GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,794
Maven
5,000+
npm
4,402
NuGet
772
pip
4,179
Pub
12
RubyGems
965
Rust
1,075
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
196 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
ipv6: Fix infinite recursion...
High
Unreviewed
CVE-2024-35886
was published
May 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
atm: clip: Fix infinite...
High
Unreviewed
CVE-2025-38459
was published
Jul 25, 2025
uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by...
Low
Unreviewed
CVE-2025-67899
was published
Dec 15, 2025
In the Linux kernel, the following vulnerability has been resolved:
powercap: arm_scmi: Remove...
Moderate
Unreviewed
CVE-2023-53428
was published
Sep 18, 2025
In the Linux kernel, the following vulnerability has been resolved:
crypto: hisilicon/qm -...
Moderate
Unreviewed
CVE-2022-50407
was published
Sep 18, 2025
A stack overflow vulnerability exists in the libexpat library due to the way it handles recursive...
High
Unreviewed
CVE-2024-8176
was published
Mar 14, 2025
Jansson 2.7 and earlier allows context-dependent attackers to cause a denial of service (deep...
High
Unreviewed
CVE-2016-4425
was published
May 17, 2022
MIT Kerberos 5 (aka krb5) before 1.17.2 and 1.18.x before 1.18.3 allows unbounded recursion via...
High
Unreviewed
CVE-2020-28196
was published
May 24, 2022
Uncontrolled recursion in the json2pb component in Apache bRPC (version < 1.15.0) on all...
High
Unreviewed
CVE-2025-59789
was published
Dec 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
LoongArch: KVM: Fix stack...
Moderate
Unreviewed
CVE-2025-39704
was published
Sep 5, 2025
IBM Concert 1.0.0 through 2.0.0 could allow a local user with specific permission to obtain...
Moderate
Unreviewed
CVE-2025-36158
was published
Nov 21, 2025
In the Linux kernel, the following vulnerability has been resolved:
tracing/osnoise: Fix crash...
Moderate
Unreviewed
CVE-2025-38493
was published
Jul 28, 2025
In the Linux kernel, the following vulnerability has been resolved:
powerpc/perf: Optimize...
Moderate
Unreviewed
CVE-2022-50118
was published
Jun 18, 2025
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: btintel: Check...
Moderate
Unreviewed
CVE-2025-38315
was published
Jul 10, 2025
In the Linux kernel, the following vulnerability has been resolved:
fbdev: omapfb: Add 'plane'...
Moderate
Unreviewed
CVE-2025-37851
was published
May 9, 2025
In the Linux kernel, the following vulnerability has been resolved:
perf: Improve missing...
Moderate
Unreviewed
CVE-2022-49782
was published
May 1, 2025
GVCP dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of...
High
Unreviewed
CVE-2024-0208
was published
Jan 3, 2024
DOCSIS dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or...
High
Unreviewed
CVE-2024-0211
was published
Jan 3, 2024
CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or...
High
Unreviewed
CVE-2023-4512
was published
Aug 24, 2023
The SingleDocParser::HandleFlowSequence function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows...
Moderate
Unreviewed
CVE-2019-6285
was published
May 13, 2022
Uncontrolled recursion in XPath evaluation in libxml2 up to and including version 2.9.14 allows a...
Moderate
Unreviewed
CVE-2025-9714
was published
Sep 10, 2025
A stack consumption issue in sqfs_size in Das U-Boot before 2025.01-rc1 occurs via a crafted...
Low
Unreviewed
CVE-2024-57257
was published
Feb 19, 2025
In the Linux kernel, the following vulnerability has been resolved:
bpf, sockmap: Check for any...
Moderate
Unreviewed
CVE-2023-52986
was published
Mar 27, 2025
Uncontrolled recursion in Reader.Read in compress/gzip before Go 1.17.12 and Go 1.18.4 allows an...
High
Unreviewed
CVE-2022-30631
was published
Aug 11, 2022
In Xpdf 4.05 (and earlier), a PDF object loop in a CMap, via the "UseCMap" entry, leads to...
Low
Unreviewed
CVE-2025-11896
was published
Oct 17, 2025
ProTip!
Advisories are also available from the
GraphQL API