GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,819
Erlang
36
GitHub Actions
32
Go
2,410
Maven
5,000+
npm
4,046
NuGet
723
pip
3,842
Pub
12
RubyGems
933
Rust
1,003
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
531 advisories
Filter by severity
A use-after-free issue was addressed by removing the vulnerable code. This issue is fixed in...
Critical
Unreviewed
CVE-2025-43222
was published
Jul 30, 2025
There is a possible UAF due to a logic error in the code. This could lead to local escalation of...
Critical
Unreviewed
CVE-2024-47040
was published
Dec 18, 2024
SoftEtherVPN 5.02.5187 is vulnerable to Use after Free in the Command.c file via the...
Critical
Unreviewed
CVE-2025-25568
was published
Mar 12, 2025
A use-after-free in FontFaceSet resulted in a potentially exploitable crash. This vulnerability...
Critical
Unreviewed
CVE-2025-6424
was published
Jun 26, 2025
libexpat before 2.4.9 has a use-after-free in the doContent function in xmlparse.c.
Critical
Unreviewed
CVE-2022-40674
was published
Sep 15, 2022
A vulnerability was found in Exim and classified as problematic. This issue affects the function...
Critical
Unreviewed
CVE-2022-3620
was published
Oct 21, 2022
The BT Hfp Client module has a Use-After-Free (UAF) vulnerability.Successful exploitation of this...
Critical
Unreviewed
CVE-2022-38983
was published
Oct 14, 2022
A double-free condition exists in contrib/shpsort.c of shapelib 1.5.0 and older releases. This...
Critical
Unreviewed
CVE-2022-0699
was published
Oct 17, 2022
A use-after-free issue was addressed with improved memory management. This issue is fixed in...
Critical
Unreviewed
CVE-2025-24252
was published
Apr 29, 2025
ImageMagick before 6.9.9-24 and 7.x before 7.0.7-12 has a use-after-free in Magick::Image::read...
Critical
Unreviewed
CVE-2017-17499
was published
May 13, 2022
Use-after-free vulnerability in Decoder.cpp in libpgf before 6.15.32.
Critical
Unreviewed
CVE-2015-6673
was published
May 13, 2022
ext/standard/var_unserializer.re in PHP 7.0.x through 7.0.22 and 7.1.x through 7.1.8 is prone to...
Critical
Unreviewed
CVE-2017-12932
was published
May 14, 2022
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10...
Critical
Unreviewed
CVE-2017-2518
was published
May 13, 2022
In Veritas Backup Exec 2014 before build 14.1.1187.1126, 15 before build 14.2.1180.3160, and 16...
Critical
Unreviewed
CVE-2017-8895
was published
May 13, 2022
Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable use after free...
Critical
Unreviewed
CVE-2017-3063
was published
May 14, 2022
Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable use after free...
Critical
Unreviewed
CVE-2017-3059
was published
May 14, 2022
Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable use after free...
Critical
Unreviewed
CVE-2017-3062
was published
May 14, 2022
Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable use after free...
Critical
Unreviewed
CVE-2017-2985
was published
May 14, 2022
In all versions of PHP 7, during the unserialization process, resizing the 'properties' hash...
Critical
Unreviewed
CVE-2016-7479
was published
May 14, 2022
Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable use after free...
Critical
Unreviewed
CVE-2017-2932
was published
May 14, 2022
ComponentInstaller Modification in ComponentInstaller in Google ChromeOS 124.0.6367.34 on...
Critical
Unreviewed
CVE-2025-1704
was published
Apr 17, 2025
A heap use-after-free flaw was found in curl versions from 7.59.0 through 7.61.1 in the code...
Critical
Unreviewed
CVE-2018-16840
was published
May 13, 2022
Session history navigations may have led to a use-after-free and potentially exploitable crash....
Critical
Unreviewed
CVE-2022-34470
was published
Dec 22, 2022
A use-after-free in WebGL extensions could have led to a potentially exploitable crash. This...
Critical
Unreviewed
CVE-2022-46882
was published
Dec 22, 2022
If an out-of-memory condition occurred when creating a JavaScript global, a JavaScript realm may...
Critical
Unreviewed
CVE-2022-45406
was published
Dec 22, 2022
ProTip!
Advisories are also available from the
GraphQL API