GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,894
Erlang
38
GitHub Actions
38
Go
2,558
Maven
5,000+
npm
4,232
NuGet
751
pip
4,001
Pub
12
RubyGems
953
Rust
1,042
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,026 advisories
Filter by severity
When an iRule using an ILX::call command is configured on a virtual server, undisclosed traffic...
High
Unreviewed
CVE-2025-53474
was published
Oct 15, 2025
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This...
High
Unreviewed
CVE-2025-20709
was published
Oct 14, 2025
The webserver is vulnerable to a denial of service condition. An unauthenticated remote attacker...
Moderate
Unreviewed
CVE-2025-41706
was published
Oct 14, 2025
The websocket handler is vulnerable to a denial of service condition. An unauthenticated remote...
Moderate
Unreviewed
CVE-2025-41707
was published
Oct 14, 2025
A Buffer Copy without Checking Size of Input vulnerability in the
Session Initialization...
High
Unreviewed
CVE-2025-52960
was published
Oct 9, 2025
memory corruption while processing an image encoding completion event.
High
Unreviewed
CVE-2025-47341
was published
Oct 9, 2025
Wavlink M86X3A_V240730 contains a buffer overflow vulnerability in the /cgi-bin/ExportAllSettings...
High
Unreviewed
CVE-2025-55847
was published
Sep 26, 2025
libsmb2 6.2+ is vulnerable to Buffer Overflow. When processing SMB2 chained PDUs (NextCommand),...
High
Unreviewed
CVE-2025-57632
was published
Sep 25, 2025
A vulnerability in the VPN web server of Cisco Secure Firewall Adaptive Security Appliance (ASA)...
Critical
Unreviewed
CVE-2025-20333
was published
Sep 25, 2025
A vulnerability in the CLI of Cisco IOS Software and Cisco IOS XE Software could allow an...
Moderate
Unreviewed
CVE-2025-20149
was published
Sep 24, 2025
Memory corruption when passing parameters to the Trusted Virtual Machine during the handshake.
High
Unreviewed
CVE-2025-21476
was published
Sep 24, 2025
Memory corruption while performing private key encryption in trusted application.
High
Unreviewed
CVE-2025-21481
was published
Sep 24, 2025
A buffer overflow vulnerability in Novakon P series allows attackers to gain root permission...
Critical
Unreviewed
CVE-2025-9962
was published
Sep 23, 2025
A maliciously crafted PRT file, when parsed through certain Autodesk products, can force a Memory...
High
Unreviewed
CVE-2025-8892
was published
Sep 22, 2025
A security flaw has been discovered in D-Link DIR-825 up to 2.10. Affected by this vulnerability...
High
Unreviewed
CVE-2025-10666
was published
Sep 18, 2025
A path handling issue was addressed with improved validation. This issue is fixed in Xcode 26....
Moderate
Unreviewed
CVE-2025-43370
was published
Sep 16, 2025
A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2025-43312
was published
Sep 16, 2025
Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow via the wifiTimeClose...
Moderate
Unreviewed
CVE-2025-57573
was published
Sep 10, 2025
Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow via the portList parameter...
Moderate
Unreviewed
CVE-2025-57569
was published
Sep 10, 2025
Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow via the onlineList...
Moderate
Unreviewed
CVE-2025-57572
was published
Sep 10, 2025
Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow. via the macFilterList...
Moderate
Unreviewed
CVE-2025-57571
was published
Sep 10, 2025
Tenda F3 V12.01.01.48_multi and after is vulnerable to Buffer Overflow via the QosList parameter...
Moderate
Unreviewed
CVE-2025-57570
was published
Sep 10, 2025
Buffer overflow in certain Zoom Workplace Clients may allow an authenticated user to conduct a...
Moderate
Unreviewed
CVE-2025-49458
was published
Sep 10, 2025
A vulnerability was found in D-Link DIR-825 1.08.01. This impacts the function get_ping6_app_stat...
High
Unreviewed
CVE-2025-10034
was published
Sep 6, 2025
An authenticated attacker may remotely execute arbitrary code via the CWMP binary on the devices...
High
Unreviewed
CVE-2025-9961
was published
Sep 6, 2025
ProTip!
Advisories are also available from the
GraphQL API