GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,508
Maven
5,000+
npm
5,000+
NuGet
1,091
pip
5,000+
Pub
13
RubyGems
1,145
Rust
1,511
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
727 advisories
Filter by severity
Yamux vulnerable to remote Panic via malformed Data frame with SYN set and len = 262145
High
CVE-2026-32314
was published
for
yamux
(Rust)
Mar 13, 2026
A crafted JavaScript input can trigger an internal assertion failure in QuickJS release 2025-09...
Moderate
Unreviewed
CVE-2025-69653
was published
Mar 6, 2026
In the Linux kernel, the following vulnerability has been resolved:
romfs: check...
Moderate
Unreviewed
CVE-2026-23238
was published
Mar 4, 2026
Transient DOS when MAC configures config id greater than supported maximum value.
Moderate
Unreviewed
CVE-2025-47384
was published
Mar 2, 2026
Transient DOS when an LTE RLC packet with invalid TB is received by UE.
Moderate
Unreviewed
CVE-2025-47371
was published
Mar 2, 2026
psd-tools: Compression module has unguarded zlib decompression, missing dimension validation, and hardening gaps
Moderate
CVE-2026-27809
was published
for
psd-tools
(pip)
Feb 26, 2026
A vulnerability was detected in Open5GS up to 2.7.6. The affected element is the function...
Moderate
Unreviewed
CVE-2026-2523
was published
Feb 16, 2026
A vulnerability has been found in Vnet/IP Interface Package provided by Yokogawa Electric...
Moderate
Unreviewed
CVE-2025-48019
was published
Feb 13, 2026
A vulnerability has been found in Vnet/IP Interface Package provided by Yokogawa Electric...
Moderate
Unreviewed
CVE-2025-48023
was published
Feb 13, 2026
A vulnerability has been found in Vnet/IP Interface Package provided by Yokogawa Electric...
Moderate
Unreviewed
CVE-2025-48020
was published
Feb 13, 2026
An authorized user may trigger a server crash by running a $geoNear pipeline with certain invalid...
High
Unreviewed
CVE-2026-25610
was published
Feb 10, 2026
A truncated 802.15.4 packet can lead to an assert, resulting in a denial of service.
Moderate
Unreviewed
CVE-2025-12131
was published
Feb 5, 2026
In the Linux kernel, the following vulnerability has been resolved:
iommu/io-pgtable-arm: fix...
Moderate
Unreviewed
CVE-2026-23067
was published
Feb 4, 2026
In Modem, there is a possible system crash due to a missing bounds check. This could lead to...
High
Unreviewed
CVE-2026-20405
was published
Feb 2, 2026
In Modem, there is a possible system crash due to improper input validation. This could lead to...
High
Unreviewed
CVE-2026-20422
was published
Feb 2, 2026
In Modem, there is a possible system crash due to an uncaught exception. This could lead to...
High
Unreviewed
CVE-2026-20401
was published
Feb 2, 2026
A flaw has been found in Open5GS up to 2.7.6. The impacted element is the function...
Moderate
Unreviewed
CVE-2026-1738
was published
Feb 2, 2026
A vulnerability was detected in Open5GS up to 2.7.6. The affected element is the function...
Moderate
Unreviewed
CVE-2026-1737
was published
Feb 2, 2026
A security vulnerability has been detected in Open5GS up to 2.7.6. Impacted is the function...
Moderate
Unreviewed
CVE-2026-1736
was published
Feb 2, 2026
Insufficient epoch key slot processing in OpenVPN 2.7_alpha1 through 2.7_rc5 allows remote...
Low
Unreviewed
CVE-2025-15497
was published
Jan 30, 2026
In the Linux kernel, the following vulnerability has been resolved:
libceph: replace overzealous...
Moderate
Unreviewed
CVE-2026-22990
was published
Jan 23, 2026
go-tuf affected by client DoS via malformed server response
Moderate
CVE-2026-23991
was published
for
github.com/theupdateframework/go-tuf/v2
(Go)
Jan 21, 2026
Malformed BRID/HHIT records can cause `named` to terminate unexpectedly.
This issue affects BIND...
High
Unreviewed
CVE-2025-13878
was published
Jan 21, 2026
A vulnerability was identified in Open5GS up to 2.7.5. This vulnerability affects the function...
Moderate
Unreviewed
CVE-2025-15531
was published
Jan 17, 2026
A vulnerability was determined in Open5GS up to 2.7.6. This affects the function...
Moderate
Unreviewed
CVE-2025-15530
was published
Jan 17, 2026
ProTip!
Advisories are also available from the
GraphQL API