GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
49
Go
3,435
Maven
5,000+
npm
5,000+
NuGet
883
pip
4,689
Pub
13
RubyGems
1,029
Rust
1,212
Swift
53
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
112,396 advisories
Filter by severity
There is a memory corruption vulnerability due to an out-of-bounds write in ResFileFactory:...
High
Unreviewed
CVE-2026-32862
was published
Apr 7, 2026
There is a memory corruption vulnerability due to an out-of-bounds read in...
High
Unreviewed
CVE-2026-32863
was published
Apr 7, 2026
There is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted...
High
Unreviewed
CVE-2026-32861
was published
Apr 7, 2026
NVIDIA DALI contains a vulnerability where an attacker could cause a deserialization of untrusted...
High
Unreviewed
CVE-2026-24156
was published
Apr 7, 2026
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server...
High
Unreviewed
CVE-2026-24173
was published
Apr 7, 2026
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server...
High
Unreviewed
CVE-2026-24174
was published
Apr 7, 2026
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server...
High
Unreviewed
CVE-2026-24175
was published
Apr 7, 2026
OpenHarness prior to commit 166fcfe contains an improper access control vulnerability in built-in...
High
Unreviewed
CVE-2026-22682
was published
Apr 7, 2026
NVIDIA Triton Inference Server contains a vulnerability where insufficient input validation and a...
High
Unreviewed
CVE-2026-24146
was published
Apr 7, 2026
Windmill versions 1.56.0 through 1.614.0 contain a missing authorization vulnerability that...
High
Unreviewed
CVE-2026-22683
was published
Apr 7, 2026
A flaw was found in libssh. This vulnerability allows local man-in-the-middle attacks, security...
High
Unreviewed
CVE-2025-14821
was published
Apr 7, 2026
An arbitrary file-write vulnerability in Pega Browser Extension (PBE) affects Pega Robotic...
High
Unreviewed
CVE-2026-1078
was published
Apr 7, 2026
Nokia MantaRay NM is vulnerable to an OS command injection vulnerability due to improper...
High
Unreviewed
CVE-2025-24818
was published
Apr 7, 2026
Nokia MantaRay NM is vulnerable to an OS command injection vulnerability due to improper...
High
Unreviewed
CVE-2025-24817
was published
Apr 7, 2026
An issue that allowed all-organization administrators to promote accounts to superuser status has...
High
Unreviewed
CVE-2026-5373
was published
Apr 7, 2026
An integer overflow vulnerability exists in the deflate_dng_load_raw functionality of LibRaw...
High
Unreviewed
CVE-2026-20884
was published
Apr 7, 2026
A heap-based buffer overflow vulnerability exists in the x3f_load_huffman functionality of LibRaw...
High
Unreviewed
CVE-2026-24660
was published
Apr 7, 2026
An integer overflow vulnerability exists in the uncompressed_fp_dng_load_raw functionality of...
High
Unreviewed
CVE-2026-24450
was published
Apr 7, 2026
A race condition in the Apache Kafka Java producer client’s buffer pool management can cause...
High
Unreviewed
CVE-2026-35554
was published
Apr 7, 2026
Incorrect boundary conditions, integer overflow in the Graphics: Text component. This...
High
Unreviewed
CVE-2026-5732
was published
Apr 7, 2026
Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability affects...
High
Unreviewed
CVE-2026-5733
was published
Apr 7, 2026
Insufficient sanitization of dashboard dashlet title links in Checkmk 2.2.0 (EOL), Checkmk 2.3.0...
High
Unreviewed
CVE-2026-3466
was published
Apr 7, 2026
Dolibarr ERP/CRM versions prior to 23.0.2 contain an authenticated remote code execution...
High
Unreviewed
CVE-2026-22666
was published
Apr 7, 2026
A vulnerability has been identified in the graphical user interface (GUI) of HPE Aruba Networking...
High
Unreviewed
CVE-2026-23818
was published
Apr 7, 2026
Tinyproxy through 1.11.3 is vulnerable to HTTP request parsing desynchronization due to a case...
High
Unreviewed
CVE-2026-31842
was published
Apr 7, 2026
ProTip!
Advisories are also available from the
GraphQL API