GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
389 advisories
Filter by severity
The affected product does not limit the number of attempts for inputting
the correct PIN for a...
Critical
Unreviewed
CVE-2025-46414
was published
Aug 8, 2025
A vulnerability was found in macrozheng mall 1.0.3. It has been rated as problematic. Affected by...
Moderate
Unreviewed
CVE-2025-8742
was published
Aug 9, 2025
OpenBao Userpass and LDAP User Lockout Bypass
Moderate
CVE-2025-54998
was published
for
github.com/openbao/openbao
(Go)
Aug 8, 2025
OpenBao Login MFA Bypass of Rate Limiting and TOTP Token Reuse
Moderate
CVE-2025-55003
was published
for
github.com/openbao/openbao
(Go)
Aug 8, 2025
A vulnerability was determined in mtons mblog up to 3.5.0. Affected by this issue is some unknown...
Moderate
Unreviewed
CVE-2025-8927
was published
Aug 13, 2025
A vulnerability was found in mtons mblog up to 3.5.0. This issue affects some unknown processing...
Moderate
Unreviewed
CVE-2025-9004
was published
Aug 15, 2025
Soosyze CMS's /user/login endpoint missing rate-limiting and lockout mechanisms
High
CVE-2025-52392
was published
for
soosyze/soosyze
(Composer)
Aug 13, 2025
Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft ProKuafor...
High
Unreviewed
CVE-2025-2413
was published
Sep 2, 2025
Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft LimonDesk...
High
Unreviewed
CVE-2025-2416
was published
Sep 3, 2025
Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft TaskPano...
High
Unreviewed
CVE-2025-2411
was published
Sep 4, 2025
Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft e-Mutabakat...
High
Unreviewed
CVE-2025-2417
was published
Sep 4, 2025
It is possible to bypass the clipping level of authentication attempts in SolaX Cloud through the...
Moderate
Unreviewed
CVE-2025-36758
was published
Sep 10, 2025
Fides has a Lack of Brute-Force Protections on Authentication Endpoints
Low
CVE-2025-57815
was published
for
ethyca-fides
(pip)
Sep 8, 2025
Fides Webserver API Rate Limiting Vulnerability in Proxied Environments
Moderate
CVE-2025-57816
was published
for
ethyca-fides
(pip)
Sep 8, 2025
ProTip!
Advisories are also available from the
GraphQL API