GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,121
NuGet
735
pip
3,942
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
103,236 advisories
Filter by severity
Concurrent execution using shared resource with improper synchronization ('race condition') in...
High
Unreviewed
CVE-2025-55228
was published
Sep 9, 2025
External control of file name or path in Azure Arc allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-55316
was published
Sep 9, 2025
Tenda G3 v3.0br_V15.11.0.17 was discovered to contain multiple stack overflows in the...
High
Unreviewed
CVE-2025-57061
was published
Sep 9, 2025
Tenda G3 v3.0br_V15.11.0.17 was discovered to contain multiple stack overflows in the...
High
Unreviewed
CVE-2025-57058
was published
Sep 9, 2025
Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the listStr parameter...
High
Unreviewed
CVE-2025-57057
was published
Sep 9, 2025
Free of memory not on the heap in Microsoft Office allows an unauthorized attacker to execute...
High
Unreviewed
CVE-2025-54906
was published
Sep 9, 2025
Stack-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
High
Unreviewed
CVE-2025-54916
was published
Sep 9, 2025
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute...
High
Unreviewed
CVE-2025-54900
was published
Sep 9, 2025
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-54896
was published
Sep 9, 2025
Free of memory not on the heap in Microsoft Office Excel allows an unauthorized attacker to...
High
Unreviewed
CVE-2025-54899
was published
Sep 9, 2025
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code...
High
Unreviewed
CVE-2025-54910
was published
Sep 9, 2025
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-54903
was published
Sep 9, 2025
Heap-based buffer overflow in Microsoft Office Visio allows an unauthorized attacker to execute...
High
Unreviewed
CVE-2025-54907
was published
Sep 9, 2025
Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code...
High
Unreviewed
CVE-2025-54908
was published
Sep 9, 2025
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code...
High
Unreviewed
CVE-2025-54902
was published
Sep 9, 2025
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-54904
was published
Sep 9, 2025
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code...
High
Unreviewed
CVE-2025-54898
was published
Sep 9, 2025
Integer overflow or wraparound in Windows SPNEGO Extended Negotiation allows an authorized...
High
Unreviewed
CVE-2025-54895
was published
Sep 9, 2025
Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-54911
was published
Sep 9, 2025
Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-54912
was published
Sep 9, 2025
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to...
High
Unreviewed
CVE-2025-54897
was published
Sep 9, 2025
Concurrent execution using shared resource with improper synchronization ('race condition') in...
High
Unreviewed
CVE-2025-54913
was published
Sep 9, 2025
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to...
High
Unreviewed
CVE-2025-54905
was published
Sep 9, 2025
Local Security Authority Subsystem Service Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2025-54894
was published
Sep 9, 2025
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2025-54709
was published
Sep 9, 2025
ProTip!
Advisories are also available from the
GraphQL API