GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
                  
                    
                      
                      All reviewed
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      Composer
                    
                    
                      4,968
                    
                  
                  
                    
                      
                      Erlang
                    
                    
                      39
                    
                  
                  
                    
                      
                      GitHub Actions
                    
                    
                      38
                    
                  
                  
                    
                      
                      Go
                    
                    
                      2,616
                    
                  
                  
                    
                      
                      Maven
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      npm
                    
                    
                      4,255
                    
                  
                  
                    
                      
                      NuGet
                    
                    
                      760
                    
                  
                  
                    
                      
                      pip
                    
                    
                      4,040
                    
                  
                  
                    
                      
                      Pub
                    
                    
                      12
                    
                  
                  
                    
                      
                      RubyGems
                    
                    
                      953
                    
                  
                  
                    
                      
                      Rust
                    
                    
                      1,050
                    
                  
                  
                    
                      
                      Swift
                    
                    
                      45
                    
                  
                  Unreviewed advisories
                  
                    
                      
                      All unreviewed
                    
                    
                      5,000+
                    
                  
            3,187 advisories
        Filter by severity
        
      
      
    
                    
                      NVIDIA Display Driver for Windows and Linux contains a vulnerability in a video decoder, where an...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-23345
                      
                      was published
                      Oct 23, 2025 
                    
                  
                    
                      ncurses exposes uninitialized memory in string reading functions
                    
                      
  Moderate
                    
                
                      
                        GHSA-x77x-7mmh-cxv3
                      
                      was published
                        for
                        
                          ncurses
                        
                        (Rust)
                      Oct 22, 2025 
                    
                  
                    
                      Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component:...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-53063
                      
                      was published
                      Oct 21, 2025 
                    
                  
                    
                      Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component:...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-53055
                      
                      was published
                      Oct 21, 2025 
                    
                  
                    
                      Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component:...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-53065
                      
                      was published
                      Oct 21, 2025 
                    
                  
                    
                      Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component:...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-53048
                      
                      was published
                      Oct 21, 2025 
                    
                  
                    
                      Out-of-bounds Read in lws_upng_emit_next_line in warmcat libwebsockets allows, when the...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11679
                      
                      was published
                      Oct 20, 2025 
                    
                  
                    
                      A vulnerability exists in the QuickJS engine's BigInt string conversion logic ...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-62493
                      
                      was published
                      Oct 16, 2025 
                    
                  
                    
                      A vulnerability stemming from floating-point arithmetic precision errors exists in the QuickJS...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-62492
                      
                      was published
                      Oct 16, 2025 
                    
                  
                    
                      A weakness has been identified in GNU Binutils 2.45. The affected element is the function vfinfo...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11840
                      
                      was published
                      Oct 16, 2025 
                    
                  
                    
                      Animate versions 23.0.13, 24.0.10 and earlier are affected by an out-of-bounds read vulnerability...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-54269
                      
                      was published
                      Oct 15, 2025 
                    
                  
                    
                      Out-of-bounds read in Windows WLAN Auto Config Service allows an authorized attacker to disclose...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-55695
                      
                      was published
                      Oct 14, 2025 
                    
                  
                    
                      Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-58717
                      
                      was published
                      Oct 14, 2025 
                    
                  
                    
                      Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-55700
                      
                      was published
                      Oct 14, 2025 
                    
                  
                    
                      A potential 
out-of-bound reads vulnerability in HPE ProLiant RL300 Gen11 Server's UEFI firmware.
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-37149
                      
                      was published
                      Oct 14, 2025 
                    
                  
                    
                      In wlan AP driver, there is a possible out of bounds read due to an incorrect bounds check. This...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-20724
                      
                      was published
                      Oct 14, 2025 
                    
                  
                    
                      Out-of-bounds read in the parsing of image data in Samsung Notes prior to version 4.4.30.63...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-21069
                      
                      was published
                      Oct 10, 2025 
                    
                  
                    
                      Out-of-bounds read in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-21066
                      
                      was published
                      Oct 10, 2025 
                    
                  
                    
                      Out-of-bounds read in the reading of image data in Samsung Notes prior to version 4.4.30.63...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-21068
                      
                      was published
                      Oct 10, 2025 
                    
                  
                    
                      Out-of-bounds read in the allocation of image buffer in Samsung Notes prior to version 4.4.30.63...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-21067
                      
                      was published
                      Oct 10, 2025 
                    
                  
                    
                      Out-of-bounds read and write in libimagecodec.quram.so prior to SMR Oct-2025 Release 1 allows...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-21055
                      
                      was published
                      Oct 10, 2025 
                    
                  
                    
                      Out-of-bounds read in the parsing header for JPEG decoding in libpadm.so prior to SMR Oct-2025...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-21054
                      
                      was published
                      Oct 10, 2025 
                    
                  
                    
                      A vulnerability was found in GNU Binutils 2.45. Impacted is the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11494
                      
                      was published
                      Oct 8, 2025 
                    
                  
                    
                      A vulnerability was found in GNU Binutils 2.45. Affected is the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11413
                      
                      was published
                      Oct 8, 2025 
                    
                  
                    
                      A vulnerability has been found in GNU Binutils 2.45. This impacts the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11412
                      
                      was published
                      Oct 8, 2025 
                    
                  
        
        ProTip!
        Advisories are also available from the 
        GraphQL API