GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,122
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,020
Swift
39
Unreviewed advisories
All unreviewed
5,000+
137,175 advisories
Filter by severity
Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose...
Moderate
Unreviewed
CVE-2025-54901
was published
Sep 9, 2025
Adobe Experience Manager versions 6.5.23.0 and earlier are affected by an Incorrect Authorization...
Moderate
Unreviewed
CVE-2025-54246
was published
Sep 9, 2025
Adobe Experience Manager versions 6.5.23.0 and earlier are affected by an Improper Input...
Moderate
Unreviewed
CVE-2025-54247
was published
Sep 9, 2025
Adobe Experience Manager versions 6.5.23.0 and earlier are affected by an Improper Input...
Moderate
Unreviewed
CVE-2025-54250
was published
Sep 9, 2025
Adobe Experience Manager versions 6.5.23.0 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2025-54252
was published
Sep 9, 2025
Adobe Experience Manager versions 6.5.23.0 and earlier are affected by a Server-Side Request...
Moderate
Unreviewed
CVE-2025-54249
was published
Sep 9, 2025
Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker...
Moderate
Unreviewed
CVE-2025-54107
was published
Sep 9, 2025
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall...
Moderate
Unreviewed
CVE-2025-54109
was published
Sep 9, 2025
Adobe Experience Manager versions 6.5.23.0 and earlier are affected by an XML Injection...
Moderate
Unreviewed
CVE-2025-54251
was published
Sep 9, 2025
Improper input validation in Windows Local Security Authority Subsystem Service (LSASS) allows an...
Moderate
Unreviewed
CVE-2025-53809
was published
Sep 9, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-53806
was published
Sep 9, 2025
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall...
Moderate
Unreviewed
CVE-2025-53810
was published
Sep 9, 2025
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-54096
was published
Sep 9, 2025
Use after free in Windows SMBv3 Client allows an authorized attacker to execute code over a network.
Moderate
Unreviewed
CVE-2025-54101
was published
Sep 9, 2025
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall...
Moderate
Unreviewed
CVE-2025-54104
was published
Sep 9, 2025
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-54095
was published
Sep 9, 2025
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall...
Moderate
Unreviewed
CVE-2025-54094
was published
Sep 9, 2025
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-54097
was published
Sep 9, 2025
Server-Side Request Forgery (SSRF) vulnerability in LiteSpeed Technologies LiteSpeed Cache. This...
Moderate
Unreviewed
CVE-2025-47437
was published
Sep 9, 2025
Missing Authorization vulnerability in Roland Murg WP Simple Booking Calendar. This issue affects...
Moderate
Unreviewed
CVE-2025-39541
was published
Sep 9, 2025
Missing Authorization vulnerability in andy_moyle Church Admin. This issue affects Church Admin:...
Moderate
Unreviewed
CVE-2025-39553
was published
Sep 9, 2025
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in GoodBarber GoodBarber. This...
Moderate
Unreviewed
CVE-2025-39523
was published
Sep 9, 2025
Missing Authorization vulnerability in Majestic Support Majestic Support. This issue affects...
Moderate
Unreviewed
CVE-2025-49860
was published
Sep 9, 2025
Missing Authorization vulnerability in spoddev2021 Spreadconnect. This issue affects...
Moderate
Unreviewed
CVE-2025-53291
was published
Sep 9, 2025
Missing Authorization vulnerability in Laborator Kalium. This issue affects Kalium: from n/a...
Moderate
Unreviewed
CVE-2025-53348
was published
Sep 9, 2025
ProTip!
Advisories are also available from the
GraphQL API