GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
114
GitHub Actions
55
Go
4,608
Maven
5,000+
npm
5,000+
NuGet
1,103
pip
5,000+
Pub
13
RubyGems
1,146
Rust
1,528
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
19
585 advisories
Filter by severity
alos-http has unauthenticated remote DoS: malformed path starting with "?" triggers out-of-bounds panic in sanitizeRequestPath, crashing entire server
High
CVE-2026-55484
was published
for
github.com/guno1928/alos-http
(Go)
Aug 28, 2026
Improper state validation in Parser in Google Chrome prior to 152.0.7977.65 allowed a remote...
High
Unreviewed
CVE-2026-79073
was published
Aug 25, 2026
Improper state validation in Performance in Google Chrome prior to 152.0.7977.65 allowed a remote...
High
Unreviewed
CVE-2026-79072
was published
Aug 25, 2026
This vulnerability allows a normal (non-admin) user to disable the Forcepoint One Endpoint...
Moderate
Unreviewed
CVE-2026-11970
was published
Aug 13, 2026
Improper conditions check for some Intel(R) PROSet/Wireless WiFi Software within Ring 2: Device...
High
Unreviewed
CVE-2026-20776
was published
Aug 11, 2026
Improper conditions check for the Intel(R) NPU Driver for all versions within Ring 3: User...
Moderate
Unreviewed
CVE-2026-20769
was published
Aug 11, 2026
Improper conditions check in the firmware for the Intel(R) NPU Driver for all versions within...
Moderate
Unreviewed
CVE-2026-20783
was published
Aug 11, 2026
Improper conditions check for some Intel(R) PROSet/Wireless WiFi Software within Ring 2: Device...
High
Unreviewed
CVE-2026-20747
was published
Aug 11, 2026
Improper conditions check for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring...
High
Unreviewed
CVE-2026-20739
was published
Aug 11, 2026
A vulnerability has been identified in Desigo DXR2 (All versions < V01.21.233.16-7862), Desigo...
Moderate
Unreviewed
CVE-2026-59693
was published
Aug 11, 2026
SAP Approuter does not consistently handle certain error conditions. An attacker with low...
Low
Unreviewed
CVE-2026-66774
was published
Aug 11, 2026
Injection of false emergency or status messages over CPDLC may lead to misallocation of resources...
High
Unreviewed
CVE-2025-71412
was published
Aug 7, 2026
Malformed or out-of-sequence frames at the Aviation Very High Frequency Link Control X.25 layers...
Moderate
Unreviewed
CVE-2025-71413
was published
Aug 7, 2026
A vulnerability has been found in epsilla-cloud vectordb up to 0.3.18...
Low
Unreviewed
CVE-2026-18852
was published
Aug 5, 2026
Socket.IO: Zero-attachment Memory Exhaustion
High
CVE-2026-69185
was published
for
socket.io-parser
(npm)
Aug 3, 2026
In imgsensor, there is a possible application crash due to incorrect error handling. This could...
Moderate
Unreviewed
CVE-2026-20486
was published
Aug 3, 2026
CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause...
Critical
Unreviewed
CVE-2026-0667
was published
Jul 29, 2026
Russh: client wrong-length X25519 `clone_from_slice` panic (pre-auth DoS)
Moderate
CVE-2026-73429
was published
for
russh
(Rust)
Jul 24, 2026
Russh: Pre-auth remote panic via all-zero Curve25519 peer public value (encode_mpint OOB)
Moderate
CVE-2026-73430
was published
for
russh
(Rust)
Jul 24, 2026
With NLnet Labs Unbound up to and including version 1.25.1, applications using libunbound and...
Moderate
Unreviewed
CVE-2026-44621
was published
Jul 22, 2026
SurrealDB versions before 3.1.0 contain a denial of service vulnerability where malicious LIVE...
High
Unreviewed
CVE-2026-63754
was published
Jul 20, 2026
HCL DevOps Loop is affected by insufficient input validation that allows special characters where...
Low
Unreviewed
CVE-2026-21764
was published
Jul 17, 2026
Mattermost Desktop App versions <=6.2 5.5.13 6.0.2.0 fail to properly null check when checking...
Moderate
Unreviewed
CVE-2026-8075
was published
Jul 17, 2026
An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding...
Moderate
Unreviewed
CVE-2026-57031
was published
Jul 10, 2026
An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding...
High
Unreviewed
CVE-2026-57020
was published
Jul 10, 2026
ProTip!
Advisories are also available from the
GraphQL API