GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,508
Maven
5,000+
npm
5,000+
NuGet
1,091
pip
5,000+
Pub
13
RubyGems
1,145
Rust
1,511
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
689 advisories
Filter by severity
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an...
High
Unreviewed
CVE-2026-55022
was published
Jul 14, 2026
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an...
High
Unreviewed
CVE-2026-55025
was published
Jul 14, 2026
Access of resource using incompatible type ('type confusion') in SQL Server allows an authorized...
Moderate
Unreviewed
CVE-2026-54116
was published
Jul 14, 2026
Access of resource using incompatible type ('type confusion') in Windows OLE allows an...
High
Unreviewed
CVE-2026-50686
was published
Jul 14, 2026
Access of resource using incompatible type ('type confusion') in Windows Connected User...
High
Unreviewed
CVE-2026-50421
was published
Jul 14, 2026
Access of resource using incompatible type ('type confusion') in Windows Kernel allows an...
High
Unreviewed
CVE-2026-50390
was published
Jul 14, 2026
Access of resource using incompatible type ('type confusion') in Composite Image File System...
Moderate
Unreviewed
CVE-2026-50381
was published
Jul 14, 2026
Access of resource using incompatible type ('type confusion') vulnerability in Samsung Open...
Moderate
Unreviewed
CVE-2026-58305
was published
Jul 9, 2026
async-tar PAX extension-header desync enables tar entry/content smuggling
Moderate
CVE-2026-53600
was published
for
async-tar
(Rust)
Jul 8, 2026
There is an abnormal annotation within the PDF that is referenced by other objects. When the...
High
Unreviewed
CVE-2026-57254
was published
Jul 8, 2026
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based)...
High
Unreviewed
CVE-2026-58285
was published
Jul 3, 2026
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based)...
High
Unreviewed
CVE-2026-58290
was published
Jul 3, 2026
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based)...
High
Unreviewed
CVE-2026-58295
was published
Jul 3, 2026
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based)...
Critical
Unreviewed
CVE-2026-58289
was published
Jul 3, 2026
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based)...
High
Unreviewed
CVE-2026-58283
was published
Jul 3, 2026
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based)...
High
Unreviewed
CVE-2026-57975
was published
Jul 3, 2026
Zebra Address Book Aborted by IPv4-Mapped Mempool Misbehavior Update
High
CVE-2026-52829
was published
for
zebra-network
(Rust)
Jul 2, 2026
Type Confusion in Tint in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to...
Critical
Unreviewed
CVE-2026-14423
was published
Jul 2, 2026
Type Confusion in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to execute...
High
Unreviewed
CVE-2026-14431
was published
Jul 2, 2026
Type Confusion in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain...
Moderate
Unreviewed
CVE-2026-14148
was published
Jul 1, 2026
Type Confusion in Bluetooth in Google Chrome on Windows prior to 150.0.7871.47 allowed an...
Moderate
Unreviewed
CVE-2026-14119
was published
Jul 1, 2026
Heap buffer overflow in V8 in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to...
High
Unreviewed
CVE-2026-13967
was published
Jul 1, 2026
Type Confusion in ANGLE in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to...
Critical
Unreviewed
CVE-2026-13883
was published
Jul 1, 2026
Type Confusion in Chrome Tabs in Google Chrome prior to 150.0.7871.47 allowed a remote attacker...
High
Unreviewed
CVE-2026-13803
was published
Jul 1, 2026
Type Confusion in Dawn in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had...
Critical
Unreviewed
CVE-2026-13776
was published
Jul 1, 2026
ProTip!
Advisories are also available from the
GraphQL API