GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,819
Erlang
36
GitHub Actions
32
Go
2,410
Maven
5,000+
npm
4,046
NuGet
723
pip
3,842
Pub
12
RubyGems
933
Rust
1,003
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
3,643 advisories
Filter by severity
NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker with local...
High
Unreviewed
CVE-2025-23281
was published
Aug 3, 2025
A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that...
High
Unreviewed
CVE-2025-7425
was published
Jul 10, 2025
A flaw was found in GIMP when processing XCF image files. If a user opens one of these image...
High
Unreviewed
CVE-2025-48798
was published
May 27, 2025
Use after free in Media Stream in Google Chrome prior to 138.0.7204.183 allowed a remote attacker...
High
Unreviewed
CVE-2025-8292
was published
Jul 30, 2025
A maliciously crafted PRT file, when parsed through certain Autodesk products, can force a Use...
High
Unreviewed
CVE-2025-6636
was published
Jul 29, 2025
The JsonToBinaryStream() function is part of the protocol buffers C++ implementation and is used...
High
Unreviewed
CVE-2024-2410
was published
May 3, 2024
Mbed TLS before 3.6.4 allows a use-after-free in certain situations of applications that are...
High
Unreviewed
CVE-2025-47917
was published
Jul 20, 2025
Use after free in WebRTC in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to...
High
Unreviewed
CVE-2025-7657
was published
Jul 15, 2025
Use After Free vulnerability exists in the CATPRODUCT file reading procedure in SOLIDWORKS...
High
Unreviewed
CVE-2025-6971
was published
Jul 15, 2025
Use After Free vulnerability exists in the JT file reading procedure in SOLIDWORKS eDrawings on...
High
Unreviewed
CVE-2025-6973
was published
Jul 15, 2025
Use After Free vulnerability exists in the CATPRODUCT file reading procedure in SOLIDWORKS...
High
Unreviewed
CVE-2025-6972
was published
Jul 15, 2025
Use After Free vulnerability exists in the IPT file reading procedure in SOLIDWORKS eDrawings on...
High
Unreviewed
CVE-2025-7042
was published
Jul 15, 2025
A Use After Free vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS...
High
Unreviewed
CVE-2025-52946
was published
Jul 11, 2025
In the Linux kernel, the following vulnerability has been resolved:
f2fs: fix to avoid use-after...
High
Unreviewed
CVE-2024-27070
was published
May 1, 2024
Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges...
High
Unreviewed
CVE-2025-49733
was published
Jul 8, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-49698
was published
Jul 8, 2025
Use after free in Windows Connected Devices Platform Service allows an unauthorized attacker to...
High
Unreviewed
CVE-2025-49724
was published
Jul 8, 2025
Use after free in Windows KDC Proxy Service (KPSSVC) allows an unauthorized attacker to execute...
High
Unreviewed
CVE-2025-49735
was published
Jul 8, 2025
Use after free in Windows Notification allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-49725
was published
Jul 8, 2025
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-49711
was published
Jul 8, 2025
Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-49685
was published
Jul 8, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-49699
was published
Jul 8, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-49703
was published
Jul 8, 2025
Use after free in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to...
High
Unreviewed
CVE-2025-49675
was published
Jul 8, 2025
Use after free in Windows Notification allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-49726
was published
Jul 8, 2025
ProTip!
Advisories are also available from the
GraphQL API