GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
                  
                    
                      
                      All reviewed
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      Composer
                    
                    
                      4,968
                    
                  
                  
                    
                      
                      Erlang
                    
                    
                      39
                    
                  
                  
                    
                      
                      GitHub Actions
                    
                    
                      38
                    
                  
                  
                    
                      
                      Go
                    
                    
                      2,616
                    
                  
                  
                    
                      
                      Maven
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      npm
                    
                    
                      4,255
                    
                  
                  
                    
                      
                      NuGet
                    
                    
                      760
                    
                  
                  
                    
                      
                      pip
                    
                    
                      4,040
                    
                  
                  
                    
                      
                      Pub
                    
                    
                      12
                    
                  
                  
                    
                      
                      RubyGems
                    
                    
                      953
                    
                  
                  
                    
                      
                      Rust
                    
                    
                      1,050
                    
                  
                  
                    
                      
                      Swift
                    
                    
                      45
                    
                  
                  Unreviewed advisories
                  
                    
                      
                      All unreviewed
                    
                    
                      5,000+
                    
                  
            Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
      466 advisories
        Filter by severity
        
      
      
    
                    
                      Transient DOS when a remote device sends an invalid connection request during BT connectable LE...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-47370
                      
                      was published
                      Nov 4, 2025 
                    
                  
                    
                      Reachable Assertion vulnerability in Open5GS up to version 2.7.5 allows attackers with...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-41067
                      
                      was published
                      Oct 27, 2025 
                    
                  
                    
                      Reachable Assertion vulnerability in Open5GS up to version 2.7.5 allows attackers with...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-41068
                      
                      was published
                      Oct 27, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
ext4: fix bug_on...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49708
                      
                      was published
                      Oct 24, 2025 
                    
                  
                    
                      In PyTorch before 2.7.0, when inductor is used, nn.Fold has an assertion error.
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-46149
                      
                      was published
                      Sep 25, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
ext4: don't BUG if someone...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49171
                      
                      was published
                      Sep 23, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
scsi: qla2xxx: Fix warning...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49158
                      
                      was published
                      Sep 23, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
KVM: SVM: fix panic on out...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49154
                      
                      was published
                      Sep 23, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
ext4: fix bug_on in...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49409
                      
                      was published
                      Sep 22, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
tcp: add accessors to read...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49325
                      
                      was published
                      Sep 22, 2025 
                    
                  
                    
                      In the Linux kernel, the following vulnerability has been resolved:
ext4: fix bug_on in...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-49347
                      
                      was published
                      Sep 22, 2025 
                    
                  
                    
                      A security flaw has been discovered in Open5GS up to 2.7.5. The impacted element is the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-9405
                      
                      was published
                      Aug 25, 2025 
                    
                  
                    
                      A vulnerability was determined in jqlang jq up to 1.6. Impacted is the function run_jq_tests of...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-9403
                      
                      was published
                      Aug 25, 2025 
                    
                  
                    
                      A vulnerability was determined in cmake 4.1.20250725-gb5cce23. This affects the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-9301
                      
                      was published
                      Aug 21, 2025 
                    
                  
                    
                      A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V3.3)....
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-30034
                      
                      was published
                      Aug 12, 2025 
                    
                  
                    
                      A vulnerability was determined in JasPer up to 4.2.5. Affected by this issue is the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-8836
                      
                      was published
                      Aug 11, 2025 
                    
                  
                    
                      A vulnerability has been found in Open5GS up to 2.7.5 and classified as problematic. Affected by...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-8804
                      
                      was published
                      Aug 10, 2025 
                    
                  
                    
                      A vulnerability was found in GNU Bison up to 3.8.2. It has been rated as problematic. This issue...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-8733
                      
                      was published
                      Aug 8, 2025 
                    
                  
                    
                      A vulnerability was found in Open5GS up to 2.7.5. It has been classified as problematic. Affected...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-8698
                      
                      was published
                      Aug 7, 2025 
                    
                  
                    
                      Transient DOS while processing an ANQP message.
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-27066
                      
                      was published
                      Aug 6, 2025 
                    
                  
                    
                      Transient DOS while processing a random-access response (RAR) with an invalid PDU length on LTE...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-21452
                      
                      was published
                      Aug 6, 2025 
                    
                  
                    
                      A vulnerability, which was classified as problematic, was found in Axiomatic Bento4 up to 1.6.0...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-8537
                      
                      was published
                      Aug 5, 2025 
                    
                  
                    
                      An issue was discovered in freedesktop poppler v25.04.0. The heap memory containing PDF stream...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-50422
                      
                      was published
                      Aug 4, 2025 
                    
                  
                    
                      In iperf before 3.19.1, iperf_auth.c has a Base64Decode assertion failure and application exit...
                    
                      
  Low
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-54350
                      
                      was published
                      Aug 3, 2025 
                    
                  
        
        ProTip!
        Advisories are also available from the 
        GraphQL API