GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,231 advisories
Filter by severity
MuseScore CAP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2023-44428
was published
May 3, 2024
In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204,...
High
Unreviewed
CVE-2025-52584
was published
Aug 19, 2025
In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204,...
High
Unreviewed
CVE-2025-46269
was published
Aug 19, 2025
A maliciously crafted MODEL file, when parsed through Autodesk AutoCAD, can force a Heap-Based...
High
Unreviewed
CVE-2025-1429
was published
Mar 13, 2025
A maliciously crafted PDF file, when linked or imported into Autodesk applications, can force a...
High
Unreviewed
CVE-2025-1273
was published
Apr 15, 2025
A maliciously crafted PDF file, when linked or imported into Autodesk applications, can force a...
High
Unreviewed
CVE-2025-1656
was published
Apr 15, 2025
A maliciously crafted DWG file, when parsed through Autodesk Revit, can cause a Stack-Based...
High
Unreviewed
CVE-2025-2497
was published
Apr 15, 2025
A maliciously crafted JPG file, when linked or imported into certain Autodesk applications, can...
High
Unreviewed
CVE-2025-1275
was published
Apr 15, 2025
A maliciously crafted RTE file, when parsed through Autodesk Revit, can force a Heap-Based...
High
Unreviewed
CVE-2025-5040
was published
Jul 10, 2025
A maliciously crafted MODEL file, when parsed through Autodesk AutoCAD, can force a Heap-Based...
High
Unreviewed
CVE-2025-1651
was published
Mar 13, 2025
A maliciously crafted 3DM file, when linked or imported into certain Autodesk products, can force...
High
Unreviewed
CVE-2025-5043
was published
Jul 29, 2025
IBM Semeru Runtime 8.0.302.0 through 8.0.442.0, 11.0.12.0 through 11.0.26.0, 17.0.0.0 through 17...
High
Unreviewed
CVE-2025-2900
was published
May 14, 2025
A heap-based buffer overflow vulnerability exists in the RHS2000 parsing functionality of The...
Critical
Unreviewed
CVE-2025-48005
was published
Aug 25, 2025
A heap-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig...
Critical
Unreviewed
CVE-2025-53557
was published
Aug 25, 2025
A heap-based buffer overflow vulnerability exists in the Nex parsing functionality of The Biosig...
Critical
Unreviewed
CVE-2025-54462
was published
Aug 25, 2025
A heap-based buffer overflow vulnerability exists in the ISHNE parsing functionality of The...
Critical
Unreviewed
CVE-2025-53853
was published
Aug 25, 2025
A heap-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig...
Critical
Unreviewed
CVE-2025-53511
was published
Aug 25, 2025
ImageMagick has a heap-buffer-overflow
Low
GHSA-fff3-4rp7-px97
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Aug 25, 2025
imagemagick: heap-buffer overflow read in MNG magnification with alpha
High
CVE-2025-55004
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Aug 25, 2025
A memory corruption vulnerability exists in the PSD RLE Decoding functionality of the SAIL Image...
High
Unreviewed
CVE-2025-53085
was published
Aug 26, 2025
A memory corruption vulnerability exists in the PCX Image Decoding functionality of the SAIL...
High
Unreviewed
CVE-2025-50129
was published
Aug 26, 2025
A memory corruption vulnerability exists in the PCX Image Decoding functionality of the SAIL...
High
Unreviewed
CVE-2025-35984
was published
Aug 26, 2025
A maliciously crafted SKP file, when linked or imported into Autodesk Revit, can be used to cause...
High
Unreviewed
CVE-2024-11608
was published
Dec 9, 2024
ImageMagick (WriteBMPImage): 32-bit integer overflow when writing BMP scanline stride → heap buffer overflow
High
CVE-2025-57803
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Aug 26, 2025
NanoMQ 0.17.5 is vulnerable to heap-buffer-overflow in the conn_handler function of mqtt_parser.c...
High
Unreviewed
CVE-2023-34488
was published
Jun 12, 2023
ProTip!
Advisories are also available from the
GraphQL API