GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
137,211 advisories
Filter by severity
Fiori app Manage Payment Blocks does not perform the necessary authorization checks, allowing an...
Moderate
Unreviewed
CVE-2025-42915
was published
Sep 9, 2025
SAP NetWeaver (Service Data Download) allows an authenticated user to call a remote-enabled...
Moderate
Unreviewed
CVE-2025-42911
was published
Sep 9, 2025
SAP HCM Approve Timesheets Fiori 2.0 application does not perform necessary authorization checks...
Moderate
Unreviewed
CVE-2025-42917
was published
Sep 9, 2025
SAP HCM My Timesheet Fiori 2.0 application does not perform necessary authorization checks for an...
Moderate
Unreviewed
CVE-2025-42912
was published
Sep 9, 2025
Due to a Cross-Site Scripting (XSS) vulnerability in the SAP Supplier Relationship Management, an...
Moderate
Unreviewed
CVE-2025-42920
was published
Sep 9, 2025
A weakness has been identified in SourceCodester Simple To-Do List System 1.0. Impacted is an...
Moderate
Unreviewed
CVE-2025-10117
was published
Sep 9, 2025
A security vulnerability has been detected in itsourcecode E-Logbook with Health Monitoring...
Moderate
Unreviewed
CVE-2025-10118
was published
Sep 9, 2025
A vulnerability was found in PHPGurukul Small CRM 4.0. Affected by this issue is some unknown...
Moderate
Unreviewed
CVE-2025-10114
was published
Sep 9, 2025
IBM Concert Software 1.0.0 through 1.1.0 could allow a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2025-1761
was published
Sep 9, 2025
Liferay Portal is vulnerable to SSRF through custom object attachment fields
Moderate
CVE-2025-43763
was published
for
com.liferay:com.liferay.object.service
(Maven)
Sep 9, 2025
A weakness has been identified in itsourcecode Student Information Management System 1.0. The...
Moderate
Unreviewed
CVE-2025-10112
was published
Sep 9, 2025
A security vulnerability has been detected in itsourcecode Student Information Management System...
Moderate
Unreviewed
CVE-2025-10113
was published
Sep 9, 2025
A security flaw has been discovered in itsourcecode Student Information Management System 1.0....
Moderate
Unreviewed
CVE-2025-10111
was published
Sep 9, 2025
A vulnerability was determined in Campcodes Online Loan Management System 1.0. This issue affects...
Moderate
Unreviewed
CVE-2025-10109
was published
Sep 9, 2025
A vulnerability was identified in ChanCMS up to 3.3.1. Impacted is an unknown function of the...
Moderate
Unreviewed
CVE-2025-10110
was published
Sep 9, 2025
A vulnerability has been found in yanyutao0402 ChanCMS up to 3.3.1. This affects an unknown part...
Moderate
Unreviewed
CVE-2025-10106
was published
Sep 9, 2025
A vulnerability was found in Campcodes Online Loan Management System 1.0. This vulnerability...
Moderate
Unreviewed
CVE-2025-10108
was published
Sep 9, 2025
Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an improper privilege management...
Moderate
Unreviewed
CVE-2025-43722
was published
Sep 8, 2025
A security vulnerability has been detected in code-projects Online Event Judging System 1.0....
Moderate
Unreviewed
CVE-2025-10104
was published
Sep 8, 2025
A weakness has been identified in code-projects Online Event Judging System 1.0. This impacts an...
Moderate
Unreviewed
CVE-2025-10103
was published
Sep 8, 2025
A flaw has been found in yanyutao0402 ChanCMS up to 3.3.1. Affected by this issue is some unknown...
Moderate
Unreviewed
CVE-2025-10105
was published
Sep 8, 2025
LinkedIn Mobile Application for Android version 4.1.1087.2 fails to update link preview metadata ...
Moderate
Unreviewed
CVE-2025-56139
was published
Sep 8, 2025
A security flaw has been discovered in code-projects Online Event Judging System 1.0. This...
Moderate
Unreviewed
CVE-2025-10102
was published
Sep 8, 2025
Fides Webserver API Rate Limiting Vulnerability in Proxied Environments
Moderate
CVE-2025-57816
was published
for
ethyca-fides
(pip)
Sep 8, 2025
A weakness has been identified in Portabilis i-Educar up to 2.10. Affected by this vulnerability...
Moderate
Unreviewed
CVE-2025-10099
was published
Sep 8, 2025
ProTip!
Advisories are also available from the
GraphQL API