GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,828
Erlang
36
GitHub Actions
33
Go
2,445
Maven
5,000+
npm
4,061
NuGet
723
pip
3,861
Pub
12
RubyGems
943
Rust
1,007
Swift
39
Unreviewed advisories
All unreviewed
5,000+
3,591 advisories
Filter by severity
When a BIG-IP LTM Client SSL profile is configured on a virtual server with SSL Forward Proxy...
High
Unreviewed
CVE-2025-52585
was published
Aug 13, 2025
Null pointer dereference in Windows Local Security Authority Subsystem Service (LSASS) allows an...
Moderate
Unreviewed
CVE-2025-53716
was published
Aug 12, 2025
Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized...
High
Unreviewed
CVE-2025-53141
was published
Aug 12, 2025
Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized...
High
Unreviewed
CVE-2025-53154
was published
Aug 12, 2025
Illustrator versions 28.7.8, 29.6.1 and earlier are affected by a NULL Pointer Dereference...
Moderate
Unreviewed
CVE-2025-49567
was published
Aug 12, 2025
NULL pointer dereference for some Intel(R) Graphics Drivers may allow an authenticated user to...
Moderate
Unreviewed
CVE-2025-24515
was published
Aug 12, 2025
The YugabyteDB tablet server contains a flaw in its YCQL query handling that can trigger a null...
Moderate
Unreviewed
CVE-2025-8865
was published
Aug 11, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer...
Low
Unreviewed
CVE-2025-26690
was published
Aug 11, 2025
In GStreamer through 1.26.1, the subparse plugin's subrip_unescape_formatting function may...
Moderate
Unreviewed
CVE-2025-47807
was published
Aug 7, 2025
In GStreamer through 1.26.1, the subparse plugin's tmplayer_parse_line function may dereference a...
Moderate
Unreviewed
CVE-2025-47808
was published
Aug 7, 2025
openjpeg v 2.5.0 was discovered to contain a NULL pointer dereference via the component /openjp2...
Moderate
Unreviewed
CVE-2025-50952
was published
Aug 7, 2025
An unauthenticated remote attacker may trigger a NULL pointer dereference in the affected CODESYS...
High
Unreviewed
CVE-2025-41691
was published
Aug 4, 2025
A null pointer dereference vulnerability exists in the IOMap64.sys driver of ASUS AI Suite 3. The...
Moderate
Unreviewed
CVE-2025-6398
was published
Aug 1, 2025
OpenEXR ScanLineProcess::run_fill NULL Pointer Write In "reduceMemory" Mode
Moderate
CVE-2025-48073
was published
for
OpenEXR
(pip)
Jul 31, 2025
MaterialX Null Pointer Dereference in MaterialXCore Shader Generation due to Unchecked implGraphOutput
Low
CVE-2025-53011
was published
for
MaterialX
(pip)
Jul 31, 2025
MaterialX Null Pointer Dereference in getShaderNodes due to Unchecked nodeGraph->getOutput return
Low
CVE-2025-53010
was published
for
MaterialX
(pip)
Jul 31, 2025
A vulnerability has been found in GNU Binutils 2.44 and classified as problematic. This...
Moderate
Unreviewed
CVE-2025-8224
was published
Jul 27, 2025
A flaw was found in libssh, a library that implements the SSH protocol. When calculating the...
Moderate
Unreviewed
CVE-2025-8114
was published
Jul 25, 2025
NULL Pointer Dereference in µD3TN via non-singleton destination Endpoint Identifier allows remote...
High
Unreviewed
CVE-2025-8183
was published
Jul 25, 2025
The JavaScript engine did not handle closed generators correctly and it was possible to resume...
Moderate
Unreviewed
CVE-2025-8033
was published
Jul 22, 2025
A null pointer dereference vulnerability exists in the Distributed Transaction component of...
High
Unreviewed
CVE-2025-48498
was published
Jul 22, 2025
A null pointer dereference vulnerability exists in the net_connectmsg Protocol Buffer Message...
High
Unreviewed
CVE-2025-36520
was published
Jul 22, 2025
A null pointer dereference vulnerability exists in the CDB2SQLQUERY protocol buffer message...
High
Unreviewed
CVE-2025-35966
was published
Jul 22, 2025
Mbed TLS before 3.6.4 has a NULL pointer dereference because mbedtls_asn1_store_named_data can...
Moderate
Unreviewed
CVE-2025-48965
was published
Jul 20, 2025
A NULL Pointer Dereference vulnerability in the routing protocol daemon (rpd) of Juniper Networks...
High
Unreviewed
CVE-2025-52984
was published
Jul 11, 2025
ProTip!
Advisories are also available from the
GraphQL API