GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,354
Erlang
31
GitHub Actions
22
Go
2,120
Maven
5,000+
npm
3,779
NuGet
681
pip
3,460
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
3,177 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
drivers/perf: hisi: use...
Moderate
Unreviewed
CVE-2023-52860
was published
May 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
bnxt_en: Adjust logging of...
Moderate
Unreviewed
CVE-2024-40919
was published
Jul 12, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: ethtool: fix the error...
Moderate
Unreviewed
CVE-2024-40928
was published
Jul 12, 2024
In the Linux kernel, the following vulnerability has been resolved:
tracing: Have...
Moderate
Unreviewed
CVE-2023-52879
was published
May 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
iommu: Return right value in...
Moderate
Unreviewed
CVE-2024-40945
was published
Jul 12, 2024
In the Linux kernel, the following vulnerability has been resolved:
skmsg: Skip zero length skb...
Moderate
Unreviewed
CVE-2024-41048
was published
Jul 29, 2024
In the Linux kernel, the following vulnerability has been resolved:
mlxbf_gige: stop interface...
Moderate
Unreviewed
CVE-2024-35885
was published
May 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
fpga: bridge: add owner...
Moderate
Unreviewed
CVE-2024-36479
was published
Jun 24, 2024
In the Linux kernel, the following vulnerability has been resolved:
fpga: manager: add owner...
Moderate
Unreviewed
CVE-2024-37021
was published
Jun 24, 2024
In the Linux kernel, the following vulnerability has been resolved:
fpga: region: add owner...
Moderate
Unreviewed
CVE-2024-35247
was published
Jun 24, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: bridge: fix vlan tunnel...
Moderate
Unreviewed
CVE-2021-47223
was published
May 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
ima: Avoid blocking in RCU...
Moderate
Unreviewed
CVE-2024-40947
was published
Jul 12, 2024
In the Linux kernel, the following vulnerability has been resolved:
vsock: prevent null-ptr...
Moderate
Unreviewed
CVE-2025-21666
was published
Jan 31, 2025
In macrozheng mall-tiny 1.0.1, an attacker can send null data through the resource creation...
Moderate
Unreviewed
CVE-2024-57435
was published
Feb 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Clear port select...
Moderate
Unreviewed
CVE-2025-21675
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
eth: bnxt: always...
Moderate
Unreviewed
CVE-2025-21682
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
net: fec: handle...
Moderate
Unreviewed
CVE-2025-21676
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
vsock/virtio: discard...
Moderate
Unreviewed
CVE-2025-21669
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
vsock/bpf: return early if...
Moderate
Unreviewed
CVE-2025-21670
was published
Jan 31, 2025
When SIP session Application Level Gateway mode (ALG) profile with Passthru Mode enabled and SIP...
High
Unreviewed
CVE-2025-20045
was published
Feb 5, 2025
A null pointer dereference vulnerability in Macrium Reflect prior to 8.1.8017 allows an attacker...
High
Unreviewed
CVE-2024-55511
was published
Jan 17, 2025
NULL pointer dereference vulnerability exists in Defense Platform Home Edition Ver.3.9.51.x and...
Moderate
Unreviewed
CVE-2025-24483
was published
Feb 6, 2025
wasmvm: Malicious smart contract can crash the chain
Moderate
GHSA-23qp-3c2m-xx6w
was published
for
github.com/CosmWasm/wasmvm
(Go)
Feb 4, 2025
cryptography NULL pointer dereference with pkcs12.serialize_key_and_certificates when called with a non-matching certificate and private key and an hmac_hash override
High
CVE-2024-26130
was published
for
cryptography
(pip)
Feb 21, 2024
A NULL Pointer Dereference vulnerability in the Packet Forwarding Engine (PFE) of Juniper...
Moderate
Unreviewed
CVE-2024-30403
was published
Apr 12, 2024
ProTip!
Advisories are also available from the
GraphQL API