GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,455
Maven
5,000+
npm
5,000+
NuGet
1,090
pip
5,000+
Pub
13
RubyGems
1,135
Rust
1,509
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
2,358 advisories
Filter by severity
Accessing the vNUMA configuration data of a guest is still possible when
domain destruction has...
Moderate
Unreviewed
CVE-2026-62429
was published
Jul 28, 2026
[This CNA information record relates to multiple CVEs; the
text explains which aspects...
Moderate
Unreviewed
CVE-2026-62436
was published
Jul 28, 2026
The EVTCHNOP_expand_array hypercall checks for whether FIFO event
channels are enabled, but...
High
Unreviewed
CVE-2026-62432
was published
Jul 28, 2026
[This CNA information record relates to multiple CVEs; the
text explains which aspects...
Moderate
Unreviewed
CVE-2026-62435
was published
Jul 28, 2026
Accesses to the CMOS memory contents are done using an indirect IO port
pair. Therefore Xen...
High
Unreviewed
CVE-2026-62430
was published
Jul 28, 2026
A race condition was addressed with improved state handling. This issue is fixed in iOS 26.6 and...
Critical
Unreviewed
CVE-2026-64720
was published
Jul 27, 2026
A race condition was addressed with improved checks. This issue is fixed in iOS 26.6 and iPadOS...
Moderate
Unreviewed
CVE-2026-43811
was published
Jul 27, 2026
A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia...
Moderate
Unreviewed
CVE-2026-43770
was published
Jul 27, 2026
A race condition was addressed with improved state handling. This issue is fixed in iOS 26.6 and...
Critical
Unreviewed
CVE-2026-43805
was published
Jul 27, 2026
A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia...
Moderate
Unreviewed
CVE-2026-43781
was published
Jul 27, 2026
This issue was addressed through improved state management. This issue is fixed in macOS Tahoe 26...
High
Unreviewed
CVE-2026-43728
was published
Jul 27, 2026
A race condition was addressed with improved state management. This issue is fixed in macOS...
High
Unreviewed
CVE-2026-43755
was published
Jul 27, 2026
A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia...
High
Unreviewed
CVE-2026-43693
was published
Jul 27, 2026
A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia...
High
Unreviewed
CVE-2026-28926
was published
Jul 27, 2026
A race condition was addressed with improved locking. This issue is fixed in macOS Sequoia 15.7.8...
Critical
Unreviewed
CVE-2026-28982
was published
Jul 27, 2026
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
Moderate
Unreviewed
CVE-2026-60161
was published
Jul 22, 2026
hono/jsx does not isolate context per request, leading to cross-request data disclosure
Moderate
CVE-2026-59896
was published
for
hono
(npm)
Jul 21, 2026
SurrealDB versions before 3.1.0 contain a time-of-check/time-of-use race condition in the HTTP ...
Critical
Unreviewed
CVE-2026-63756
was published
Jul 20, 2026
A vulnerability was identified in awesto django-shop up to 1.2.4. Affected is an unknown function...
Low
Unreviewed
CVE-2026-16212
was published
Jul 19, 2026
A flaw has been found in django-tastypie up to 0.15.1. The affected element is the function...
Low
Unreviewed
CVE-2026-16208
was published
Jul 19, 2026
A vulnerability was determined in allegro up to bcf65b994ef29fb3fc2e10b660e6288723d5209e. This...
Low
Unreviewed
CVE-2026-16211
was published
Jul 19, 2026
A vulnerability was identified in Sipeed PicoClaw up to 0.2.9. The impacted element is the...
Low
Unreviewed
CVE-2026-16082
was published
Jul 18, 2026
IBM Cognos Analytics 12.1.3 GA Version with build number through 12.1.3-2606251736 could allow an...
Moderate
Unreviewed
CVE-2026-15995
was published
Jul 17, 2026
A race condition between the vncproxy and vncwebsocket API calls in Proxmox Virtual Environment ...
High
Unreviewed
CVE-2026-51082
was published
Jul 17, 2026
Concurrent execution using shared resource with improper synchronization ('race condition') in...
High
Unreviewed
CVE-2026-58598
was published
Jul 17, 2026
ProTip!
Advisories are also available from the
GraphQL API