GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
73
GitHub Actions
53
Go
4,029
Maven
5,000+
npm
5,000+
NuGet
976
pip
5,000+
Pub
13
RubyGems
1,070
Rust
1,404
Swift
61
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
176 advisories
Filter by severity
OpenClaw before 2026.5.27 contains a state mutation vulnerability in node pairing reconnection...
Moderate
Unreviewed
CVE-2026-53838
was published
Jun 13, 2026
Hermes WebUI before version 0.51.303 contains a time-of-check time-of-use (TOCTOU) race condition...
Moderate
Unreviewed
CVE-2026-49958
was published
Jun 9, 2026
Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Endpoint allows an...
Moderate
Unreviewed
CVE-2026-45647
was published
Jun 9, 2026
Memory Corruption when processing IOCTL requests with mismatched API versions due to concurrent...
Moderate
Unreviewed
CVE-2025-59610
was published
Jun 2, 2026
In geniezone, there is a possible out of bounds write due to a race condition. This could lead to...
Moderate
Unreviewed
CVE-2026-20454
was published
Jun 1, 2026
In the Linux kernel, the following vulnerability has been resolved:
f2fs: fix node_cnt race...
Moderate
Unreviewed
CVE-2026-46194
was published
May 28, 2026
In the Linux kernel, the following vulnerability has been resolved:
btrfs: fix...
Moderate
Unreviewed
CVE-2026-46159
was published
May 28, 2026
A flaw was found in Keycloak. An authenticated administrator with the `manage-clients` role can...
Moderate
Unreviewed
CVE-2026-9796
was published
May 28, 2026
csync2 uses insecure temporary directories when compiled with C99 or later, allowing for TOCTOU...
Moderate
Unreviewed
CVE-2026-41051
was published
May 13, 2026
Due to multiple time-of-check time-of-use race conditions in the resource count check and...
Moderate
Unreviewed
CVE-2025-69233
was published
May 8, 2026
A race condition exists in PaperCut MF when processing badge-swipe data from certain HP...
Moderate
Unreviewed
CVE-2026-6180
was published
May 5, 2026
In the Linux kernel, the following vulnerability has been resolved:
xfs: close crash window in...
Moderate
Unreviewed
CVE-2026-43053
was published
May 1, 2026
In the Linux kernel, the following vulnerability has been resolved:
smb: client: make use of...
Moderate
Unreviewed
CVE-2026-31535
was published
Apr 24, 2026
OpenClaw before 2026.4.2 contains an approval integrity vulnerability in pnpm dlx that fails to...
Moderate
Unreviewed
CVE-2026-41360
was published
Apr 24, 2026
OpenClaw before 2026.3.31 contains a time-of-check-time-of-use vulnerability in sandbox file...
Moderate
Unreviewed
CVE-2026-41338
was published
Apr 24, 2026
In the Linux kernel, the following vulnerability has been resolved:
nvme-pci: ensure we're...
Moderate
Unreviewed
CVE-2026-31523
was published
Apr 22, 2026
An Incorrect Permission Assignment for Critical Resource vulnerability in the ASUS DriverHub...
Moderate
Unreviewed
CVE-2026-1880
was published
Apr 16, 2026
A Download of Code Without Integrity Check vulnerability in the update modules in ASUS Member...
Moderate
Unreviewed
CVE-2026-3428
was published
Apr 16, 2026
OpenClaw before 2026.3.11 contains a sandbox boundary bypass vulnerability in fs-bridge staged...
Moderate
Unreviewed
CVE-2026-32988
was published
Mar 31, 2026
OpenClaw versions prior to 2026.3.2 contain a race condition vulnerability in ZIP extraction that...
Moderate
Unreviewed
CVE-2026-27670
was published
Mar 19, 2026
Time-of-check time-of-use race condition in the UEFI PdaSmm module for some Intel(R) reference...
Moderate
Unreviewed
CVE-2025-22850
was published
Mar 11, 2026
In MDDP, there is a possible system crash due to a race condition. This could lead to local...
Moderate
Unreviewed
CVE-2026-20445
was published
Mar 2, 2026
In MAE, there is a possible out of bounds write due to a race condition. This could lead to local...
Moderate
Unreviewed
CVE-2026-20438
was published
Mar 2, 2026
In the Linux kernel, the following vulnerability has been resolved:
bonding: annotate data-races...
Moderate
Unreviewed
CVE-2026-23212
was published
Feb 18, 2026
In the Linux kernel, the following vulnerability has been resolved:
md: suspend array while...
Moderate
Unreviewed
CVE-2025-71225
was published
Feb 18, 2026
ProTip!
Advisories are also available from the
GraphQL API