GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
81 advisories
Filter by severity
Use of an uninitialized variable in the ASP could allow an attacker to access leftover data from...
Low
Unreviewed
CVE-2023-31326
was published
Sep 6, 2025
In writeToParcel of CursorWindow.cpp, there is a possible out of bounds read due to uninitialized...
Moderate
Unreviewed
CVE-2025-26448
was published
Sep 5, 2025
In dng_lossless_decoder::HuffDecode of dng_lossless_jpeg.cpp, there is a possible way to cause a...
High
Unreviewed
CVE-2025-0081
was published
Aug 27, 2025
Uninitialized memory in the JavaScript Engine component. This vulnerability affects Firefox < 142...
Moderate
Unreviewed
CVE-2025-9181
was published
Aug 19, 2025
A maliciously crafted DGN file, when parsed through Autodesk AutoCAD, can force an Uninitialized...
High
Unreviewed
CVE-2025-5047
was published
Aug 15, 2025
On 64-bit platforms IonMonkey-JIT only wrote 32 bits of the 64-bit return value space on the...
Moderate
Unreviewed
CVE-2025-8027
was published
Jul 22, 2025
Use of Uninitialized Variable vulnerability exists in the JT file reading procedure in SOLIDWORKS...
High
Unreviewed
CVE-2025-6974
was published
Jul 15, 2025
The Honeywell Experion PKS contains an Uninitialized Variable in the common Epic Platform...
High
Unreviewed
CVE-2025-2520
was published
Jul 10, 2025
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series...
High
Unreviewed
CVE-2025-20271
was published
Jun 18, 2025
Insufficient input validation leading to memory overread on the NetScaler Management Interface...
Critical
Unreviewed
CVE-2025-5777
was published
Jun 17, 2025
The iSTAR Configuration Utility (ICU) tool leaks memory, which could result in the unintended...
Moderate
Unreviewed
CVE-2025-26383
was published
Jun 11, 2025
WOLFBOX Level 2 EV Charger BLE Encryption Keys Uninitialized Variable Authentication Bypass...
Moderate
Unreviewed
CVE-2025-5749
was published
Jun 6, 2025
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions)....
Moderate
Unreviewed
CVE-2025-40575
was published
May 13, 2025
A local code execution vulnerability exists in the Rockwell Automation Arena® due to an...
High
Unreviewed
CVE-2025-2287
was published
Apr 8, 2025
A local code execution vulnerability exists in the Rockwell Automation Arena® due to an...
High
Unreviewed
CVE-2025-2286
was published
Apr 8, 2025
A local code execution vulnerability exists in the Rockwell Automation Arena® due to an...
High
Unreviewed
CVE-2025-2285
was published
Apr 8, 2025
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series...
High
Unreviewed
CVE-2025-20212
was published
Apr 2, 2025
A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an...
High
Unreviewed
CVE-2025-1427
was published
Mar 13, 2025
A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an...
High
Unreviewed
CVE-2025-1650
was published
Mar 13, 2025
A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an...
High
Unreviewed
CVE-2025-1649
was published
Mar 13, 2025
Ashlar-Vellum Cobalt VS File Parsing Use of Uninitialized Variable Remote Code Execution...
High
Unreviewed
CVE-2025-2014
was published
Mar 11, 2025
Trimble SketchUp SKP File Parsing Uninitialized Variable Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2025-2024
was published
Mar 7, 2025
In DA, there is a possible read of uninitialized heap data due to uninitialized data. This could...
Moderate
Unreviewed
CVE-2025-20638
was published
Feb 3, 2025
Vulnerability of variables not being initialized in the notification module
Impact: Successful...
Moderate
Unreviewed
CVE-2024-56446
was published
Jan 8, 2025
Trimble SketchUp Viewer SKP File Parsing Uninitialized Variable Remote Code Execution...
High
Unreviewed
CVE-2024-9717
was published
Nov 22, 2024
ProTip!
Advisories are also available from the
GraphQL API