GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
49
Go
3,521
Maven
5,000+
npm
5,000+
NuGet
911
pip
4,760
Pub
13
RubyGems
1,036
Rust
1,229
Swift
53
Unreviewed advisories
All unreviewed
5,000+
306 advisories
Filter by severity
ImageMagick has has a stack-buffer-overflow in MNG encoder with oversized pallete
Moderate
GHSA-98cp-rj9f-6v5g
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Apr 14, 2026
ImageMagick has an off-by-one error in MSL decoder could result in crash
Moderate
CVE-2026-40312
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Apr 14, 2026
ImageMagick has a heap-use-after-free via XMP profile could result in a crash when printing the values.
Moderate
CVE-2026-40311
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Apr 14, 2026
ImageMagick has a heap out-of-bounds write in JP2 encoder
Moderate
CVE-2026-40310
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Apr 14, 2026
ImageMagick has a heap buffer overflow when encoding JXL image with a 16-bit float
Moderate
CVE-2026-40183
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Apr 14, 2026
ImageMagick has a heap buffer overflow (WRITE) in the YAML and JSON encoders.
Moderate
CVE-2026-40169
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Apr 14, 2026
ImageMagick has an out-of-bounds read in sample operation
Moderate
CVE-2026-33905
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Apr 14, 2026
ImageMagick has a Stack Overflow via Recursive FX Expression Parsing
Moderate
CVE-2026-33902
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Apr 14, 2026
ImageMagick has a heap-Buffer-Overflow write of a single zero byte when parsing xml.
Moderate
CVE-2026-33899
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Apr 13, 2026
ImageMagick has an integer overflow in despeckle operation causing a heap buffer overflow on 32-bit builds
Moderate
CVE-2026-34238
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Apr 13, 2026
ImageMagick has a heap overflow caused by integer overflow/wraparound in viff encoder on 32-bit builds
Moderate
CVE-2026-33900
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Apr 13, 2026
DNN: Force Friend Request Acceptance
Moderate
CVE-2026-40305
was published
for
DotNetNuke.Core
(NuGet)
Apr 10, 2026
Apache Log4net: Silent log event loss in XmlLayout and XmlLayoutSchemaLog4J due to unescaped XML 1.0 forbidden characters
Moderate
CVE-2026-40021
was published
for
log4net
(NuGet)
Apr 10, 2026
ImageMagick has an Out-of-bounds Write via InterpretImageFilename
Moderate
CVE-2026-33536
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 26, 2026
ImageMagick has an Out-of-Bounds write of a zero byte in its X11 display interaction
Moderate
CVE-2026-33535
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 26, 2026
Scriban has Multiple Denial-of-Service Vectors via Unbounded Resource Consumption During Expression Evaluation
Moderate
GHSA-xw6w-9jjh-p9cr
was published
for
Scriban
(NuGet)
Mar 24, 2026
Scriban: Denial of Service via Unbounded Cumulative Template Output Bypassing LimitToString
Moderate
GHSA-m2p3-hwv5-xpqw
was published
for
Scriban
(NuGet)
Mar 24, 2026
Scriban Affected by Memory Exhaustion (OOM) via Unbounded String Generation (Denial of Service)
Moderate
GHSA-5rpf-x9jg-8j5p
was published
for
scriban
(NuGet)
Mar 19, 2026
ImageMagick has a heap-buffer-overflow in NewXMLTree which could result in crash
Moderate
CVE-2026-32636
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 17, 2026
ImageMagick: Specially crafted SVG leads to segmentation fault and generate trash files in "/tmp", possible to leverage DoS
Moderate
CVE-2023-1289
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 12, 2026
ImageMagick has heap buffer overflow in WriteXWDImage due to CARD32 arithmetic overflow in bytes_per_line calculation
Moderate
CVE-2026-30937
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 12, 2026
ImageMagick has Heap Buffer Overflow in WaveletDenoiseImage
Moderate
CVE-2026-30936
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 12, 2026
ImageMagick has Heap Buffer Over-Read in BilateralBlurImage
Moderate
CVE-2026-30935
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 12, 2026
ImageMagick has heap-based buffer overflow in UHDR encoder
Moderate
CVE-2026-30931
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 12, 2026
ImageMagick has stack write buffer overflow in MNG encoder
Moderate
CVE-2026-28690
was published
for
Magick.NET-Q16-AnyCPU
(NuGet)
Mar 12, 2026
ProTip!
Advisories are also available from the
GraphQL API