GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,504
Maven
5,000+
npm
4,149
NuGet
735
pip
3,949
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
323 advisories
Filter by severity
@misskey-dev/summaly Redirect Filter Bypass
Low
CVE-2025-46553
was published
for
@misskey-dev/summaly
(npm)
May 5, 2025
uTLS ServerHellos are accepted without checking TLS 1.3 downgrade canaries
Moderate
GHSA-pmc3-p9hx-jq96
was published
for
github.com/refraction-networking/utls
(Go)
Apr 23, 2025
Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to...
Moderate
Unreviewed
CVE-2025-27472
was published
Apr 8, 2025
Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a...
Moderate
Unreviewed
CVE-2025-26637
was published
Apr 8, 2025
An authenticated attacker can exploit an Server-Side Request Forgery (SSRF) vulnerability in...
High
Unreviewed
CVE-2025-21384
was published
Apr 1, 2025
Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to...
High
Unreviewed
CVE-2025-24061
was published
Mar 11, 2025
A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC IPC BX-21A ...
High
Unreviewed
CVE-2024-56181
was published
Mar 11, 2025
A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC Field PG M6 ...
High
Unreviewed
CVE-2024-56182
was published
Mar 11, 2025
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923...
Critical
Unreviewed
CVE-2025-27665
was published
Mar 5, 2025
The WP Ghost (Hide My WP Ghost) – Security & Firewall plugin for WordPress is vulnerable to Login...
Moderate
Unreviewed
CVE-2024-13794
was published
Feb 12, 2025
7-Zip Mark-of-the-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypass...
High
Unreviewed
CVE-2025-0411
was published
Jan 25, 2025
A vulnerability has been found in Union Bank of India Vyom 8.0.34 on Android and classified as...
Low
Unreviewed
CVE-2025-0575
was published
Jan 20, 2025
Microsoft Office Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2025-21346
was published
Jan 14, 2025
Secure Boot Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2025-21211
was published
Jan 14, 2025
Denial of Service in Keycloak Server via Security Headers
Moderate
CVE-2024-11734
was published
for
org.keycloak:keycloak-quarkus-server
(Maven)
Jan 13, 2025
Access control vulnerability in the identity authentication module
Impact: Successful...
High
Unreviewed
CVE-2024-56439
was published
Jan 8, 2025
Jinja has a sandbox breakout through indirect reference to format method
Moderate
CVE-2024-56326
was published
for
jinja2
(pip)
Dec 23, 2024
WinZip Mark-of-the-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypass...
High
Unreviewed
CVE-2024-8811
was published
Nov 22, 2024
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could...
Moderate
Unreviewed
CVE-2021-1494
was published
Nov 15, 2024
Protection mechanism failure in the SPP for some Intel(R) Xeon(R) processor family (E-Core) may...
Low
Unreviewed
CVE-2024-38660
was published
Nov 13, 2024
Protection mechanism failure in the SPP for some Intel(R) Processors may allow an authenticated...
High
Unreviewed
CVE-2024-36242
was published
Nov 13, 2024
Windows Defender Application Control (WDAC) Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-43645
was published
Nov 12, 2024
Windows Package Library Manager Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-38203
was published
Nov 12, 2024
Protection mechanism failure in some Intel(R) OFU software before version 14.1.31 may allow an...
High
Unreviewed
CVE-2023-25945
was published
Oct 29, 2024
ProTip!
Advisories are also available from the
GraphQL API