GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
137,203 advisories
Filter by severity
Missing Authorization vulnerability in Majestic Support Majestic Support. This issue affects...
Moderate
Unreviewed
CVE-2025-49860
was published
Sep 9, 2025
Generation of error message containing sensitive information in Windows Kernel allows an...
Moderate
Unreviewed
CVE-2025-53803
was published
Sep 9, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-53797
was published
Sep 9, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-53798
was published
Sep 9, 2025
Use of uninitialized resource in Windows Imaging Component allows an unauthorized attacker to...
Moderate
Unreviewed
CVE-2025-53799
was published
Sep 9, 2025
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall...
Moderate
Unreviewed
CVE-2025-53808
was published
Sep 9, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-53796
was published
Sep 9, 2025
Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized...
Moderate
Unreviewed
CVE-2025-53804
was published
Sep 9, 2025
Missing Authorization vulnerability in spoddev2021 Spreadconnect. This issue affects...
Moderate
Unreviewed
CVE-2025-53291
was published
Sep 9, 2025
Missing Authorization vulnerability in Laborator Kalium. This issue affects Kalium: from n/a...
Moderate
Unreviewed
CVE-2025-53348
was published
Sep 9, 2025
Missing Authorization vulnerability in awesomesupport Awesome Support. This issue affects Awesome...
Moderate
Unreviewed
CVE-2025-53340
was published
Sep 9, 2025
Concurrent execution using shared resource with improper synchronization ('race condition') in...
Moderate
Unreviewed
CVE-2025-47997
was published
Sep 9, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-30875
was published
Sep 9, 2025
Missing Authorization vulnerability in Sovica Target Video Easy Publish. This issue affects...
Moderate
Unreviewed
CVE-2025-32688
was published
Sep 9, 2025
CSRF in Ivanti Connect Secure before 22.7R2.9 or 22.8R2, Ivanti Policy Secure before 22.7R1.6,...
Moderate
Unreviewed
CVE-2025-8711
was published
Sep 9, 2025
Missing authorization in Ivanti Connect Secure before 22.7R2.9 or 22.8R2, Ivanti Policy Secure...
Moderate
Unreviewed
CVE-2025-55144
was published
Sep 9, 2025
An unchecked return value in Ivanti Connect Secure before 22.7R2.9 or 22.8R2, Ivanti Policy...
Moderate
Unreviewed
CVE-2025-55146
was published
Sep 9, 2025
Reflected text injection in Ivanti Connect Secure before 22.7R2.9 or 22.8R2, Ivanti Policy Secure...
Moderate
Unreviewed
CVE-2025-55143
was published
Sep 9, 2025
SSRF in Ivanti Connect Secure before 22.7R2.9 or 22.8R2, Ivanti Policy Secure before 22.7R1.6,...
Moderate
Unreviewed
CVE-2025-55139
was published
Sep 9, 2025
Missing authorization in Ivanti Connect Secure before 22.7R2.9 or 22.8R2, Ivanti Policy Secure...
Moderate
Unreviewed
CVE-2025-8712
was published
Sep 9, 2025
SQL Injection vulnerability in FoxCMS v1.2.6 and before allows a remote attacker to execute...
Moderate
Unreviewed
CVE-2025-56435
was published
Sep 9, 2025
A vulnerability in the web-based management interface of Cisco Evolved Programmable Network...
Moderate
Unreviewed
CVE-2025-20280
was published
Sep 9, 2025
A vulnerability in Cisco Webex Meetings could have allowed an unauthenticated, remote attacker to...
Moderate
Unreviewed
CVE-2025-20291
was published
Sep 9, 2025
A vulnerability in the web-based management interface of Cisco Evolved Programmable Network...
Moderate
Unreviewed
CVE-2025-20270
was published
Sep 9, 2025
A security flaw has been discovered in Campcodes Recruitment Management System 1.0. This impacts...
Moderate
Unreviewed
CVE-2025-9920
was published
Sep 9, 2025
ProTip!
Advisories are also available from the
GraphQL API