GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,475
Maven
5,000+
npm
5,000+
NuGet
1,091
pip
5,000+
Pub
13
RubyGems
1,144
Rust
1,511
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
7,287 advisories
Filter by severity
In multiple functions of vpu_ioctl.c, there is a possible use after free due to a use after free....
Critical
Unreviewed
CVE-2026-0163
was published
Aug 4, 2026
A flaw in Node.js HTTP/2 handling allows `nghttp2_session_mem_send()` to be called re-entrantly...
High
Unreviewed
CVE-2026-56848
was published
Aug 4, 2026
In the Linux kernel, the following vulnerability has been resolved:
crypto: rk3288 - Fix use...
High
Unreviewed
CVE-2024-35792
was published
May 17, 2024
In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Set send and...
High
Unreviewed
CVE-2021-47196
was published
Apr 10, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: sparx5: Fix use after...
High
Unreviewed
CVE-2024-26856
was published
Apr 17, 2024
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code over a...
High
Unreviewed
CVE-2026-62870
was published
Aug 4, 2026
Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code...
High
Unreviewed
CVE-2026-66315
was published
Aug 4, 2026
In display, there is a possible memory corruption due to use after free. This could lead to local...
Moderate
Unreviewed
CVE-2026-20473
was published
Aug 3, 2026
AIOHTTP: Out-of-bounds heap read in C HTTP response parser error path (malformed chunked response)
High
CVE-2026-69244
was published
for
aiohttp
(pip)
Aug 3, 2026
Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had...
High
Unreviewed
CVE-2026-17729
was published
Jul 30, 2026
In the Linux kernel, the following vulnerability has been resolved:
xfrm: defensively unhash...
High
Unreviewed
CVE-2026-46116
was published
May 28, 2026
FreeRDP before 3.29.0 contains a client-side heap use-after-free in the async update message...
High
Unreviewed
CVE-2026-67299
was published
Aug 1, 2026
FreeRDP before 3.29.0 contains client-side heap use-after-free vulnerabilities in the async...
High
Unreviewed
CVE-2026-67300
was published
Aug 1, 2026
Use after free in Audio in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker...
High
Unreviewed
CVE-2026-17784
was published
Jul 30, 2026
Use after free in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had...
Critical
Unreviewed
CVE-2026-17832
was published
Jul 30, 2026
Use after free in Views in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had...
Critical
Unreviewed
CVE-2026-17652
was published
Jul 30, 2026
Use after free in ANGLE in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote...
High
Unreviewed
CVE-2026-17811
was published
Jul 30, 2026
Use after free in Media in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had...
Critical
Unreviewed
CVE-2026-17804
was published
Jul 30, 2026
MessagePack for Python: Out-of-bounds read / crash on Unpacker reuse after a caught error
High
GHSA-6v7p-g79w-8964
was published
for
msgpack
(pip)
Jun 19, 2026
A heap use-after-free vulnerability in the TransferSubscriptions service
in open62541 may allow...
High
Unreviewed
CVE-2026-63035
was published
Jul 31, 2026
Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a...
High
Unreviewed
CVE-2026-17920
was published
Jul 30, 2026
Use after free in DNS in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had...
Critical
Unreviewed
CVE-2026-17924
was published
Jul 30, 2026
Use after free in DataTransfer in Google Chrome on Windows prior to 151.0.7922.72 allowed a local...
Moderate
Unreviewed
CVE-2026-17932
was published
Jul 30, 2026
Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute...
High
Unreviewed
CVE-2026-17665
was published
Jul 30, 2026
Use after free in Media in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote...
High
Unreviewed
CVE-2026-17723
was published
Jul 30, 2026
ProTip!
Advisories are also available from the
GraphQL API