GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
116
GitHub Actions
55
Go
4,701
Maven
5,000+
npm
5,000+
NuGet
1,104
pip
5,000+
Pub
13
RubyGems
1,150
Rust
1,566
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
19
3,634 advisories
Filter by severity
hashcat contains a heap-based buffer overflow (out-of-bounds write) in the outfile_write()...
Moderate
Unreviewed
CVE-2026-68768
was published
Aug 22, 2026
Multiple DrayTek VigorAP models contain a buffer overflow vulnerability in the apautotest...
High
Unreviewed
CVE-2026-71912
was published
Aug 24, 2026
Multiple DrayTek VigorAP models contain a buffer overflow vulnerability in the setLan function....
High
Unreviewed
CVE-2026-71911
was published
Aug 24, 2026
Multiple DrayTek VigorSwitch models contain a buffer overflow vulnerability in the sysreboot...
High
Unreviewed
CVE-2026-71936
was published
Aug 24, 2026
Multiple DrayTek VigorSwitch models contain a buffer overflow vulnerability in the...
High
Unreviewed
CVE-2026-71939
was published
Aug 24, 2026
Multiple DrayTek VigorSwitch models contain a buffer overflow vulnerability in the...
High
Unreviewed
CVE-2026-71938
was published
Aug 24, 2026
Multiple DrayTek VigorSwitch models contain a buffer overflow vulnerability in the pingtrace...
High
Unreviewed
CVE-2026-71934
was published
Aug 24, 2026
Multiple DrayTek VigorSwitch models contain a buffer overflow vulnerability in the...
High
Unreviewed
CVE-2026-71940
was published
Aug 24, 2026
Multiple DrayTek VigorSwitch models contain a buffer overflow vulnerability in the mail_mailalert...
High
Unreviewed
CVE-2026-71942
was published
Aug 24, 2026
Multiple DrayTek VigorSwitch models contain a buffer overflow vulnerability in the...
High
Unreviewed
CVE-2026-71935
was published
Aug 24, 2026
Multiple DrayTek VigorSwitch models contain a buffer overflow vulnerability in the...
High
Unreviewed
CVE-2026-71937
was published
Aug 24, 2026
Multiple DrayTek VigorSwitch models contain a buffer overflow vulnerability in the diag_logmail...
High
Unreviewed
CVE-2026-71941
was published
Aug 24, 2026
A maliciously crafted SVG file, when parsed through Autodesk 3ds Max, can force a Memory...
High
Unreviewed
CVE-2026-19568
was published
Aug 24, 2026
A flaw was found in file-roller. When opening or extracting a malicious 7z or RAR archive...
Moderate
Unreviewed
CVE-2026-78322
was published
Aug 25, 2026
Use of inherently dangerous function PQfn(..., result_is_int=0, ...) in PostgreSQL libpq...
High
Unreviewed
CVE-2026-6477
was published
May 14, 2026
Adobe XD is affected by a Buffer Overflow vulnerability that could result in arbitrary code...
High
Unreviewed
CVE-2026-71399
was published
Aug 25, 2026
A stack-based buffer overflow vulnerability exists in BlueZ, the Linux Bluetooth protocol stack....
High
Unreviewed
CVE-2026-80186
was published
Aug 26, 2026
A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2026-64705
was published
Aug 25, 2026
PLANET GS-4210-16P2S firmware before 3.441b260626 contains a pre-authentication memory corruption...
High
Unreviewed
CVE-2026-75124
was published
Aug 28, 2026
A flaw was found in the file-psd plugin in GIMP. When processing a specially crafted PSD image...
Moderate
Unreviewed
CVE-2026-82343
was published
Aug 28, 2026
A buffer
overflow vulnerability exists in the embedded HTTP service in TL-WR841N v14 when...
Moderate
Unreviewed
CVE-2026-76651
was published
Aug 29, 2026
Buffer Overflow vulnerability in gpac 31becc9e08b88e525a4a62013a4000de1c0f8fd9 allows an attacker...
High
Unreviewed
CVE-2026-52489
was published
Aug 25, 2026
A flaw was found in WebKitGTK. Processing malicious web content can cause memory corruption due...
High
Unreviewed
CVE-2026-83596
was published
Aug 31, 2026
A denial-of-service security issue exists within RSLinx® Classic. A crafted CIP packet with an...
High
Unreviewed
CVE-2026-9625
was published
Sep 1, 2026
Incorrect boundary conditions in the Layout: Grid component. This vulnerability was fixed in...
Moderate
Unreviewed
CVE-2026-84126
was published
Sep 1, 2026
ProTip!
Advisories are also available from the
GraphQL API