GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
114
GitHub Actions
55
Go
4,608
Maven
5,000+
npm
5,000+
NuGet
1,103
pip
5,000+
Pub
13
RubyGems
1,146
Rust
1,528
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
19
280 advisories
Filter by severity
ELECOM wireless LAN access point devices do not check if language parameter has an appropriate...
Moderate
Unreviewed
CVE-2026-42950
was published
May 13, 2026
Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device...
Moderate
Unreviewed
CVE-2026-20754
was published
May 12, 2026
free5GC's UDR nudr-dr DELETE amf-subscriptions panics on missing UE state via nil interface type assertion (single authenticated request)
Moderate
CVE-2026-44324
was published
for
github.com/free5gc/udr
(Go)
May 8, 2026
free5GC's PCF npcf-policyauthorization POST /app-sessions panics on suppFeat=1 with missing AfRoutReq via nil pointer dereference
Moderate
CVE-2026-44317
was published
for
github.com/free5gc/pcf
(Go)
May 8, 2026
Admidio Missing Minimum Administrator Check in Role Membership Removal
Moderate
CVE-2026-41662
was published
for
admidio/admidio
(Composer)
Apr 29, 2026
nimiq-blockchain: Peer-triggerable panic during history sync
Moderate
CVE-2026-34066
was published
for
nimiq-blockchain
(Rust)
Apr 22, 2026
Duplicate Advisory: uutils coreutils has an Improper Check for Unusual or Exceptional Conditions
Moderate
GHSA-7259-cwhx-3xx3
was published
for
coreutils
(Rust)
Apr 22, 2026
•
withdrawn
free5GC UDR: Fail-open handling in PolicyDataSubsToNotifyPost allows unintended subscription creation
Moderate
CVE-2026-40343
was published
for
github.com/free5gc/udr
(Go)
Apr 21, 2026
Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an improper check for unusual or...
Moderate
Unreviewed
CVE-2025-43883
was published
Apr 16, 2026
free5gc UDR fail-open request handling in PolicyDataSubsToNotifySubsIdPut may allow unintended subscription updates after input errors
Moderate
CVE-2026-40249
was published
for
github.com/free5gc/udr
(Go)
Apr 14, 2026
Improper check for exceptional conditions in Device Care prior to SMR Apr-2026 Release 1 allows...
Moderate
Unreviewed
CVE-2026-21007
was published
Apr 13, 2026
An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding...
Moderate
Unreviewed
CVE-2026-33774
was published
Apr 10, 2026
An Improper Check for Unusual or Exceptional Conditions vulnerability in the chassis control...
Moderate
Unreviewed
CVE-2026-33787
was published
Apr 10, 2026
An Improper Check for Unusual or Exceptional Conditions vulnerability in the chassis control...
Moderate
Unreviewed
CVE-2026-33786
was published
Apr 10, 2026
Cosign's verify-blob-attestation reports false positive when payload parsing fails
Moderate
CVE-2026-39395
was published
for
github.com/sigstore/cosign
(Go)
Apr 8, 2026
Mattermost: Authenticated DoS through failure to prevent rendering of external SVGs on link embeds
Moderate
CVE-2026-20719
was published
for
github.com/mattermost/mattermost/server/v8
(Go)
Mar 25, 2026
A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on macOS allows...
Moderate
Unreviewed
CVE-2026-0230
was published
Mar 11, 2026
A denial-of-service (DoS) vulnerability in the Advanced DNS Security (ADNS) feature of Palo Alto...
Moderate
Unreviewed
CVE-2026-0229
was published
Feb 11, 2026
Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device...
Moderate
Unreviewed
CVE-2025-35992
was published
Feb 10, 2026
Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device...
Moderate
Unreviewed
CVE-2025-32735
was published
Feb 10, 2026
Improper conditions check for the Intel(R) Optane(TM) PMem management software before versions...
Moderate
Unreviewed
CVE-2025-20070
was published
Feb 10, 2026
Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal Group invite allows...
Moderate
Unreviewed
CVE-2026-0944
was published
Feb 4, 2026
Improper handling of exceptional conditions in VX800v v1.0 in SIP processing allows an attacker...
Moderate
Unreviewed
CVE-2025-15542
was published
Jan 29, 2026
Issue summary: A type confusion vulnerability exists in the signature
verification of signed PKCS...
Moderate
Unreviewed
CVE-2026-22796
was published
Jan 27, 2026
Issue summary: An invalid or NULL pointer dereference can happen in
an application processing a...
Moderate
Unreviewed
CVE-2026-22795
was published
Jan 27, 2026
ProTip!
Advisories are also available from the
GraphQL API