GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,128
NuGet
735
pip
3,944
Pub
12
RubyGems
945
Rust
1,024
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
96 advisories
Filter by severity
A heap-based buffer overflow vulnerability exists in the input parsing logic of Arcserve Unified...
Critical
Unreviewed
CVE-2025-34522
was published
Aug 28, 2025
A heap-based buffer overflow vulnerability exists in the exists in the network-facing input...
Critical
Unreviewed
CVE-2025-34523
was published
Aug 28, 2025
BSON::XS versions 0.8.4 and earlier for Perl includes a bundled libbson 1.1.7, which has several...
Critical
Unreviewed
CVE-2025-40906
was published
May 16, 2025
A heap-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig...
Critical
Unreviewed
CVE-2025-53511
was published
Aug 25, 2025
A heap-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig...
Critical
Unreviewed
CVE-2025-53557
was published
Aug 25, 2025
A heap-based buffer overflow vulnerability exists in the ISHNE parsing functionality of The...
Critical
Unreviewed
CVE-2025-53853
was published
Aug 25, 2025
A heap-based buffer overflow vulnerability exists in the RHS2000 parsing functionality of The...
Critical
Unreviewed
CVE-2025-48005
was published
Aug 25, 2025
A heap-based buffer overflow vulnerability exists in the Nex parsing functionality of The Biosig...
Critical
Unreviewed
CVE-2025-54462
was published
Aug 25, 2025
Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a...
Critical
Unreviewed
CVE-2025-53766
was published
Aug 12, 2025
A vulnerability has been identified in RUGGEDCOM ROS M2100 (All versions < V5.6.0), RUGGEDCOM ROS...
Critical
Unreviewed
CVE-2021-42018
was published
Mar 9, 2022
Wyze Cam v3 Realtek Wi-Fi Driver Heap-Based Buffer Overflow Remote Code Execution Vulnerability....
Critical
Unreviewed
CVE-2024-6246
was published
Nov 22, 2024
NVIDIA Triton Inference Server contains a vulnerability in the HTTP server, where an attacker...
Critical
Unreviewed
CVE-2025-23317
was published
Aug 6, 2025
Heap-based buffer overflow in Windows SPNEGO Extended Negotiation allows an unauthorized attacker...
Critical
Unreviewed
CVE-2025-47981
was published
Jul 8, 2025
In Bluetooth driver, there is a possible out of bounds write due to an incorrect bounds check....
Critical
Unreviewed
CVE-2025-20680
was published
Jul 8, 2025
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This...
Critical
Unreviewed
CVE-2025-20685
was published
Jul 8, 2025
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This...
Critical
Unreviewed
CVE-2025-20686
was published
Jul 8, 2025
A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper...
Critical
Unreviewed
CVE-2024-12084
was published
Jan 15, 2025
A vulnerability in the PDF scanning processes of ClamAV could allow an unauthenticated, remote...
Critical
Unreviewed
CVE-2025-20260
was published
Jun 18, 2025
Heap buffer overflow in Skia in Google Chrome prior to 121.0.6167.160 allowed a remote attacker...
Critical
Unreviewed
CVE-2024-1283
was published
Feb 7, 2024
Out-of-bounds Write resulting in possible Heap-based Buffer Overflow vulnerability was discovered...
Critical
Unreviewed
CVE-2025-47868
was published
Jun 16, 2025
Heap-based buffer overflow vulnerability in Mitsubishi Electric FA Engineering Software (C...
Critical
Unreviewed
CVE-2021-20587
was published
May 24, 2022
In Bluetooth driver, there is a possible out of bounds write due to an incorrect bounds check....
Critical
Unreviewed
CVE-2025-20672
was published
Jun 2, 2025
An integer overflow in WhatsApp could result in remote code execution in an established video call.
Critical
Unreviewed
CVE-2022-36934
was published
Sep 23, 2022
The calling logic for WhatsApp for Android prior to v2.21.23, WhatsApp Business for Android prior...
Critical
Unreviewed
CVE-2021-24042
was published
Jan 5, 2022
Medtronic MyCareLink Smart 25000 all versions are vulnerable when an attacker who gains auth runs...
Critical
Unreviewed
CVE-2020-25187
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API