GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,744
Maven
5,000+
npm
4,341
NuGet
765
pip
4,113
Pub
12
RubyGems
960
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
4,068 advisories
Filter by severity
Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-62573
was published
Dec 9, 2025
Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-62221
was published
Dec 9, 2025
Use of uninitialized resource in Windows Remote Access Connection Manager allows an authorized...
High
Unreviewed
CVE-2025-62472
was published
Dec 9, 2025
Use after free in Microsoft Office Outlook allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62562
was published
Dec 9, 2025
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62553
was published
Dec 9, 2025
Use after free in Microsoft Brokering File System allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-62569
was published
Dec 9, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62558
was published
Dec 9, 2025
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62563
was published
Dec 9, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62557
was published
Dec 9, 2025
Use after free in Windows Shell allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-62565
was published
Dec 9, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62555
was published
Dec 9, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62559
was published
Dec 9, 2025
Critical Use-After-Free in Wasmi's Linear Memory
High
CVE-2025-66627
was published
for
wasmi
(Rust)
Dec 8, 2025
Use after free in Digital Credentials in Google Chrome prior to 143.0.7499.41 allowed a remote...
High
Unreviewed
CVE-2025-13633
was published
Dec 2, 2025
Use after free in Media Stream in Google Chrome prior to 143.0.7499.41 allowed a remote attacker...
High
Unreviewed
CVE-2025-13638
was published
Dec 2, 2025
UAF vulnerability in the screen recording framework module.
Impact: Successful exploitation of...
High
Unreviewed
CVE-2025-58303
was published
Nov 28, 2025
Use after free in endpoint destructors in Redboltz async_mqtt 10.2.5 allows local users to cause...
High
Unreviewed
CVE-2025-65503
was published
Nov 24, 2025
In bta_hf_client_cb_init of bta_hf_client_main.cc, there is a possible remote code execution due...
High
Unreviewed
CVE-2025-48593
was published
Nov 18, 2025
Use after free in Internals in Google Chrome on iOS prior to 127.0.6533.88 allowed a remote...
High
Unreviewed
CVE-2024-9126
was published
Nov 14, 2025
A maliciously crafted DWG file, when parsed through Autodesk 3ds Max, can force a Use-After-Free...
High
Unreviewed
CVE-2025-11797
was published
Nov 12, 2025
Substance3D - Stager versions 3.1.5 and earlier are affected by a Use After Free vulnerability...
High
Unreviewed
CVE-2025-64531
was published
Nov 11, 2025
Substance3D - Stager versions 3.1.5 and earlier are affected by a Use After Free vulnerability...
High
Unreviewed
CVE-2025-61834
was published
Nov 11, 2025
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to...
High
Unreviewed
CVE-2025-62213
was published
Nov 11, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62216
was published
Nov 11, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62199
was published
Nov 11, 2025
ProTip!
Advisories are also available from the
GraphQL API