GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
73
GitHub Actions
53
Go
4,004
Maven
5,000+
npm
5,000+
NuGet
974
pip
5,000+
Pub
13
RubyGems
1,069
Rust
1,395
Swift
61
Unreviewed advisories
All unreviewed
5,000+
29 advisories
Filter by severity
Buffer Underwrite vulnerability in Apache HTTP Server on crafted regular expressions in the...
Critical
Unreviewed
CVE-2026-44631
was published
Jun 8, 2026
Improper input validation in the System Management Mode (SMM) communications buffer could allow a...
Moderate
Unreviewed
CVE-2024-36343
was published
May 20, 2026
A buffer underflow vulnerability has been identified in the ogg123 utility from the vorbis-tools...
High
Unreviewed
CVE-2026-34253
was published
May 15, 2026
YAML::Syck versions before 1.38 for Perl has an out-of-bounds read.
The base60 (sexagesimal)...
High
Unreviewed
CVE-2026-5089
was published
May 12, 2026
The API function `ssh_get_hexa()` is vulnerable, when 0-lenght
input is provided to this function...
Moderate
Unreviewed
CVE-2026-0966
was published
Mar 26, 2026
A vulnerability in the bootloader of Cisco IOS XE Software for Cisco Catalyst 9200 Series...
Moderate
Unreviewed
CVE-2026-20104
was published
Mar 25, 2026
Improper input validation in the SMM communications buffer could allow a privileged attacker to...
Moderate
Unreviewed
CVE-2024-36310
was published
Feb 10, 2026
A flaw was found in Glib's content type parsing logic. This buffer underflow vulnerability occurs...
Low
Unreviewed
CVE-2026-1485
was published
Jan 27, 2026
KV STUDIO versions 12.23 and prior contain a buffer underflow vulnerability. If the product uses...
High
Unreviewed
CVE-2025-61690
was published
Oct 2, 2025
ImageMagick has a Stack Buffer Overflow in image.c
High
CVE-2025-53101
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Aug 25, 2025
In Bluetooth FW, there is a possible system crash due to an uncaught exception. This could lead...
High
Unreviewed
CVE-2025-20694
was published
Jul 8, 2025
In Bluetooth FW, there is a possible system crash due to an uncaught exception. This could lead...
High
Unreviewed
CVE-2025-20695
was published
Jul 8, 2025
A flaw was found in GLib, which is vulnerable to an integer overflow in the...
Moderate
Unreviewed
CVE-2025-4373
was published
May 6, 2025
A buffer underwrite ('buffer underflow') vulnerability in the administrative interface of...
Critical
Unreviewed
CVE-2023-25610
was published
Mar 24, 2025
Buffer underflow in some Zoom Workplace Apps may allow an authenticated user to conduct an...
High
Unreviewed
CVE-2025-27439
was published
Mar 11, 2025
Heap overflow in some Zoom Workplace Apps may allow an authenticated user to conduct an...
High
Unreviewed
CVE-2025-27440
was published
Mar 11, 2025
There is a buffer error vulnerability in some Huawei product. An unauthenticated attacker may...
Moderate
Unreviewed
CVE-2020-9086
was published
Dec 27, 2024
Animate versions 23.0.8, 24.0.5 and earlier are affected by a Buffer Underwrite ('Buffer...
High
Unreviewed
CVE-2024-52990
was published
Dec 10, 2024
Buffer underflow in some Intel(R) PCM software before version 202307 may allow an unauthenticated...
High
Unreviewed
CVE-2023-34351
was published
Oct 29, 2024
lunasvg v2.3.9 was discovered to contain a stack-buffer-underflow at lunasvg/source/layoutcontext...
High
Unreviewed
CVE-2024-33763
was published
May 1, 2024
A heap-based buffer overflow vulnerability exists in the create_png_object functionality of...
Critical
Unreviewed
CVE-2023-32614
was published
Sep 25, 2023
A buffer underflow vulnerability exists in the way Hword of Hancom Office 2020 version 11.0.0...
High
Unreviewed
CVE-2022-33896
was published
Oct 7, 2022
XMP Toolkit version 2020.1 (and earlier) is affected by a Buffer Underflow vulnerability which...
High
Unreviewed
CVE-2021-36064
was published
May 24, 2022
Buffer underflow in atmfd.dll in the Windows Adobe Type Manager Library in Microsoft Windows...
High
Unreviewed
CVE-2015-2426
was published
May 14, 2022
In stroke_socket.c in strongSwan before 5.6.3, a missing packet length check could allow a buffer...
Moderate
Unreviewed
CVE-2018-5388
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API