GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,122
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,020
Swift
39
Unreviewed advisories
All unreviewed
5,000+
111,581 advisories
Filter by severity
The Make Connector plugin for WordPress is vulnerable to arbitrary file uploads due to...
High
Unreviewed
CVE-2025-6085
was published
Sep 4, 2025
In ConvertReductionOp of darwinn_mlir_converter_aidl.cc, there is a possible out of bounds write...
High
Unreviewed
CVE-2025-36906
was published
Sep 4, 2025
There is a possible escalation of privilege due to test/debugging code left in a production build...
High
Unreviewed
CVE-2025-36899
was published
Sep 4, 2025
In draw_surface_image() of abl/android/lib/draw/draw.c, there is a possible out of bounds write...
High
Unreviewed
CVE-2025-36907
was published
Sep 4, 2025
In lwis_io_buffer_write, there is a possible OOB read/write due to improper input validation....
High
Unreviewed
CVE-2025-36903
was published
Sep 4, 2025
The atec Debug plugin for WordPress is vulnerable to remote code execution in all versions up to,...
High
Unreviewed
CVE-2025-9517
was published
Sep 4, 2025
The atec Debug plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient...
High
Unreviewed
CVE-2025-9518
was published
Sep 4, 2025
The Easy Timer plugin for WordPress is vulnerable to Remote Code Execution in all versions up to,...
High
Unreviewed
CVE-2025-9519
was published
Sep 4, 2025
Langchain Community Vulnerable to XML External Entity (XXE) Attacks
High
CVE-2025-6984
was published
for
langchain-community
(pip)
Sep 4, 2025
There is a possible escalation of privilege due to a logic error in the code. This could lead to...
High
Unreviewed
CVE-2025-36898
was published
Sep 4, 2025
In wl_update_hidden_ap_ie() of wl_cfgscan.c, there is a possible out of bounds write due to...
High
Unreviewed
CVE-2024-56190
was published
Sep 4, 2025
In SAEMM_DiscloseMsId of SAEMM_RadioMessageCodec.c, there is a possible out of bounds read due to...
High
Unreviewed
CVE-2024-56189
was published
Sep 4, 2025
Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft TaskPano...
High
Unreviewed
CVE-2025-2411
was published
Sep 4, 2025
Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft e-Mutabakat...
High
Unreviewed
CVE-2025-2417
was published
Sep 4, 2025
In wl_cfgscan_update_v3_schedscan_results() of wl_cfgscan.c, there is a possible out of bounds...
High
Unreviewed
CVE-2025-36887
was published
Sep 4, 2025
In TBD of TBD, there is a possible DoS due to a missing null check. This could lead to remote...
High
Unreviewed
CVE-2025-36894
was published
Sep 4, 2025
Hono's flaw in URL path parsing could cause path confusion
High
CVE-2025-58362
was published
for
hono
(npm)
Sep 3, 2025
Claude Code Vulnerable to Arbitrary Code Execution Due to Insufficient Startup Warning
High
GHSA-ph6w-f82w-28w6
was published
for
@anthropic-ai/claude-code
(npm)
Sep 3, 2025
Deserialization of Untrusted Data vulnerability in enituretechnology LTL Freight Quotes – Day &...
High
Unreviewed
CVE-2025-58642
was published
Sep 3, 2025
Deserialization of Untrusted Data vulnerability in enituretechnology LTL Freight Quotes - TQL...
High
Unreviewed
CVE-2025-58644
was published
Sep 3, 2025
Deserialization of Untrusted Data vulnerability in enituretechnology LTL Freight Quotes –...
High
Unreviewed
CVE-2025-58643
was published
Sep 3, 2025
ProTip!
Advisories are also available from the
GraphQL API