GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,244 advisories
Filter by severity
An issue was discovered in Cicool builder 3.4.4 allowing attackers to reset the administrator's...
Moderate
Unreviewed
CVE-2025-51543
was published
Aug 19, 2025
Improper Access Control issue in the Workflow component of Fortra's FileCatalyst allows...
High
Unreviewed
CVE-2025-8450
was published
Aug 19, 2025
An unauthenticated remote attacker can grant access without password protection to the affected...
Moderate
Unreviewed
CVE-2025-41689
was published
Aug 19, 2025
Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Authenticator...
Critical
Unreviewed
CVE-2025-8995
was published
Aug 15, 2025
A security issue exists within the 5032 16pt Digital Configurable module’s web server....
High
Unreviewed
CVE-2025-7774
was published
Aug 14, 2025
KuWFi CPF908-CP5 WEB5.0_LCD_20210125 devices have multiple unauthenticated access control...
Critical
Unreviewed
CVE-2025-43983
was published
Aug 14, 2025
Flowise OS command remote code execution
Critical
CVE-2025-8943
was published
for
flowise
(npm)
Aug 14, 2025
Missing Authentication for Critical Function vulnerability in ABB ABB AbilityTM zenon.This issue...
High
Unreviewed
CVE-2025-8754
was published
Aug 13, 2025
Missing authentication for critical function in Windows StateRepository API allows an authorized...
High
Unreviewed
CVE-2025-53789
was published
Aug 12, 2025
A low-privileged local attacker can exploit improper permissions on nssm.exe to escalate their...
High
Unreviewed
CVE-2025-41686
was published
Aug 12, 2025
Missing Authentication for Critical Function vulnerability in ABB Aspect.This issue affects...
High
Unreviewed
CVE-2025-7679
was published
Aug 11, 2025
Missing Authentication for Critical Function vulnerability in ABB Aspect.This issue affects...
High
Unreviewed
CVE-2025-53191
was published
Aug 11, 2025
Missing Authentication for Critical Function vulnerability in ABB Aspect.This issue affects...
High
Unreviewed
CVE-2025-7677
was published
Aug 11, 2025
Mattermost Confluence Plugin is Missing Authentication for Critical Function
High
CVE-2025-54478
was published
for
github.com/mattermost/mattermost-plugin-confluence
(Go)
Aug 11, 2025
Mattermost Confluence Plugin is Missing Authentication for Critical Function
High
CVE-2025-44004
was published
for
github.com/mattermost/mattermost-plugin-confluence
(Go)
Aug 11, 2025
Burk Technology ARC Solo's password change mechanism can be utilized without proper ...
Critical
Unreviewed
CVE-2025-5095
was published
Aug 8, 2025
By default, the Packet Power Monitoring and Control Web Interface do not
enforce authentication...
Critical
Unreviewed
CVE-2025-8284
was published
Aug 8, 2025
FreeFloat FTP Server contains multiple critical design flaws that allow unauthenticated remote...
Critical
Unreviewed
CVE-2012-10030
was published
Aug 5, 2025
An unrestricted file upload vulnerability exists in Dell (acquired by Quest) KACE K1000 System...
Critical
Unreviewed
CVE-2014-125113
was published
Aug 5, 2025
In the Airoha Bluetooth audio SDK, there is a possible permission bypass that allows access...
High
Unreviewed
CVE-2025-20700
was published
Aug 4, 2025
In the Airoha Bluetooth audio SDK, there is a possible unauthorized access to the RACE protocol....
High
Unreviewed
CVE-2025-20702
was published
Aug 4, 2025
Güralp FMUS series seismic monitoring devices expose an unauthenticated Telnet-based command line...
Critical
Unreviewed
CVE-2025-8286
was published
Jul 31, 2025
An unrestricted file upload vulnerability exists in Simple E-Document versions 3.0 to 3.1 that...
Critical
Unreviewed
CVE-2014-125126
was published
Jul 31, 2025
A Missing Authentication for Critical Function vulnerability in SUSE Manager allows anyone with...
Critical
Unreviewed
CVE-2025-46811
was published
Jul 30, 2025
Insufficient input validation within GitLab Language Server 7.6.0 and later before 7.30.0 allows...
High
Unreviewed
CVE-2025-8279
was published
Jul 28, 2025
ProTip!
Advisories are also available from the
GraphQL API