GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
49
Go
3,436
Maven
5,000+
npm
5,000+
NuGet
883
pip
4,694
Pub
13
RubyGems
1,029
Rust
1,212
Swift
53
Unreviewed advisories
All unreviewed
5,000+
206 advisories
Filter by severity
A heap-buffer-overflow vulnerability exists in wolfSSL's wolfSSL_d2i_SSL_SESSION() function. When...
Moderate
Unreviewed
CVE-2026-2646
was published
Mar 19, 2026
Heap buffer overflow vulnerability in LibreDWG versions v0.13.3.7571 up to v0.13.3.7835 allows a...
Moderate
Unreviewed
CVE-2025-61154
was published
Mar 12, 2026
ImageMagick has heap buffer overflow in WriteXWDImage due to CARD32 arithmetic overflow in bytes_per_line calculation
Moderate
CVE-2026-30937
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 12, 2026
ImageMagick has Heap Buffer Overflow in WaveletDenoiseImage
Moderate
CVE-2026-30936
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 12, 2026
ImageMagick has heap-based buffer overflow in UHDR encoder
Moderate
CVE-2026-30931
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 12, 2026
ImageMagick: Write heap-buffer-overflow in PCL encoder via undersized output buffer
Moderate
CVE-2026-28686
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 12, 2026
ImageMagick: Heap overflow in pcd decoder leads to out of bounds read.
Moderate
CVE-2026-26284
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 12, 2026
A potential buffer overflow vulnerability was reported in the Lenovo Virtual Bus driver used in...
Moderate
Unreviewed
CVE-2026-1652
was published
Mar 11, 2026
ImageMagick is vulnerable to heap buffer over-write on 32-bit systems in SFW decoder
Moderate
CVE-2026-31853
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 10, 2026
Heap-based buffer overflow in Windows Mobile Broadband allows an unauthorized attacker to execute...
Moderate
Unreviewed
CVE-2026-24288
was published
Mar 10, 2026
Buffer overflow vulnerability in the scanning module. Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2026-28546
was published
Mar 5, 2026
Multiple Cisco products are affected by a vulnerability in the Snort 3 VBA feature that could...
Moderate
Unreviewed
CVE-2026-20053
was published
Mar 4, 2026
dr_libs version 0.14.4 and earlier (fixed in commit 8a7258c) contain a heap buffer overflow...
Moderate
Unreviewed
CVE-2026-29022
was published
Mar 3, 2026
ImageMagick has a heap Buffer Over-read in its DJVU image format handler
Moderate
CVE-2026-27799
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Feb 25, 2026
ImageMagick: Heap overflow in sun decoder on 32-bit systems may result in out of bounds write
Moderate
CVE-2026-25897
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Feb 24, 2026
ImageMagick: Out of bounds read in multiple coders read raw pixel data
Moderate
CVE-2026-25576
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Feb 24, 2026
InDesign Desktop versions 21.1, 20.5.1 and earlier are affected by a Heap-based Buffer Overflow...
Moderate
Unreviewed
CVE-2026-21358
was published
Feb 10, 2026
Buffer overflow vulnerability in the HDC module.
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2026-24922
was published
Feb 6, 2026
A heap-based buffer overflow vulnerability has been identified in the Postscript interpreter in...
Moderate
Unreviewed
CVE-2025-65079
was published
Feb 3, 2026
An integer underflow in the UDP command handler of the TeamViewer DEX Client (former 1E Client) -...
Moderate
Unreviewed
CVE-2026-23567
was published
Jan 29, 2026
Out-of-bounds Write, Heap-based Buffer Overflow vulnerability in Is-Daouda is-Engine.This issue...
Moderate
Unreviewed
CVE-2026-24829
was published
Jan 27, 2026
A heap overflow in the ghi_dmx_declare_opid_bin() function of GPAC v2.4.0 allows attackers to...
Moderate
Unreviewed
CVE-2025-70302
was published
Jan 15, 2026
A heap overflow in the uncv_parse_config() function of GPAC v2.4.0 allows attackers to cause a...
Moderate
Unreviewed
CVE-2025-70303
was published
Jan 15, 2026
A heap overflow in the vorbis_to_intern() function of GPAC v2.4.0 allows attackers to cause a...
Moderate
Unreviewed
CVE-2025-70310
was published
Jan 15, 2026
A heap overflow in the avi_parse_input_file() function of GPAC v2.4.0 allows attackers to cause a...
Moderate
Unreviewed
CVE-2025-70299
was published
Jan 15, 2026
ProTip!
Advisories are also available from the
GraphQL API