GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,744
Maven
5,000+
npm
4,341
NuGet
765
pip
4,113
Pub
12
RubyGems
960
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
5,692 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
skmsg: pass gfp argument to...
Moderate
Unreviewed
CVE-2022-50363
was published
Sep 17, 2025
Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-62573
was published
Dec 9, 2025
Use-after-free in the Audio/Video: GMP component. This vulnerability affects Firefox < 146.
Critical
Unreviewed
CVE-2025-14326
was published
Dec 9, 2025
In the Linux kernel, the following vulnerability has been resolved:
fs: fix UAF/GPF bug in...
High
Unreviewed
CVE-2022-50367
was published
Sep 17, 2025
In the Linux kernel, the following vulnerability has been resolved:
scsi: qla2xxx: Wait for io...
High
Unreviewed
CVE-2023-53322
was published
Sep 16, 2025
Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-62221
was published
Dec 9, 2025
Critical Use-After-Free in Wasmi's Linear Memory
High
CVE-2025-66627
was published
for
wasmi
(Rust)
Dec 8, 2025
Race condition vulnerability in the audio module. Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-66326
was published
Dec 8, 2025
Use after free in Microsoft Office Outlook allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62562
was published
Dec 9, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62558
was published
Dec 9, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62557
was published
Dec 9, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62559
was published
Dec 9, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62555
was published
Dec 9, 2025
Use of uninitialized resource in Windows Remote Access Connection Manager allows an authorized...
High
Unreviewed
CVE-2025-62472
was published
Dec 9, 2025
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62553
was published
Dec 9, 2025
Use after free in Microsoft Brokering File System allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-62569
was published
Dec 9, 2025
Use after free in Windows Shell allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-62565
was published
Dec 9, 2025
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
High
Unreviewed
CVE-2025-62563
was published
Dec 9, 2025
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix use-after-free in...
High
Unreviewed
CVE-2025-37899
was published
May 20, 2025
In the Linux kernel, the following vulnerability has been resolved:
ovl: fix UAF in...
High
Unreviewed
CVE-2025-21887
was published
Mar 27, 2025
In the Linux kernel, the following vulnerability has been resolved:
scsi: pm80xx: Set phy-...
Moderate
Unreviewed
CVE-2024-47666
was published
Oct 9, 2024
A use after free memory corruption issue exists in Yandex Browser for Desktop prior to version 24...
High
Unreviewed
CVE-2023-26226
was published
May 30, 2025
In the Linux kernel, the following vulnerability has been resolved:
mtd: core: add missing...
High
Unreviewed
CVE-2022-50283
was published
Sep 15, 2025
A flaw was discovered in the X.Org X server’s X Keyboard (Xkb) extension when handling client...
High
Unreviewed
CVE-2025-62230
was published
Oct 30, 2025
A flaw was found in the X.Org X server and Xwayland when processing X11 Present extension...
High
Unreviewed
CVE-2025-62229
was published
Oct 30, 2025
ProTip!
Advisories are also available from the
GraphQL API