GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,757
Maven
5,000+
npm
4,363
NuGet
766
pip
4,128
Pub
12
RubyGems
961
Rust
1,070
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
2,113 advisories
Filter by severity
On affected platforms running Arista EOS with OSPFv3 configured, a specially crafted packet can...
High
Unreviewed
CVE-2025-8872
was published
Dec 16, 2025
SyncBreeze 15.2.24 contains a denial of service vulnerability in the login authentication...
High
Unreviewed
CVE-2023-53873
was published
Dec 15, 2025
minaliC 2.0.0 contains a denial of service vulnerability that allows remote attackers to crash...
High
Unreviewed
CVE-2024-58306
was published
Dec 12, 2025
An integer overflow in the psdParser::ReadImageData function of FreeImage v3.18.0 and before...
High
Unreviewed
CVE-2025-65803
was published
Dec 10, 2025
In multiple locations, there is a possible permanent denial of service due to resource exhaustion...
Moderate
Unreviewed
CVE-2025-48569
was published
Dec 8, 2025
In onHeaderDecoded of LocalImageResolver.java, there is a possible persistent denial of service...
High
Unreviewed
CVE-2025-48631
was published
Dec 8, 2025
In updateNotificationChannelGroupFromPrivilegedListener of NotificationManagerService.java, there...
Moderate
Unreviewed
CVE-2025-48576
was published
Dec 8, 2025
In multiple functions of NotificationManagerService.java, there is a possible way to bypass the...
Moderate
Unreviewed
CVE-2025-48584
was published
Dec 8, 2025
In verifyAndGetBypass of AppOpsService.java, there is a possible method for a malicious app to...
Moderate
Unreviewed
CVE-2025-48590
was published
Dec 8, 2025
In InputMethodInfo of InputMethodInfo.java, there is a possible permanent denial of service due...
Moderate
Unreviewed
CVE-2025-48603
was published
Dec 8, 2025
In getComponentName of MediaButtonReceiverHolder.java, there is a possible desync in persistence...
High
Unreviewed
CVE-2025-48615
was published
Dec 8, 2025
When reading an HTTP response from a server, if no read amount is specified, the default behavior...
Moderate
Unreviewed
CVE-2025-13836
was published
Dec 1, 2025
BACnet Test Server versions up to and including 1.01 contains a remote denial of service...
High
Unreviewed
CVE-2020-36872
was published
Nov 27, 2025
An issue was discovered in Veal98 Echo Open-Source Community System 2.2 thru 2.3 allowing an...
High
Unreviewed
CVE-2025-51741
was published
Nov 25, 2025
HackerOne community member Dao Hoang Anh (yoyomiski) has reported an uncontrolled resource...
Moderate
Unreviewed
CVE-2025-55128
was published
Nov 20, 2025
A vulnerability in the web-based management interface of affected products could allow an...
High
Unreviewed
CVE-2025-37161
was published
Nov 18, 2025
An uncontrolled resource consumption vulnerability in the web server of Zyxel DX3301-T0 firmware...
Moderate
Unreviewed
CVE-2025-6599
was published
Nov 18, 2025
Denial-of-service condition in M-Files Server versions before 25.11.15392.1 allows an...
High
Unreviewed
CVE-2025-11681
was published
Nov 17, 2025
ReQuest Serious Play F3 Media Server versions 7.0.3.4968 (Pro), 7.0.2.4954, 6.5.2.4954, 6.4.2...
High
Unreviewed
CVE-2021-4465
was published
Nov 15, 2025
Positive Technologies MaxPatrol 8 and XSpider contain a remote denial-of-service vulnerability in...
High
Unreviewed
CVE-2021-4467
was published
Nov 15, 2025
The Epson Stylus SX510W embedded web management service fails to properly handle consecutive...
High
Unreviewed
CVE-2023-7326
was published
Nov 13, 2025
Uncontrolled resource consumption for some Gaudi software before version 1.21.0 within Ring 3:...
Moderate
Unreviewed
CVE-2025-27249
was published
Nov 11, 2025
In Open5GS 2.7.6, AMF crashes when receiving an abnormal NGSetupRequest message, resulting in...
High
Unreviewed
CVE-2025-63288
was published
Nov 10, 2025
An issue in KiloView Dual Channel 4k HDMI & 3G-SDI HEVC Video Encoder Firmware v.1.20.0006 allows...
High
Unreviewed
CVE-2025-63560
was published
Nov 6, 2025
An issue was discovered in libarchive bsdtar before version 3.8.1 in function apply_substitution...
Moderate
Unreviewed
CVE-2025-60753
was published
Nov 5, 2025
ProTip!
Advisories are also available from the
GraphQL API