GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
57
GitHub Actions
50
Go
3,767
Maven
5,000+
npm
5,000+
NuGet
937
pip
4,999
Pub
13
RubyGems
1,058
Rust
1,347
Swift
54
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
319 advisories
Filter by severity
A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerability exists in...
Critical
Unreviewed
CVE-2026-5121
was published
Mar 30, 2026
In the Linux kernel, the following vulnerability has been resolved:
net: stmmac: fix integer...
Critical
Unreviewed
CVE-2026-31649
was published
Apr 24, 2026
In the Linux kernel, the following vulnerability has been resolved:
rxrpc: Fix integer overflow...
Critical
Unreviewed
CVE-2026-31633
was published
Apr 24, 2026
Integer overflow in the Libraries component in NSS. This vulnerability affects Firefox < 148 and...
Critical
Unreviewed
CVE-2026-2781
was published
Feb 24, 2026
A heap-based buffer overflow vulnerability exists in the x3f_thumb_loader functionality of LibRaw...
Critical
Unreviewed
CVE-2026-20889
was published
Apr 7, 2026
Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component....
Critical
Unreviewed
CVE-2026-4689
was published
Mar 24, 2026
Integer Overflow or Wraparound vulnerability in InsightSoftwareConsortium ITK (Modules...
Critical
Unreviewed
CVE-2026-4739
was published
Mar 24, 2026
UTF32Encoding.cpp in POCO has a Poco::UTF32Encoding integer overflow and resultant stack buffer...
Critical
Unreviewed
CVE-2023-52389
was published
Jan 27, 2024
An integer overflow vulnerability exists in the sopen_FAMOS_read functionality of The Biosig...
Critical
Unreviewed
CVE-2024-21812
was published
Feb 20, 2024
Crypt::NaCl::Sodium versions through 2.002 for Perl has potential integer overflows.
bin2hex,...
Critical
Unreviewed
CVE-2026-30909
was published
Mar 8, 2026
Integer overflow in the Audio/Video component. This vulnerability affects Firefox < 148, Firefox...
Critical
Unreviewed
CVE-2026-2774
was published
Feb 24, 2026
Integer overflow in the JavaScript: Standard Library component. This vulnerability affects...
Critical
Unreviewed
CVE-2026-2762
was published
Feb 24, 2026
Crypt::NaCl::Sodium versions through 2.001 for Perl has an integer overflow flaw on 32-bit...
Critical
Unreviewed
CVE-2026-2588
was published
Feb 23, 2026
The wordexp function in the GNU C Library (aka glibc) through 2.33 may crash or read arbitrary...
Critical
Unreviewed
CVE-2021-35942
was published
May 24, 2022
Integer Overflow or Wraparound vulnerability in Ralim IronOS.This issue affects IronOS: before v2...
Critical
Unreviewed
CVE-2026-24830
was published
Jan 27, 2026
Integer Overflow or Wraparound vulnerability in swoole swoole-src (thirdparty/hiredis modules)....
Critical
Unreviewed
CVE-2026-24814
was published
Jan 27, 2026
An integer overflow vulnerability exists in the write method of the Buffer class in Robocode...
Critical
Unreviewed
CVE-2025-14308
was published
Dec 9, 2025
NGINX before 1.13.6 has a buffer overflow for years that exceed four digits, as demonstrated by a...
Critical
Unreviewed
CVE-2017-20005
was published
May 24, 2022
Improper input validation together with an integer overflow in the EAP-TLS protocol...
Critical
Unreviewed
CVE-2018-11574
was published
May 13, 2022
Integer Overflow or Wraparound vulnerability in Avast Antivirus (25.1.981.6) on Windows allows...
Critical
Unreviewed
CVE-2025-3500
was published
Dec 1, 2025
An integer overflow can occur in the Skia library due to 32-bit integer use in an array without...
Critical
Unreviewed
CVE-2018-5159
was published
May 14, 2022
An integer overflow vulnerability in the Skia library when allocating memory for edge builders on...
Critical
Unreviewed
CVE-2018-5095
was published
May 13, 2022
An error in argument length checking in JavaScript, leading to potential integer overflows or...
Critical
Unreviewed
CVE-2016-5297
was published
May 14, 2022
An issue was discovered in AnyDesk before 9.0.0. It has an integer overflow and resultant heap...
Critical
Unreviewed
CVE-2025-27918
was published
Nov 6, 2025
Two heap-based buffer overflow vulnerabilities exist in the httpd manage_post functionality of...
Critical
Unreviewed
CVE-2023-35965
was published
Oct 11, 2023
ProTip!
Advisories are also available from the
GraphQL API