GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
114
GitHub Actions
55
Go
4,638
Maven
5,000+
npm
5,000+
NuGet
1,104
pip
5,000+
Pub
13
RubyGems
1,150
Rust
1,529
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
19
713 advisories
Filter by severity
A weakness has been identified in GPAC up to 26.02.0. This affects an unknown part of the file...
Low
Unreviewed
CVE-2026-13523
was published
Jun 29, 2026
A vulnerability was detected in 78 xiaozhi-esp32 up to 2.2.6. This vulnerability affects the...
Low
Unreviewed
CVE-2026-13491
was published
Jun 28, 2026
An issue in the DSO::mmap_and_copy function of relibc commit 61f42d allows attackers to cause a...
High
Unreviewed
CVE-2026-38641
was published
Jun 26, 2026
A denial of service security issue exists in the
affected product. The security issue stems from...
High
Unreviewed
CVE-2026-11317
was published
Jun 16, 2026
aiohttp: Payload Response Resources Are Not Closed After Mid-Body Disconnect
Low
CVE-2026-54280
was published
for
aiohttp
(pip)
Jun 15, 2026
Idira Endpoint Privilege Manager Linux Agent versions prior to 26.5 allow a local attacker to...
High
Unreviewed
CVE-2026-45174
was published
Jun 12, 2026
bytedance InfiniStore: Denial of Service via Non-Cryptographic Hashing in InfiniStore KV Map
Low
CVE-2026-11312
was published
for
infinistore
(pip)
Jun 5, 2026
SGLang is Vulnerable to DoS via the data_hash Function
Low
CVE-2026-10775
was published
for
sglang
(pip)
Jun 4, 2026
A vulnerability was found in SourceCodester Customer Review App 1.0. Affected by this...
Low
Unreviewed
CVE-2026-10295
was published
Jun 2, 2026
A security flaw has been discovered in ggml-org whisper.cpp up to 1.8.2. This vulnerability...
Low
Unreviewed
CVE-2026-10298
was published
Jun 2, 2026
A vulnerability has been found in Assimp up to 6.0.4. Affected by this issue is the function...
Low
Unreviewed
CVE-2026-10199
was published
Jun 1, 2026
A vulnerability was detected in Assimp up to 6.0.4. Affected is the function glTF2Importer:...
Low
Unreviewed
CVE-2026-10197
was published
Jun 1, 2026
A flaw has been found in Assimp up to 6.0.4. Affected by this vulnerability is the function...
Low
Unreviewed
CVE-2026-10198
was published
Jun 1, 2026
A vulnerability was found in Tenda W12 3.0.0.7(4763). This issue affects the function...
Moderate
Unreviewed
CVE-2026-10190
was published
May 31, 2026
A weakness has been identified in Open5GS up to 2.7.7. This issue affects the function...
Low
Unreviewed
CVE-2026-10117
was published
May 30, 2026
A security flaw has been discovered in Open5GS up to 2.7.7. This vulnerability affects the...
Low
Unreviewed
CVE-2026-10116
was published
May 30, 2026
A vulnerability was identified in Open5GS up to 2.7.7. This affects an unknown part in the...
Low
Unreviewed
CVE-2026-10115
was published
May 30, 2026
A vulnerability was found in Open5GS up to 2.7.7. Affected by this vulnerability is an unknown...
Low
Unreviewed
CVE-2026-10113
was published
May 30, 2026
BoxLite has a Timeout Bypass Vulnerability
Moderate
CVE-2026-47213
was published
for
boxlite
(pip)
May 29, 2026
A security flaw has been discovered in GPAC up to 2.4.0. Affected is the function MergeFragment...
Low
Unreviewed
CVE-2026-9567
was published
May 26, 2026
vllm has Improper Resource Shutdown or Release
Moderate
CVE-2026-9540
was published
for
vllm
(pip)
May 26, 2026
A security flaw has been discovered in GNU LibreDWG up to 0.14. The affected element is the...
Low
Unreviewed
CVE-2026-9529
was published
May 26, 2026
A security flaw has been discovered in GNU LibreDWG up to 0.14. This impacts the function...
Low
Unreviewed
CVE-2026-9503
was published
May 26, 2026
postcss-selector-parser allows denial of service through uncontrolled AST recursion
Low
CVE-2026-9358
was published
for
postcss-selector-parser
(npm)
May 26, 2026
AMF Vulnerable to Improper Resource Shutdown or Release
Low
CVE-2026-8783
was published
for
github.com/omec-project/amf
(Go)
May 18, 2026
ProTip!
Advisories are also available from the
GraphQL API