GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
114
GitHub Actions
55
Go
4,608
Maven
5,000+
npm
5,000+
NuGet
1,103
pip
5,000+
Pub
13
RubyGems
1,146
Rust
1,528
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
19
88 advisories
Filter by severity
Kernel software installed and running inside a Guest VM may post improper commands to the GPU...
High
Unreviewed
CVE-2026-45199
was published
Aug 21, 2026
The native inference process that Elasticsearch uses to evaluate uploaded machine learning models...
High
Unreviewed
CVE-2026-72642
was published
Aug 13, 2026
Software installed and run as a non-privileged user may conduct improper GPU system calls to...
High
Unreviewed
CVE-2026-49746
was published
Aug 7, 2026
Kernel software installed and running inside a Guest VM may post improper commands to the GPU...
High
Unreviewed
CVE-2026-49745
was published
Jul 24, 2026
Kernel software installed and running inside a Guest VM may post improper commands to the GPU...
High
Unreviewed
CVE-2026-49744
was published
Jul 24, 2026
A web page that contains unusual GPU shader code is loaded into the GPU compiler process and can...
High
Unreviewed
CVE-2026-21734
was published
Jun 26, 2026
Memory safety bug fixed in Firefox 152. This vulnerability was fixed in Firefox 152, Firefox ESR...
High
Unreviewed
CVE-2026-12290
was published
Jun 16, 2026
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_inner: Fix...
Critical
Unreviewed
CVE-2026-46244
was published
Jun 3, 2026
Kernel software installed and running inside a Guest/Host VM may post improper commands to the...
Moderate
Unreviewed
CVE-2026-34193
was published
Jun 1, 2026
MediaArea MediaInfoLib LXF element parsing heap-based buffer overflow vulnerability
High
Unreviewed
CVE-2026-28764
was published
May 21, 2026
NVIDIA SNAP-4 Container contains a vulnerability in the VIRTIO-BLK component where a malicious...
Moderate
Unreviewed
CVE-2025-33215
was published
Mar 24, 2026
Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability affects...
High
Unreviewed
CVE-2026-4693
was published
Mar 24, 2026
A web page that contains unusual GPU shader code is loaded into the GPU compiler process and can...
Critical
Unreviewed
CVE-2026-21732
was published
Mar 21, 2026
lz4_flex's decompression can leak information from uninitialized memory or reused output buffer
High
CVE-2026-32829
was published
for
lz4_flex
(Rust)
Mar 16, 2026
A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD...
Moderate
Unreviewed
CVE-2026-20022
was published
Mar 4, 2026
A use of out-of-range pointer offset vulnerability has been reported to affect Qsync Central. If...
Low
Unreviewed
CVE-2025-54152
was published
Feb 11, 2026
VB-Audio Voicemeeter, Voicemeeter Banana, and Voicemeeter Potato (versions ending in 1.1.1.9, 2.1...
Moderate
Unreviewed
CVE-2026-23764
was published
Jan 22, 2026
UCanCode E-XD++ Visualization Enterprise Suite contains an untrusted pointer dereference...
High
Unreviewed
CVE-2017-20211
was published
Nov 13, 2025
To trigger the issue, three configuration parameters must have specific settings: "hostname-char...
High
Unreviewed
CVE-2025-11232
was published
Oct 29, 2025
Memory corruption while processing an escape call.
High
Unreviewed
CVE-2025-47349
was published
Oct 9, 2025
Memory corruption while performing SCM call.
High
Unreviewed
CVE-2025-27059
was published
Oct 9, 2025
Software installed and run as a non-privileged user may conduct improper GPU system calls to...
High
Unreviewed
CVE-2025-25180
was published
Jul 14, 2025
Memory corruption while handling test pattern generator IOCTL command.
Moderate
Unreviewed
CVE-2024-53017
was published
Jun 3, 2025
A Use of Out-of-range Pointer Offset vulnerability in sslh leads to denial of service on some...
Moderate
Unreviewed
CVE-2025-46806
was published
Jun 2, 2025
Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU...
Moderate
Unreviewed
CVE-2024-47893
was published
May 17, 2025
ProTip!
Advisories are also available from the
GraphQL API