GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
23,457 advisories
Filter by severity
A stack-based buffer overflow vulnerability exists in freeFTPd version 1.0.10 and earlier in the...
Critical
Unreviewed
CVE-2013-10042
was published
Jul 31, 2025
An unauthenticated arbitrary file upload vulnerability exists in FlashChat versions 6.0.2 and 6.0...
Critical
Unreviewed
CVE-2013-10038
was published
Jul 31, 2025
A vulnerability exists in OAstium VoIP PBX astium-confweb-2.1-25399 and earlier, where improper...
Critical
Unreviewed
CVE-2013-10043
was published
Jul 31, 2025
An unauthenticated remote command execution vulnerability exists in Pandora FMS versions up to...
Critical
Unreviewed
CVE-2014-125124
was published
Jul 31, 2025
An unrestricted file upload vulnerability exists in Simple E-Document versions 3.0 to 3.1 that...
Critical
Unreviewed
CVE-2014-125126
was published
Jul 31, 2025
An OS command injection vulnerability exists in Russound MBX-PRE-D67F firmware version 3.1.6,...
Critical
Unreviewed
CVE-2025-50475
was published
Jul 31, 2025
An OS command injection vulnerability exists in WebTester version 5.x via the install2.php...
Critical
Unreviewed
CVE-2013-10037
was published
Jul 31, 2025
An unauthenticated SQL injection vulnerability exists in Kimai version 0.9.2.x via the db_restore...
Critical
Unreviewed
CVE-2013-10033
was published
Jul 31, 2025
An unrestricted file upload vulnerability exists in Kaseya KServer versions prior to 6.3.0.2. The...
Critical
Unreviewed
CVE-2013-10034
was published
Jul 31, 2025
A stack-based buffer overflow vulnerability exists in D-Link DIR-605L Wireless N300 Cloud Router...
Critical
Unreviewed
CVE-2012-10021
was published
Jul 31, 2025
LinuxServer.io heimdall 2.6.3-ls307 contains a vulnerability in how it handles user-supplied HTTP...
Critical
Unreviewed
CVE-2025-50578
was published
Jul 30, 2025
A Missing Authentication for Critical Function vulnerability in SUSE Manager allows anyone with...
Critical
Unreviewed
CVE-2025-46811
was published
Jul 30, 2025
This issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15...
Critical
Unreviewed
CVE-2025-43253
was published
Jul 30, 2025
A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia...
Critical
Unreviewed
CVE-2025-43275
was published
Jul 30, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.6,...
Critical
Unreviewed
CVE-2025-43261
was published
Jul 30, 2025
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in...
Critical
Unreviewed
CVE-2025-43273
was published
Jul 30, 2025
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in...
Critical
Unreviewed
CVE-2025-43237
was published
Jul 30, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-43232
was published
Jul 30, 2025
This issue was addressed with improved access restrictions. This issue is fixed in macOS Sequoia...
Critical
Unreviewed
CVE-2025-43233
was published
Jul 30, 2025
A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in...
Critical
Unreviewed
CVE-2025-43245
was published
Jul 30, 2025
Multiple memory corruption issues were addressed with improved input validation. This issue is...
Critical
Unreviewed
CVE-2025-43234
was published
Jul 30, 2025
A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia...
Critical
Unreviewed
CVE-2025-43244
was published
Jul 30, 2025
A use-after-free issue was addressed by removing the vulnerable code. This issue is fixed in...
Critical
Unreviewed
CVE-2025-43222
was published
Jul 30, 2025
This issue was addressed with improved validation of symlinks. This issue is fixed in iPadOS 17.7...
Critical
Unreviewed
CVE-2025-43220
was published
Jul 30, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-43243
was published
Jul 30, 2025
ProTip!
Advisories are also available from the
GraphQL API