GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
41
GitHub Actions
41
Go
3,080
Maven
5,000+
npm
4,980
NuGet
825
pip
4,417
Pub
12
RubyGems
988
Rust
1,162
Swift
50
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
291,903 advisories
Filter by severity
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform...
Unknown
Unreviewed
CVE-2025-70222
was published
Mar 5, 2026
An HTTP Request Smuggling vulnerability (CWE-444) has been found in Pingora's parsing of HTTP/1.0...
Critical
Unreviewed
CVE-2026-2835
was published
Mar 5, 2026
An HTTP request smuggling vulnerability (CWE-444) was found in Pingora's handling of HTTP/1.1...
Critical
Unreviewed
CVE-2026-2833
was published
Mar 5, 2026
ONTAP versions 9.12.1 and higher with S3 NAS buckets are susceptible to an information disclosure...
Moderate
Unreviewed
CVE-2026-22052
was published
Mar 5, 2026
Suprema’s BioStar 2 in version 2.9.11.6 allows users to set new password without providing the...
Moderate
Unreviewed
CVE-2025-41257
was published
Mar 5, 2026
pac4j-jwt versions prior to 4.5.9, 5.7.9, and 6.3.3 contain an authentication bypass...
Critical
Unreviewed
CVE-2026-29000
was published
Mar 5, 2026
A cache poisoning vulnerability has been found in the Pingora HTTP proxy framework’s default...
High
Unreviewed
CVE-2026-2836
was published
Mar 5, 2026
The import hook in CPython that handles legacy *.pyc files (SourcelessFileLoader) is incorrectly...
Moderate
Unreviewed
CVE-2026-2297
was published
Mar 5, 2026
Inappropriate implementation in CSS in Google Chrome prior to 145.0.7632.159 allowed a remote...
Unknown
Unreviewed
CVE-2026-3541
was published
Mar 4, 2026
Inappropriate implementation in WebAudio in Google Chrome prior to 145.0.7632.159 allowed a...
Unknown
Unreviewed
CVE-2026-3540
was published
Mar 4, 2026
D-link Dir-513 A1FW110 is vulnerable to Buffer Overflow in the function formTcpipSetup.
Unknown
Unreviewed
CVE-2025-46108
was published
Mar 4, 2026
Integer overflow in Skia in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to...
Unknown
Unreviewed
CVE-2026-3538
was published
Mar 4, 2026
Object lifecycle issue in PowerVR in Google Chrome on Android prior to 145.0.7632.159 allowed a...
Unknown
Unreviewed
CVE-2026-3537
was published
Mar 4, 2026
Inappropriate implementation in V8 in Google Chrome prior to 145.0.7632.159 allowed a remote...
Unknown
Unreviewed
CVE-2026-3543
was published
Mar 4, 2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform...
Unknown
Unreviewed
CVE-2025-70221
was published
Mar 4, 2026
Inappropriate implementation in WebAssembly in Google Chrome prior to 145.0.7632.159 allowed a...
Unknown
Unreviewed
CVE-2026-3542
was published
Mar 4, 2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curtime parameter to the...
Unknown
Unreviewed
CVE-2025-70225
was published
Mar 4, 2026
Object lifecycle issue in DevTools in Google Chrome prior to 145.0.7632.159 allowed an attacker...
High
Unreviewed
CVE-2026-3539
was published
Mar 4, 2026
Heap buffer overflow in WebCodecs in Google Chrome prior to 145.0.7632.159 allowed a remote...
Unknown
Unreviewed
CVE-2026-3544
was published
Mar 4, 2026
Insufficient data validation in Navigation in Google Chrome prior to 145.0.7632.159 allowed a...
Unknown
Unreviewed
CVE-2026-3545
was published
Mar 4, 2026
Integer overflow in ANGLE in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to...
Unknown
Unreviewed
CVE-2026-3536
was published
Mar 4, 2026
A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD...
Moderate
Unreviewed
CVE-2026-20020
was published
Mar 4, 2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform...
Unknown
Unreviewed
CVE-2025-70226
was published
Mar 4, 2026
A vulnerability in the OSPF protocol of Cisco Secure Firewall Adaptive Security Appliance (ASA)...
Moderate
Unreviewed
CVE-2026-20023
was published
Mar 4, 2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform...
Critical
Unreviewed
CVE-2025-70223
was published
Mar 4, 2026
ProTip!
Advisories are also available from the
GraphQL API