GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
102
GitHub Actions
54
Go
4,428
Maven
5,000+
npm
5,000+
NuGet
1,088
pip
5,000+
Pub
13
RubyGems
1,129
Rust
1,506
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
493 advisories
Filter by severity
A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in seunshare of selinux...
Moderate
Unreviewed
CVE-2026-59676
was published
Jul 23, 2026
OpenClaw before 2026.5.28 contains a race condition in the MS Teams safeFetch DNS rebinding check...
Moderate
Unreviewed
CVE-2026-62212
was published
Jul 17, 2026
A time-of-check to time-of-use (TOCTOU) race condition in the installation and uninstallation...
High
Unreviewed
CVE-2026-53410
was published
Jul 16, 2026
Creative Cloud Desktop is affected by a Time-of-check Time-of-use (TOCTOU) Race Condition...
High
Unreviewed
CVE-2026-48344
was published
Jul 14, 2026
Time-of-check time-of-use (toctou) race condition in Windows Subsystem for Linux allows an...
Moderate
Unreviewed
CVE-2026-57973
was published
Jul 14, 2026
Time-of-check time-of-use (toctou) race condition in Windows Network File System allows an...
High
Unreviewed
CVE-2026-56648
was published
Jul 14, 2026
Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Endpoint allows an...
Moderate
Unreviewed
CVE-2026-56178
was published
Jul 14, 2026
Null pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges...
High
Unreviewed
CVE-2026-50673
was published
Jul 14, 2026
Time-of-check time-of-use (toctou) race condition in Microsoft Defender allows an authorized...
High
Unreviewed
CVE-2026-50658
was published
Jul 14, 2026
TOCTOU Race Condition in specific trace commands of the TraceEvent() system call could allow an...
Moderate
Unreviewed
CVE-2026-4018
was published
Jul 14, 2026
Kernel software installed and running inside a Host VM may post improper commands to the GPU...
High
Unreviewed
CVE-2026-45203
was published
Jul 10, 2026
varstored is a component of the Xapi toolstack handling UEFI Variables
for a VM. It has a...
Critical
Unreviewed
CVE-2025-58151
was published
Jul 9, 2026
Memory Corruption when processing asynchronous input parameters due to improper handling of...
High
Unreviewed
CVE-2026-25271
was published
Jul 6, 2026
Time-of-check time-of-use (toctou) race condition in Microsoft Edge for Android allows an...
High
Unreviewed
CVE-2026-58299
was published
Jul 3, 2026
NVIDIA Container Toolkit for Linux contains a vulnerability where an attacker could cause a time...
High
Unreviewed
CVE-2026-24260
was published
Jul 1, 2026
Time-of-check time-of-use (TOCTOU) race condition vulnerability in Samsung Open Source Escargot...
Moderate
Unreviewed
CVE-2026-14160
was published
Jun 30, 2026
Hi.Events through 1.9.0 contains a promo code validation vulnerability where reservation...
High
Unreviewed
CVE-2026-57959
was published
Jun 29, 2026
Honeywell IQ MultiAccess, all versions prior to and including version 28, contain an improper...
Moderate
Unreviewed
CVE-2026-13742
was published
Jun 29, 2026
acl before version 2.4.0 contains a time-of-check to time-of-use (TOCTOU) race condition...
High
Unreviewed
CVE-2026-54370
was published
Jun 29, 2026
In the Linux kernel, the following vulnerability has been resolved:
xsk: cache csum_start...
High
Unreviewed
CVE-2026-53250
was published
Jun 25, 2026
In the Linux kernel, the following vulnerability has been resolved:
drm/gem: Try to fix...
High
Unreviewed
CVE-2026-53145
was published
Jun 25, 2026
In the Linux kernel, the following vulnerability has been resolved:
sched/psi: fix race between...
High
Unreviewed
CVE-2026-52991
was published
Jun 24, 2026
A flaw in Node.js HTTP Agent can cause a client to accept as valid a response that is send before...
Low
Unreviewed
CVE-2026-48931
was published
Jun 22, 2026
A time-to-check-time-of-use in polkit authentication of qSnapper before version 1.3.3 allowed a...
High
Unreviewed
CVE-2026-41045
was published
Jun 22, 2026
A time-of-check time-of-use (TOCTOU) race condition was found in the abrt-dbus D-Bus service's...
High
Unreviewed
CVE-2026-54228
was published
Jun 13, 2026
ProTip!
Advisories are also available from the
GraphQL API