GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,460
Maven
5,000+
npm
5,000+
NuGet
1,090
pip
5,000+
Pub
13
RubyGems
1,142
Rust
1,509
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
659 advisories
Filter by severity
FFmpeg through 8.1.2, fixed in commit 8670835, contains an information disclosure vulnerability...
High
Unreviewed
CVE-2026-66038
was published
Jul 24, 2026
Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This...
High
Unreviewed
CVE-2026-16384
was published
Jul 21, 2026
Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This...
High
Unreviewed
CVE-2026-16385
was published
Jul 21, 2026
Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This...
High
Unreviewed
CVE-2026-16386
was published
Jul 21, 2026
In the Linux kernel, the following vulnerability has been resolved:
media: i2c: ov8856: free...
Moderate
Unreviewed
CVE-2026-53379
was published
Jul 19, 2026
NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_slice_module module. When...
High
Unreviewed
CVE-2026-60005
was published
Jul 15, 2026
Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose...
Moderate
Unreviewed
CVE-2026-58546
was published
Jul 14, 2026
Use of uninitialized resource in Windows RDP allows an authorized attacker to disclose...
Moderate
Unreviewed
CVE-2026-57982
was published
Jul 14, 2026
Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose...
Moderate
Unreviewed
CVE-2026-58535
was published
Jul 14, 2026
Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose...
Moderate
Unreviewed
CVE-2026-58533
was published
Jul 14, 2026
Use of uninitialized resource in Microsoft Windows Codecs Library allows an unauthorized attacker...
Moderate
Unreviewed
CVE-2026-57083
was published
Jul 14, 2026
Use of uninitialized resource in Windows RDP allows an unauthorized attacker to execute code over...
Critical
Unreviewed
CVE-2026-56190
was published
Jul 14, 2026
Use of uninitialized resource in Windows File Explorer allows an unauthorized attacker to...
Moderate
Unreviewed
CVE-2026-57084
was published
Jul 14, 2026
Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to...
High
Unreviewed
CVE-2026-55949
was published
Jul 14, 2026
Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose...
Moderate
Unreviewed
CVE-2026-55042
was published
Jul 14, 2026
Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose...
Moderate
Unreviewed
CVE-2026-50690
was published
Jul 14, 2026
Use of uninitialized resource in Universal Plug and Play (upnp.dll) allows an authorized attacker...
Moderate
Unreviewed
CVE-2026-50455
was published
Jul 14, 2026
Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose...
Moderate
Unreviewed
CVE-2026-50376
was published
Jul 14, 2026
Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose...
Moderate
Unreviewed
CVE-2026-54997
was published
Jul 14, 2026
Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose...
Moderate
Unreviewed
CVE-2026-55003
was published
Jul 14, 2026
Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose...
Moderate
Unreviewed
CVE-2026-49801
was published
Jul 14, 2026
Use of uninitialized resource in Microsoft Windows App Store allows an authorized attacker to...
High
Unreviewed
CVE-2026-49165
was published
Jul 14, 2026
Use of uninitialized resource in Windows File Explorer allows an authorized attacker to disclose...
Moderate
Unreviewed
CVE-2026-40422
was published
Jul 14, 2026
Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0...
Low
Unreviewed
CVE-2026-56085
was published
Jul 3, 2026
FatFs R0.16 and earlier contains an uninitialized cluster exposure when f_lseek() extends files...
Moderate
Unreviewed
CVE-2026-6686
was published
Jul 1, 2026
ProTip!
Advisories are also available from the
GraphQL API