GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,121
NuGet
735
pip
3,941
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,881 advisories
Filter by severity
In Permission Manager, there is a possible way for the microphone privacy indicator to remain...
Low
Unreviewed
CVE-2025-26461
was published
Sep 5, 2025
ECOVACS robot vacuums and base stations communicate via an insecure Wi-Fi network with a...
Low
Unreviewed
CVE-2025-30198
was published
Sep 5, 2025
Improper verification of intent by SystemExceptionalBroadcastReceiver in S Assistant prior to...
Low
Unreviewed
CVE-2025-21039
was published
Sep 5, 2025
Improper verification of intent by SamsungExceptionalBroadcastReceiver in S Assistant prior to...
Low
Unreviewed
CVE-2025-21038
was published
Sep 5, 2025
Improper verification of intent by ExternalBroadcastReceiver in S Assistant prior to version 9.3...
Low
Unreviewed
CVE-2025-21040
was published
Sep 5, 2025
Improper access control vulnerability in SemClipboard prior to SMR Apr-2023 Release 1 allows...
Low
Unreviewed
CVE-2023-21471
was published
Sep 5, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Rami...
Low
Unreviewed
CVE-2025-58866
was published
Sep 5, 2025
Improper Control of Generation of Code ('Code Injection') vulnerability in PickPlugins Job Board...
Low
Unreviewed
CVE-2025-58827
was published
Sep 5, 2025
Missing Authorization vulnerability in Plugin Devs Product Carousel Slider for Elementor allows...
Low
Unreviewed
CVE-2025-58816
was published
Sep 5, 2025
Incomplete cleanup after loading a CPU microcode patch may allow a privileged attacker to degrade...
Low
Unreviewed
CVE-2024-21977
was published
Sep 5, 2025
In initPhoneSwitch of SystemSettingsFragment.java, there is a possible FRP bypass due to a logic...
Low
Unreviewed
CVE-2025-26419
was published
Sep 4, 2025
In multiple locations, there is a possible way to view icons belonging to another user due to a...
Low
Unreviewed
CVE-2025-0076
was published
Sep 4, 2025
In startLockTaskMode of LockTaskController.java, there is a possible lock screen bypass due to a...
Low
Unreviewed
CVE-2025-26428
was published
Sep 4, 2025
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.7_1 and 6.2.0.0 through 6.2.0.4 and IBM...
Low
Unreviewed
CVE-2025-2667
was published
Sep 4, 2025
OpenAM (OpenAM Consortium Edition) contains a vulnerability that may cause it to malfunction as a...
Low
Unreviewed
CVE-2025-8662
was published
Sep 3, 2025
Cross-Frame Scripting (XFS) vulnerability in BoomCMS v9.1.4 from UXB London. XFS is a web attack...
Low
Unreviewed
CVE-2025-41000
was published
Sep 3, 2025
Foxit PDF Reader PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2025-9327
was published
Sep 2, 2025
Foxit PDF Reader PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2025-9325
was published
Sep 2, 2025
Foxit PDF Reader JP2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2025-9323
was published
Sep 2, 2025
Foxit PDF Reader PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2025-9324
was published
Sep 2, 2025
rocket.chat Incorrect Authorization Information Disclosure Vulnerability. This vulnerability...
Low
Unreviewed
CVE-2025-7974
was published
Sep 2, 2025
Realtek RTL8811AU rtwlanu.sys N6CQueryInformationHandleCustomized11nOids Out-Of-Bounds Read...
Low
Unreviewed
CVE-2025-8298
was published
Sep 2, 2025
A security vulnerability has been detected in Tenda W12 up to 3.0.0.6(3948). Affected is an...
Low
Unreviewed
CVE-2025-9778
was published
Sep 2, 2025
A vulnerability was determined in Tenda AC9 15.03.05.19. The impacted element is an unknown...
Low
Unreviewed
CVE-2025-9731
was published
Aug 31, 2025
A command injection vulnerability has been reported to affect HybridDesk Station. If an attacker...
Low
Unreviewed
CVE-2025-44015
was published
Aug 29, 2025
ProTip!
Advisories are also available from the
GraphQL API