GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,362
Erlang
33
GitHub Actions
22
Go
2,134
Maven
5,000+
npm
3,797
NuGet
687
pip
3,473
Pub
12
RubyGems
896
Rust
897
Swift
38
Unreviewed advisories
All unreviewed
5,000+
2,103 advisories
Filter by severity
In Eclipse OMR, from the initial contribution to version 0.4.0, some OMR internal port library...
Moderate
Unreviewed
CVE-2025-1470
was published
Feb 21, 2025
FFmpeg git master before commit fd1772 was discovered to contain a NULL pointer dereference via...
Moderate
Unreviewed
CVE-2025-25471
was published
Feb 19, 2025
A NULL pointer dereference in the component /libsrc/dcrleccd.cc of DCMTK v3.6.9+ DEV allows...
Moderate
Unreviewed
CVE-2025-25475
was published
Feb 19, 2025
FFmpeg git master before commit c08d30 was discovered to contain a NULL pointer dereference via...
Moderate
Unreviewed
CVE-2025-25473
was published
Feb 19, 2025
FFmpeg git-master,N-113007-g8d24a28d06 was discovered to contain a segmentation violation via the...
Moderate
Unreviewed
CVE-2025-22921
was published
Feb 19, 2025
An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6 through 2021. A...
Moderate
Unreviewed
CVE-2024-37602
was published
Feb 14, 2025
NULL pointer dereference for some Intel(R) MLC software before version v3.11b may allow an...
Moderate
Unreviewed
CVE-2024-32941
was published
Feb 13, 2025
In the Linux kernel, the following vulnerability has been resolved:
platform/x86: dell-uart...
Moderate
Unreviewed
CVE-2025-21695
was published
Feb 12, 2025
Substance3D - Stager versions 3.1.0 and earlier are affected by a NULL Pointer Dereference...
Moderate
Unreviewed
CVE-2025-21155
was published
Feb 11, 2025
InDesign Desktop versions ID20.0, ID19.5.1 and earlier are affected by a NULL Pointer Dereference...
Moderate
Unreviewed
CVE-2025-21125
was published
Feb 11, 2025
In the Linux kernel, the following vulnerability has been resolved:
USB: serial: quatech2: fix...
Moderate
Unreviewed
CVE-2025-21689
was published
Feb 10, 2025
In the Linux kernel, the following vulnerability has been resolved:
platform/x86: lenovo-yoga...
Moderate
Unreviewed
CVE-2025-21685
was published
Feb 9, 2025
NULL pointer dereference vulnerability exists in Defense Platform Home Edition Ver.3.9.51.x and...
Moderate
Unreviewed
CVE-2025-24483
was published
Feb 6, 2025
wasmvm: Malicious smart contract can crash the chain
Moderate
GHSA-23qp-3c2m-xx6w
was published
for
github.com/CosmWasm/wasmvm
(Go)
Feb 4, 2025
In macrozheng mall-tiny 1.0.1, an attacker can send null data through the resource creation...
Moderate
Unreviewed
CVE-2024-57435
was published
Feb 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
net: fec: handle...
Moderate
Unreviewed
CVE-2025-21676
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Clear port select...
Moderate
Unreviewed
CVE-2025-21675
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
eth: bnxt: always...
Moderate
Unreviewed
CVE-2025-21682
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
vsock: prevent null-ptr...
Moderate
Unreviewed
CVE-2025-21666
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
vsock/virtio: discard...
Moderate
Unreviewed
CVE-2025-21669
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
vsock/bpf: return early if...
Moderate
Unreviewed
CVE-2025-21670
was published
Jan 31, 2025
A NULL Pointer Dereference vulnerability in Cesanta Frozen versions less than 1.7 allows an...
Moderate
Unreviewed
CVE-2025-0696
was published
Jan 27, 2025
gpac 2.4 contains a SEGV at src/isomedia/drm_sample.c:1562:96 in isom_cenc_get_sai_by_saiz_saio...
Moderate
Unreviewed
CVE-2024-50665
was published
Jan 24, 2025
OpenImageIO v3.1.0.0dev was discovered to contain a segmentation violation via the component ...
Moderate
Unreviewed
CVE-2024-55193
was published
Jan 24, 2025
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 ...
Moderate
Unreviewed
CVE-2023-37039
was published
Jan 22, 2025
ProTip!
Advisories are also available from the
GraphQL API