GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
37
GitHub Actions
36
Go
2,494
Maven
5,000+
npm
4,129
NuGet
735
pip
3,944
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
42 advisories
Filter by severity
In dng_lossless_decoder::HuffDecode of dng_lossless_jpeg.cpp, there is a possible way to cause a...
High
Unreviewed
CVE-2025-0081
was published
Aug 27, 2025
A maliciously crafted DGN file, when parsed through Autodesk AutoCAD, can force an Uninitialized...
High
Unreviewed
CVE-2025-5047
was published
Aug 15, 2025
Use of Uninitialized Variable vulnerability exists in the JT file reading procedure in SOLIDWORKS...
High
Unreviewed
CVE-2025-6974
was published
Jul 15, 2025
The Honeywell Experion PKS contains an Uninitialized Variable in the common Epic Platform...
High
Unreviewed
CVE-2025-2520
was published
Jul 10, 2025
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series...
High
Unreviewed
CVE-2025-20271
was published
Jun 18, 2025
A local code execution vulnerability exists in the Rockwell Automation Arena® due to an...
High
Unreviewed
CVE-2025-2286
was published
Apr 8, 2025
A local code execution vulnerability exists in the Rockwell Automation Arena® due to an...
High
Unreviewed
CVE-2025-2287
was published
Apr 8, 2025
A local code execution vulnerability exists in the Rockwell Automation Arena® due to an...
High
Unreviewed
CVE-2025-2285
was published
Apr 8, 2025
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series...
High
Unreviewed
CVE-2025-20212
was published
Apr 2, 2025
A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an...
High
Unreviewed
CVE-2025-1649
was published
Mar 13, 2025
A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an...
High
Unreviewed
CVE-2025-1427
was published
Mar 13, 2025
A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an...
High
Unreviewed
CVE-2025-1650
was published
Mar 13, 2025
Ashlar-Vellum Cobalt VS File Parsing Use of Uninitialized Variable Remote Code Execution...
High
Unreviewed
CVE-2025-2014
was published
Mar 11, 2025
Trimble SketchUp SKP File Parsing Uninitialized Variable Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2025-2024
was published
Mar 7, 2025
Trimble SketchUp Viewer SKP File Parsing Uninitialized Variable Remote Code Execution...
High
Unreviewed
CVE-2024-9717
was published
Nov 22, 2024
PDF-XChange Editor RTF File Parsing Uninitialized Variable Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2024-8842
was published
Nov 22, 2024
A vulnerability in the SSL/TLS handler of Cisco Adaptive Security Appliance (ASA) Software...
High
Unreviewed
CVE-2020-27124
was published
Nov 18, 2024
Delta Electronics CNCSoft-G2 lacks proper initialization of memory prior to accessing it. An...
High
Unreviewed
CVE-2024-47966
was published
Oct 10, 2024
Uninitialized Use in V8 in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to...
High
Unreviewed
CVE-2024-7022
was published
Sep 24, 2024
Memory corruption while processing IOCTL call to set metainfo.
High
Unreviewed
CVE-2024-33021
was published
Aug 5, 2024
Uninitialized Use in Dawn in Google Chrome on Android prior to 127.0.6533.88 allowed a remote...
High
Unreviewed
CVE-2024-6990
was published
Aug 1, 2024
A maliciously crafted STP file, when parsed in stp_aim_x64_vc15d.dll through Autodesk...
High
Unreviewed
CVE-2024-23159
was published
Jun 25, 2024
A maliciously crafted MODEL file, when parsed in ASMkern229A.dllthrough Autodesk applications,...
High
Unreviewed
CVE-2024-37002
was published
Jun 25, 2024
ThroughTek Kalay SDK uses a predictable PSK value in the DTLS session when encountering an...
High
Unreviewed
CVE-2023-6324
was published
May 15, 2024
Foxit PDF Reader Annotation Use of Uninitialized Variable Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2021-34953
was published
May 8, 2024
ProTip!
Advisories are also available from the
GraphQL API