024
In the Linux kernel, the following vulnerability has been resolved:
bpf: Take return from...
Moderate
Unreviewed
CVE-2024-42068
was published
Jul 29, 2024
A flaw was found in Python, specifically in the FTP (File Transfer Protocol) client library in...
Moderate
Unreviewed
CVE-2021-4189
was published
Aug 25, 2022
In libxml2 before 2.13.8 and 2.14.x before 2.14.2, out-of-bounds memory access can occur in the...
Moderate
Unreviewed
CVE-2025-32414
was published
Apr 8, 2025
In the Linux kernel, the following vulnerability has been resolved:
drivers: perf: Check...
Moderate
Unreviewed
CVE-2023-52797
was published
May 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
ALSA: scarlett2: Add missing...
Moderate
Unreviewed
CVE-2023-52680
was published
May 17, 2024
In the Linux kernel, the following vulnerability has been resolved:
ALSA: scarlett2: Add missing...
Moderate
Unreviewed
CVE-2023-52692
was published
May 17, 2024
In the Linux kernel, the following vulnerability has been resolved:
crypto: safexcel - Add error...
Moderate
Unreviewed
CVE-2023-52687
was published
May 17, 2024
ProTip!
Advisories are also available from the
GraphQL API