GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
293,687 advisories
Filter by severity
A vulnerability was found in Campcodes Grocery Sales and Inventory System 1.0. Affected is an...
Moderate
Unreviewed
CVE-2025-10564
was published
Sep 16, 2025
Ilevia EVE X1 Server version ≤ 4.7.18.0.eden contains a pre-authentication file disclosure...
High
Unreviewed
CVE-2025-34185
was published
Sep 16, 2025
Cleartext storage of sensitive information in Microsoft PC Manager allows an unauthorized...
Moderate
Unreviewed
CVE-2025-49728
was published
Sep 16, 2025
SQL Injection vulnerability in TDuckCloud v.5.1 allows a remote attacker to execute arbitrary...
Unknown
Unreviewed
CVE-2025-57631
was published
Sep 16, 2025
Ilevia EVE X1/X5 Server version ≤ 4.7.18.0.eden contains a misconfiguration in the sudoers file...
Critical
Unreviewed
CVE-2025-34187
was published
Sep 16, 2025
A flaw has been found in Campcodes Grocery Sales and Inventory System 1.0. This affects an...
Moderate
Unreviewed
CVE-2025-10562
was published
Sep 16, 2025
A vulnerability was determined in Campcodes Grocery Sales and Inventory System 1.0. Affected by...
Moderate
Unreviewed
CVE-2025-10565
was published
Sep 16, 2025
Ilevia EVE X1 Server version ≤ 4.7.18.0.eden contains an unauthenticated OS command injection...
Critical
Unreviewed
CVE-2025-34184
was published
Sep 16, 2025
A vulnerability has been found in Campcodes Grocery Sales and Inventory System 1.0. This impacts...
Moderate
Unreviewed
CVE-2025-10563
was published
Sep 16, 2025
The /api/comment endpoint in zhangyd-c OneBlog 2.3.9 contains a denial-of-service vulnerability.
Unknown
Unreviewed
CVE-2025-56264
was published
Sep 16, 2025
An issue discovered in the Tuya Smart Life App 5.6.1 allows attackers to unprivileged control...
Unknown
Unreviewed
CVE-2025-56557
was published
Sep 16, 2025
Ilevia EVE X1/X5 Server version ≤ 4.7.18.0.eden contains a vulnerability in its authentication...
Critical
Unreviewed
CVE-2025-34186
was published
Sep 16, 2025
Insufficient ui warning of dangerous operations in Microsoft Edge for Android allows an...
Moderate
Unreviewed
CVE-2025-47967
was published
Sep 16, 2025
matrix-js-sdk has insufficient validation when considering a room to be upgraded by another
Low
CVE-2025-59160
was published
for
matrix-js-sdk
(npm)
Sep 16, 2025
@executeautomation/database-server does not properly restrict access, bypassing a "read-only" mode
High
CVE-2025-59333
was published
for
@executeautomation/database-server
(npm)
Sep 16, 2025
CYRISMA Sensor before 444 for Windows has an Insecure Folder and File Permissions vulnerability....
Unknown
Unreviewed
CVE-2025-57625
was published
Sep 16, 2025
Substance3D - Stager versions 3.1.3 and earlier are affected by an out-of-bounds read...
Moderate
Unreviewed
CVE-2025-54237
was published
Sep 16, 2025
Substance3D - Stager versions 3.1.3 and earlier are affected by an out-of-bounds read...
High
Unreviewed
CVE-2025-54262
was published
Sep 16, 2025
A DLL hijacking vulnerability in CYRISMA Agent before 444 allows local users to escalate...
Unknown
Unreviewed
CVE-2025-57624
was published
Sep 16, 2025
An incorrect API discovered in Signify Wiz Connected 1.9.1 allows attackers to remotely launch a...
Unknown
Unreviewed
CVE-2025-56562
was published
Sep 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
caif: fix memory leak in...
Unknown
Unreviewed
CVE-2023-53330
was published
Sep 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
recordmcount: Fix memory...
Unknown
Unreviewed
CVE-2023-53318
was published
Sep 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
scsi: mpi3mr: Fix issues in...
Unknown
Unreviewed
CVE-2023-53320
was published
Sep 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
ext2/dax: Fix ext2_setsize...
Unknown
Unreviewed
CVE-2023-53323
was published
Sep 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
drm/mediatek: dp: Change...
Unknown
Unreviewed
CVE-2023-53325
was published
Sep 16, 2025
ProTip!
Advisories are also available from the
GraphQL API