GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
74
GitHub Actions
54
Go
4,080
Maven
5,000+
npm
5,000+
NuGet
994
pip
5,000+
Pub
13
RubyGems
1,095
Rust
1,412
Swift
61
Unreviewed advisories
All unreviewed
5,000+
551 advisories
Filter by severity
Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal Group invite allows...
Moderate
Unreviewed
CVE-2026-0944
was published
Feb 4, 2026
openmls has improper tag validation
High
GHSA-8x3w-qj7j-gqhf
was published
for
openmls
(Rust)
Feb 4, 2026
ingress-nginx has Improper Check for Unusual or Exceptional Conditions
Low
CVE-2026-24513
was published
for
k8s.io/ingress-nginx
(Go)
Feb 4, 2026
In Modem, there is a possible system crash due to an uncaught exception. This could lead to...
High
Unreviewed
CVE-2026-20406
was published
Feb 2, 2026
In wlan AP/STA firmware, there is a possible system becoming irresponsive due to an uncaught...
High
Unreviewed
CVE-2026-20419
was published
Feb 2, 2026
In Modem, there is a possible system crash due to an uncaught exception. This could lead to...
High
Unreviewed
CVE-2026-20401
was published
Feb 2, 2026
Improper handling of exceptional conditions in VX800v v1.0 in SIP processing allows an attacker...
Moderate
Unreviewed
CVE-2025-15542
was published
Jan 29, 2026
Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal HTTP Client Manager...
Unknown
Unreviewed
CVE-2025-14840
was published
Jan 28, 2026
Issue summary: An invalid or NULL pointer dereference can happen in
an application processing a...
Moderate
Unreviewed
CVE-2026-22795
was published
Jan 27, 2026
Issue summary: A type confusion vulnerability exists in the signature
verification of signed PKCS...
Moderate
Unreviewed
CVE-2026-22796
was published
Jan 27, 2026
Issue summary: A type confusion vulnerability exists in the TimeStamp Response
verification code...
High
Unreviewed
CVE-2025-69420
was published
Jan 27, 2026
A vulnerability in the Pix-Link LV-WR21Q router's language module allows remote attackers to...
Moderate
Unreviewed
CVE-2025-12387
was published
Jan 27, 2026
go-tuf affected by client DoS via malformed server response
Moderate
CVE-2026-23991
was published
for
github.com/theupdateframework/go-tuf/v2
(Go)
Jan 21, 2026
An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding...
High
Unreviewed
CVE-2026-21910
was published
Jan 15, 2026
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Juniper DHCP service...
Moderate
Unreviewed
CVE-2025-59960
was published
Jan 15, 2026
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol...
Moderate
Unreviewed
CVE-2025-60011
was published
Jan 15, 2026
A vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to...
Moderate
Unreviewed
CVE-2026-0227
was published
Jan 15, 2026
Improper Check for Unusual or Exceptional Conditions vulnerability in ABB WebPro SNMP Card...
High
Unreviewed
CVE-2025-4675
was published
Jan 7, 2026
In Modem, there is a possible system crash due to incorrect error handling. This could lead to...
High
Unreviewed
CVE-2025-20761
was published
Jan 6, 2026
CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper check for unusual or...
High
Unreviewed
CVE-2025-61976
was published
Dec 16, 2025
CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper check for unusual or...
Moderate
Unreviewed
CVE-2025-66357
was published
Dec 16, 2025
Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This...
High
Unreviewed
CVE-2025-14322
was published
Dec 9, 2025
NVIDIA Triton Inference Server contains a vulnerability where an attacker may cause an improper...
High
Unreviewed
CVE-2025-33201
was published
Dec 3, 2025
An Improper Check for Unusual or Exceptional Conditions vulnerability in OpenSMTPD allows local...
Moderate
Unreviewed
CVE-2025-62875
was published
Nov 20, 2025
Drupal core allows Forceful Browsing
Low
CVE-2025-13080
was published
for
drupal/core
(Composer)
Nov 18, 2025
ProTip!
Advisories are also available from the
GraphQL API