GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,819
Erlang
36
GitHub Actions
32
Go
2,410
Maven
5,000+
npm
4,046
NuGet
723
pip
3,842
Pub
12
RubyGems
933
Rust
1,003
Swift
38
Unreviewed advisories
All unreviewed
5,000+
105 advisories
Filter by severity
Duplicate Advisory: `openssl` `X509VerifyParamRef::set_host` buffer over-read
Moderate
GHSA-gw89-822v-8v8g
was published
for
openssl
(Rust)
Jul 28, 2025
•
withdrawn
Buffer Over-read vulnerability in ABB AC500 V2.This issue affects AC500 V2: through 2.5.2.
Moderate
Unreviewed
CVE-2025-7745
was published
Jul 25, 2025
Buffer over-read in Storage Port Driver allows an authorized attacker to disclose information...
Moderate
Unreviewed
CVE-2025-49684
was published
Jul 8, 2025
Buffer over-read in Windows Storage Management Provider allows an authorized attacker to disclose...
Moderate
Unreviewed
CVE-2025-24068
was published
Jun 10, 2025
Buffer over-read in Windows SMB allows an authorized attacker to disclose information over a...
Moderate
Unreviewed
CVE-2025-29956
was published
May 13, 2025
Buffer over-read in PostgreSQL GB18030 encoding validation allows a database input provider to...
Moderate
Unreviewed
CVE-2025-4207
was published
May 8, 2025
ECMP dissector crash in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via...
Moderate
Unreviewed
CVE-2024-11596
was published
May 7, 2025
Memory corruption due to improper bounds check while command handling in camera-kernel driver.
Moderate
Unreviewed
CVE-2024-45568
was published
May 6, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-26672
was published
Apr 8, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-26676
was published
Apr 8, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-26664
was published
Apr 8, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-21203
was published
Apr 8, 2025
A flaw was found in libsoup. A vulnerability in sniff_feed_or_html() and skip_insignificant_space...
Moderate
Unreviewed
CVE-2025-32053
was published
Apr 3, 2025
A flaw was found in libsoup. A vulnerability in the sniff_unknown() function may lead to heap...
Moderate
Unreviewed
CVE-2025-32052
was published
Apr 3, 2025
Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information locally.
Moderate
Unreviewed
CVE-2025-24992
was published
Mar 11, 2025
Transient DOS during hypervisor virtual I/O operation in a virtual machine.
Moderate
Unreviewed
CVE-2024-43056
was published
Mar 3, 2025
libarchive through 3.7.7 has a heap-based buffer over-read in header_gnu_longlink in...
Moderate
Unreviewed
CVE-2024-57970
was published
Feb 16, 2025
Information disclosure during audio playback.
Moderate
Unreviewed
CVE-2024-38416
was published
Feb 3, 2025
Information disclosure while processing information on firmware image during core initialization.
Moderate
Unreviewed
CVE-2024-38414
was published
Feb 3, 2025
Information disclosure while processing IO control commands.
Moderate
Unreviewed
CVE-2024-38417
was published
Feb 3, 2025
Information disclosure while processing IOCTL call made for releasing a trusted VM process...
Moderate
Unreviewed
CVE-2024-33061
was published
Jan 6, 2025
information disclosure while invoking the mailbox read API.
Moderate
Unreviewed
CVE-2024-43063
was published
Jan 6, 2025
Information disclosure while invoking callback function of sound model driver from ADSP for every...
Moderate
Unreviewed
CVE-2024-33067
was published
Jan 6, 2025
Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend.
Moderate
Unreviewed
CVE-2024-45559
was published
Jan 6, 2025
Information Disclosure while invoking the mailbox write API when message received from user is...
Moderate
Unreviewed
CVE-2024-23366
was published
Jan 6, 2025
ProTip!
Advisories are also available from the
GraphQL API