GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,889 advisories
Filter by severity
This issue was addressed through improved state management. This issue is fixed in iOS 18.4 and...
Low
Unreviewed
CVE-2025-30469
was published
Apr 1, 2025
This issue was addressed with improved authentication. This issue is fixed in iOS 18.4 and iPadOS...
Low
Unreviewed
CVE-2025-24193
was published
Apr 1, 2025
IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive...
Low
Unreviewed
CVE-2024-55895
was published
Mar 29, 2025
A vulnerability classified as problematic was found in Netis WF-2404 1.1.124EN. Affected by this...
Low
Unreviewed
CVE-2025-2922
was published
Mar 28, 2025
A vulnerability was found in Netis WF-2404 1.1.124EN. It has been rated as problematic. This...
Low
Unreviewed
CVE-2025-2920
was published
Mar 28, 2025
SaTECH BCU, in its firmware version 2.1.3, could allow XSS attacks and other malicious resources...
Low
Unreviewed
CVE-2025-2865
was published
Mar 28, 2025
SaTECH BCU in its firmware version 2.1.3 allows an attacker to inject malicious code into the...
Low
Unreviewed
CVE-2025-2864
was published
Mar 28, 2025
Cross-site scripting vulnerability exists in the USB storage file-sharing function of HGW...
Low
Unreviewed
CVE-2025-27574
was published
Mar 28, 2025
Improper limitation of a pathname to a restricted directory ('Path Traversal') issue exists in...
Low
Unreviewed
CVE-2025-27726
was published
Mar 28, 2025
A Broken Object Level Authorization vulnerability in the component /households/permissions of hay...
Low
Unreviewed
CVE-2024-55070
was published
Mar 27, 2025
An issue was discovered in GitLab EE affecting all versions starting from 14.9 before 17.8.6, all...
Low
Unreviewed
CVE-2024-9773
was published
Mar 27, 2025
In JetBrains TeamCity before 2025.03 exception could lead to credential leakage on Cloud Profiles...
Low
Unreviewed
CVE-2025-31141
was published
Mar 27, 2025
Missing Authorization vulnerability in fatcatapps Quiz Cat allows Exploiting Incorrectly...
Low
Unreviewed
CVE-2025-30877
was published
Mar 27, 2025
In the Splunk App for Lookup File Editing versions below 4.0.5, a script in the app used the ...
Low
Unreviewed
CVE-2025-20233
was published
Mar 27, 2025
atop through 2.11.0 allows local users to cause a denial of service (e.g., assertion failure and...
Low
Unreviewed
CVE-2025-31160
was published
Mar 26, 2025
Improper authorization in application password policy in Devolutions Remote Desktop Manager on...
Low
Unreviewed
CVE-2025-2528
was published
Mar 26, 2025
Session logout could be overwritten in Checkmk GmbH's Checkmk versions <2.3.0p30, <2.2.0p41, and...
Low
Unreviewed
CVE-2025-2596
was published
Mar 26, 2025
The Product Import Export for WooCommerce – Import Export Product CSV Suite plugin for WordPress...
Low
Unreviewed
CVE-2025-1911
was published
Mar 26, 2025
The Smart Maintenance Mode WordPress plugin before 1.5.2 does not sanitise and escape some of its...
Low
Unreviewed
CVE-2024-12683
was published
Mar 26, 2025
The Favorites WordPress plugin before 2.3.5 does not sanitise and escape some of its settings,...
Low
Unreviewed
CVE-2025-1452
was published
Mar 25, 2025
To exploit the vulnerability, it is necessary:
Low
Unreviewed
CVE-2025-0717
was published
Mar 25, 2025
The Simple Banner WordPress plugin before 3.0.4 does not sanitise and escape some of its...
Low
Unreviewed
CVE-2024-12769
was published
Mar 25, 2025
The WordPress WP-Advanced-Search WordPress plugin before 3.3.9.3 does not sanitise and escape...
Low
Unreviewed
CVE-2024-10554
was published
Mar 25, 2025
The AFI WordPress plugin before 1.100.0 does not sanitise and escape some of its settings, which...
Low
Unreviewed
CVE-2024-13123
was published
Mar 25, 2025
The AFI WordPress plugin before 1.100.0 does not sanitise and escape some of its settings, which...
Low
Unreviewed
CVE-2024-13122
was published
Mar 25, 2025
ProTip!
Advisories are also available from the
GraphQL API