GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
174 advisories
Filter by severity
Uncontrolled recursion in XPath evaluation in libxml2 up to and including version 2.9.14 allows a...
Moderate
Unreviewed
CVE-2025-9714
was published
Sep 10, 2025
Uncontrolled recursion for some TinyCBOR libraries maintained by Intel(R) before version 0.6.1...
Moderate
Unreviewed
CVE-2025-24302
was published
Aug 12, 2025
Uncontrolled recursion for some TinyCBOR libraries maintained by Intel(R) before version 0.6.1...
Moderate
Unreviewed
CVE-2025-20025
was published
Aug 12, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker...
High
Unreviewed
CVE-2025-23325
was published
Aug 6, 2025
An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service...
High
Unreviewed
CVE-2025-46206
was published
Aug 4, 2025
An issue in the pdfseparate utility of freedesktop poppler v25.04.0 allows attackers to cause an...
High
Unreviewed
CVE-2025-50420
was published
Aug 4, 2025
MongoDB Server may be susceptible to stack overflow due to JSON parsing mechanism, where...
High
Unreviewed
CVE-2025-6710
was published
Jun 26, 2025
In ims service, there is a possible system crash due to incorrect error handling. This could lead...
High
Unreviewed
CVE-2025-20678
was published
Jun 2, 2025
In some circumstances, when DNSdist is configured to allow an unlimited number of queries on a...
High
Unreviewed
CVE-2025-30193
was published
May 20, 2025
VisiCut 2.1 allows stack consumption via an XML document with nested set elements, as...
Low
Unreviewed
CVE-2025-43708
was published
Apr 17, 2025
A stack overflow vulnerability exists in the libexpat library due to the way it handles recursive...
High
Unreviewed
CVE-2024-8176
was published
Mar 14, 2025
An issue was discovered in Datalust Seq before 2024.3.13545. An insecure default parsing depth...
Moderate
Unreviewed
CVE-2024-58102
was published
Mar 11, 2025
Bundle Protocol and CBOR dissector crashes in Wireshark 4.4.0 to 4.4.3 and 4.2.0 to 4.2.10 allows...
High
Unreviewed
CVE-2025-1492
was published
Feb 20, 2025
A stack consumption issue in sqfs_size in Das U-Boot before 2025.01-rc1 occurs via a crafted...
Low
Unreviewed
CVE-2024-57257
was published
Feb 19, 2025
cpdf through 2.8 allows stack consumption via a crafted PDF document.
Moderate
Unreviewed
CVE-2024-54731
was published
Jan 8, 2025
In the Linux kernel, the following vulnerability has been resolved:
afs: Fix lock recursion
...
Moderate
Unreviewed
CVE-2024-53090
was published
Nov 21, 2024
In Faust 2.23.1, an input file with the lines "// r visualisation tCst" and "//process = +: L:...
High
Unreviewed
CVE-2021-41737
was published
Nov 11, 2024
Calling Parse on a "// +build" build tag line with deeply nested expressions can cause a panic...
High
Unreviewed
CVE-2024-34158
was published
Sep 6, 2024
In the Linux kernel, the following vulnerability has been resolved:
vsock: fix recursive -...
Moderate
Unreviewed
CVE-2024-44996
was published
Sep 4, 2024
In Xpdf 4.05 (and earlier), a PDF object loop in a pattern resource leads to infinite recursion...
Low
Unreviewed
CVE-2024-7866
was published
Aug 15, 2024
Secure Boot Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2024-37973
was published
Jul 9, 2024
HDF5 Library through 1.14.3 allows stack consumption in the function H5E_printf_stack in H5Eint.c.
High
Unreviewed
CVE-2024-32609
was published
May 14, 2024
In Xpdf 4.05 (and earlier), a PDF object loop in the PDF resources leads to infinite recursion...
Low
Unreviewed
CVE-2024-4568
was published
May 6, 2024
In Xpdf 4.05 (and earlier), a PDF object loop in the attachments leads to infinite recursion and...
Low
Unreviewed
CVE-2024-3248
was published
Apr 3, 2024
In Xpdf 4.05 (and earlier), a PDF object loop in an object stream leads to infinite recursion and...
Low
Unreviewed
CVE-2024-3247
was published
Apr 3, 2024
ProTip!
Advisories are also available from the
GraphQL API