GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
23,457 advisories
Filter by severity
A permissions issue was addressed by removing the vulnerable code. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-43199
was published
Jul 30, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.6, macOS...
Critical
Unreviewed
CVE-2025-43194
was published
Jul 30, 2025
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in...
Critical
Unreviewed
CVE-2025-43209
was published
Jul 30, 2025
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15...
Critical
Unreviewed
CVE-2025-43198
was published
Jul 30, 2025
The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.6,...
Critical
Unreviewed
CVE-2025-43193
was published
Jul 30, 2025
This issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.6...
Critical
Unreviewed
CVE-2025-43189
was published
Jul 30, 2025
A configuration issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-43192
was published
Jul 30, 2025
The issue was addressed with improved memory handling. This issue is fixed in watchOS 11.6, iOS...
Critical
Unreviewed
CVE-2025-43186
was published
Jul 30, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-31279
was published
Jul 30, 2025
An input validation issue was addressed with improved memory handling. This issue is fixed in...
Critical
Unreviewed
CVE-2025-31281
was published
Jul 30, 2025
This issue was addressed by adding an additional prompt for user consent. This issue is fixed in...
Critical
Unreviewed
CVE-2025-43184
was published
Jul 30, 2025
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia...
Critical
Unreviewed
CVE-2025-24119
was published
Jul 30, 2025
A logic issue was addressed with improved checks. This issue is fixed in iOS 18.6 and iPadOS 18.6...
Critical
Unreviewed
CVE-2025-31229
was published
Jul 30, 2025
Use of Externally-Controlled Format String vulnerability in the SonicOS SSL VPN interface allows...
Critical
Unreviewed
CVE-2025-40600
was published
Jul 30, 2025
MapTiler Tileserver-php v2.0 is vulnerable to Cross Site Scripting (XSS). The GET parameter ...
Critical
Unreviewed
CVE-2025-44136
was published
Jul 29, 2025
langchain-ai v0.3.51 was discovered to contain an indirect prompt injection vulnerability in the...
Critical
Unreviewed
CVE-2025-46059
was published
Jul 29, 2025
A stored XSS vulnerability in No Boss Testimonials component 1.0.0-3.0.0 and 4.0.0-4.0.2 for...
Critical
Unreviewed
CVE-2025-54299
was published
Jul 28, 2025
A stored XSS vulnerability in CommentBox component 1.0.0-1.1.0 for Joomla was discovered.
Critical
Unreviewed
CVE-2025-54298
was published
Jul 28, 2025
An issue was discovered on Marbella KR8s Dashcam FF 2.0.8 devices. All dashcams were shipped with...
Critical
Unreviewed
CVE-2025-30125
was published
Jul 28, 2025
iSTAR Ultra performs a firmware verification on boot, however the verification does not inspect...
Critical
Unreviewed
CVE-2025-53696
was published
Jul 28, 2025
An issue was discovered on IROAD Dashcam FX2 devices. Bypass of Device Pairing/Registration can...
Critical
Unreviewed
CVE-2025-30133
was published
Jul 28, 2025
An issue was discovered on Marbella KR8s Dashcam FF 2.0.8 devices. When a new SD card is inserted...
Critical
Unreviewed
CVE-2025-30124
was published
Jul 28, 2025
An incorrect default permissions vulnerability exists in the CServerSettings::SetRegistryValues...
Critical
Unreviewed
CVE-2025-26469
was published
Jul 28, 2025
A privilege escalation vulnerability exists in the login.php functionality of meddream MedDream...
Critical
Unreviewed
CVE-2025-27724
was published
Jul 28, 2025
OS Command Injection in iSTAR Ultra products web application allows an authenticated attacker to...
Critical
Unreviewed
CVE-2025-53695
was published
Jul 28, 2025
ProTip!
Advisories are also available from the
GraphQL API