GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
3,895 advisories
Filter by severity
An authentication bypass and disclosure of information vulnerability exists in HPE AutoPass...
High
Unreviewed
CVE-2025-37106
was published
Jul 16, 2025
An authentication bypass vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.18.
High
Unreviewed
CVE-2025-37107
was published
Jul 16, 2025
An improper access control vulnerability was found in the EZ Sync Manager of ADM, which allows...
High
Unreviewed
CVE-2025-7699
was published
Jul 16, 2025
Authentication vulnerability in the mobile application(tech.palm.id)may lead to the risk of...
Moderate
Unreviewed
CVE-2025-7703
was published
Jul 16, 2025
Directus' insufficient permission checks can enable unauthenticated users to manually trigger Flows
Moderate
CVE-2025-53889
was published
for
directus
(npm)
Jul 15, 2025
An authentication bypass vulnerability in the /web/um_open_telnet.cgi endpoint in Nexxt Solutions...
Critical
Unreviewed
CVE-2025-52376
was published
Jul 15, 2025
An authentication bypass vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.
High
Unreviewed
CVE-2024-51767
was published
Jul 14, 2025
A vulnerability, which was classified as critical, was found in LB-LINK BL-AC1900, BL-AC2100_AZ3,...
High
Unreviewed
CVE-2025-7574
was published
Jul 14, 2025
An authentication issue was addressed with improved state management. This issue is fixed in App...
Moderate
Unreviewed
CVE-2025-31267
was published
Jul 11, 2025
In some mod_ssl configurations on Apache HTTP Server versions through to 2.4.63, an HTTP...
High
Unreviewed
CVE-2025-49812
was published
Jul 10, 2025
Improper authentication in Microsoft Office SharePoint allows an authorized attacker to perform...
Moderate
Unreviewed
CVE-2025-49706
was published
Jul 8, 2025
Cryptographic issue occurs due to use of insecure connection method while downloading.
Critical
Unreviewed
CVE-2025-21450
was published
Jul 8, 2025
An Improper Access Control vulnerability in the Stylus Tools component of Google ChromeOS version...
Moderate
Unreviewed
CVE-2025-6044
was published
Jul 7, 2025
A vulnerability was found in SimStudioAI sim up to 37786d371e17d35e0764e1b5cd519d873d90d97b. It...
Moderate
Unreviewed
CVE-2025-7114
was published
Jul 7, 2025
A vulnerability was found in rowboatlabs rowboat up to 8096eaf63b5a0732edd8f812bee05b78e214ee97....
Moderate
Unreviewed
CVE-2025-7115
was published
Jul 7, 2025
Vulnerability of bypassing the process to start SA and use related functions on distributed...
High
Unreviewed
CVE-2025-53169
was published
Jul 7, 2025
A vulnerability classified as critical has been found in Comodo Internet Security Premium 12.3.4...
Moderate
Unreviewed
CVE-2025-7095
was published
Jul 7, 2025
Improper Authentication vulnerability in Wikimedia Foundation Mediawiki - CentralAuth Extension...
High
Unreviewed
CVE-2025-6926
was published
Jul 3, 2025
A cookie encryption bypass vulnerability exists in Google Chrome’s AppBound mechanism due to weak...
Critical
Unreviewed
CVE-2025-34092
was published
Jul 2, 2025
Insufficient validation of the screen lock mechanism in Trust Wallet v8.45 allows physically...
Moderate
Unreviewed
CVE-2025-52294
was published
Jul 1, 2025
A vulnerability, which was classified as critical, was found in TOTOLINK T6 4.1.5cu.748_B20211015...
High
Unreviewed
CVE-2025-6916
was published
Jun 30, 2025
A misconfigured query in UniFi Network (v9.1.120 and earlier) could allow users to authenticate...
Moderate
Unreviewed
CVE-2025-24292
was published
Jun 29, 2025
A vulnerability classified as critical was found in Comet System T0510, T3510, T3511, T4511,...
High
Unreviewed
CVE-2025-6763
was published
Jun 27, 2025
Quest KACE Systems Management Appliance (SMA) 13.0.x before 13.0.385, 13.1.x before 13.1.81, 13.2...
Critical
Unreviewed
CVE-2025-32975
was published
Jun 26, 2025
A vulnerability, which was classified as critical, has been found in xxyopen/201206030 novel-plus...
Moderate
Unreviewed
CVE-2025-6533
was published
Jun 26, 2025
ProTip!
Advisories are also available from the
GraphQL API