GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
116
GitHub Actions
55
Go
4,741
Maven
5,000+
npm
5,000+
NuGet
1,116
pip
5,000+
Pub
13
RubyGems
1,152
Rust
1,570
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
19
336 advisories
Filter by severity
Missing release of memory after effective lifetime in Windows DHCP Server allows an unauthorized...
High
Unreviewed
CVE-2026-70065
was published
Sep 8, 2026
Missing release of memory after effective lifetime in Active Directory Domain Services allows an...
High
Unreviewed
CVE-2026-69809
was published
Sep 8, 2026
Missing release of memory after effective lifetime in Windows TCP/IP allows an unauthorized...
High
Unreviewed
CVE-2026-69588
was published
Sep 8, 2026
Protocol::HTTP2 versions before 1.14 for Perl allow memory exhaustion via closed streams that...
High
Unreviewed
CVE-2026-16028
was published
Sep 7, 2026
A vulnerability in Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco...
High
Unreviewed
CVE-2026-20281
was published
Sep 2, 2026
A Spring RSocket application is exposed to a memory leak via a malformed SETUP frame.
Spring...
High
Unreviewed
CVE-2026-47888
was published
Aug 27, 2026
A memory leak flaw was found in cockpit-ws. The login page handler leaks a heap allocation on...
High
Unreviewed
CVE-2026-76235
was published
Aug 19, 2026
An issue in Open5GS v.2.7.0 allows a remote attacker to cause a denial of service via the...
High
Unreviewed
CVE-2026-71675
was published
Aug 18, 2026
Issue summary: A malicious TLS server can cause a memory leak in a TLS
client that has enabled...
High
Unreviewed
CVE-2026-54876
was published
Aug 5, 2026
An issue in Vim Project v9.2.0389 and earlier allows a local attacker to execute arbitrary code...
High
Unreviewed
CVE-2026-51400
was published
Aug 4, 2026
In Eclipse Milo versions 0.6.0 through 1.1.4, UASC server transport handlers fail to release...
High
Unreviewed
CVE-2026-63252
was published
Aug 4, 2026
A memory leak in the tls-crypt-v2 client key extraction in OpenVPN 2.5.0 through 2.6.20 and 2...
High
Unreviewed
CVE-2026-12932
was published
Jul 30, 2026
OliveTin: Unauthenticated DoS via OAuth2 State Memory Exhaustion (Unbounded Map Growth)
High
CVE-2026-67437
was published
for
github.com/OliveTin/OliveTin
(Go)
Jul 30, 2026
Apache Traffic Server leaks memory when handling HostDB SRV records.
This issue affects Apache...
High
Unreviewed
CVE-2026-58175
was published
Jul 29, 2026
TinyWeb through 0.0.8 contains a memory leak vulnerability that allows unauthenticated attackers...
High
Unreviewed
CVE-2026-67183
was published
Jul 28, 2026
Eclipse Jetty: DoS attack triggering OutOfMemory with 100-Continue requests
High
CVE-2024-7708
was published
for
org.eclipse.jetty:jetty-server
(Maven)
Jul 22, 2026
In the Linux kernel, the following vulnerability has been resolved:
virt: sev-guest: Explicitly...
High
Unreviewed
CVE-2026-64104
was published
Jul 19, 2026
In the Linux kernel, the following vulnerability has been resolved:
nfsd: fix posix_acl leak and...
High
Unreviewed
CVE-2026-53396
was published
Jul 19, 2026
In the Linux kernel, the following vulnerability has been resolved:
nfsd: avoid leaking pre...
High
Unreviewed
CVE-2026-53394
was published
Jul 19, 2026
In the Linux kernel, the following vulnerability has been resolved:
nfsd: fix posix_acl leak on...
High
Unreviewed
CVE-2026-53397
was published
Jul 19, 2026
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause...
High
Unreviewed
CVE-2026-47482
was published
Jul 14, 2026
A Missing Release of Memory after Effective Lifetime vulnerability in the packet forwarding...
High
Unreviewed
CVE-2026-57027
was published
Jul 10, 2026
Missing release of memory after effective lifetime vulnerability in Progress MOVEit Transfer ...
High
Unreviewed
CVE-2026-10699
was published
Jul 8, 2026
Imager::File::JPEG versions before 1.003 for Perl leak heap memory when reading a JPEG with...
High
Unreviewed
CVE-2026-13708
was published
Jul 6, 2026
An unauthenticated remote attacker can repeatedly send a single crafted connection request to...
High
Unreviewed
CVE-2026-50254
was published
Jul 1, 2026
ProTip!
Advisories are also available from the
GraphQL API