GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,122
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,020
Swift
39
Unreviewed advisories
All unreviewed
5,000+
11,459 advisories
Filter by severity
Ollama allows deletion of arbitrary files
Moderate
CVE-2025-44779
was published
for
github.com/ollama/ollama
(Go)
Aug 7, 2025
Insufficient validation of untrusted input in Core in Google Chrome prior to 139.0.7258.66...
Moderate
Unreviewed
CVE-2025-8582
was published
Aug 7, 2025
A vulnerability in QCMS version 6.0.5 allows authenticated users to read arbitrary files from the...
Moderate
Unreviewed
CVE-2025-50233
was published
Aug 6, 2025
Transient DOS while processing CCCH data when NW sends data with invalid length.
High
Unreviewed
CVE-2025-21477
was published
Aug 6, 2025
Issue of buffer overflow caused by insufficient data verification in the kernel acceleration...
Moderate
Unreviewed
CVE-2025-54641
was published
Aug 6, 2025
Issue of buffer overflow caused by insufficient data verification in the kernel gyroscope module....
Moderate
Unreviewed
CVE-2025-54642
was published
Aug 6, 2025
Issue of buffer overflow caused by insufficient data verification in the kernel drop detection...
Moderate
Unreviewed
CVE-2025-54636
was published
Aug 6, 2025
Input verification vulnerability in the home screen module.
Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2025-54614
was published
Aug 6, 2025
Concrete CMS is vulnerable to Stored XSS from Home Folder on Members Dashboard page
Low
CVE-2025-8573
was published
for
concrete5/concrete5
(Composer)
Aug 6, 2025
Concrete CMS vulnerable to Reflected Cross-Site Scripting (XSS) in Conversation Messages Dashboard Page
Moderate
CVE-2025-8571
was published
for
concrete5/concrete5
(Composer)
Aug 6, 2025
Improper Input Validation vulnerability in Roche Diagnostics navify Monitoring allows an attacker...
High
Unreviewed
CVE-2025-7674
was published
Aug 5, 2025
The ICTBroadcast application unsafely passes session cookie data to shell processing, allowing an...
Critical
Unreviewed
CVE-2025-2611
was published
Aug 5, 2025
An Improper Input Validation in EdgeMAX EdgeSwitch (Version 1.10.4 and earlier) could allow a...
High
Unreviewed
CVE-2025-27211
was published
Aug 5, 2025
An Improper Input Validation in certain UniFi Access devices could allow a Command Injection by a...
Critical
Unreviewed
CVE-2025-27212
was published
Aug 5, 2025
Apache Zeppelin: Arbitrary file read by adding malicious JDBC connection string
Moderate
CVE-2024-52279
was published
for
org.apache.zeppelin:zeppelin-jdbc
(Maven)
Aug 3, 2025
uploadsm in ChargePoint Home Flex 5.5.4.13 does not validate a user-controlled string for bz2...
High
Unreviewed
CVE-2025-54564
was published
Aug 1, 2025
A stack-based buffer overflow vulnerability exists in MPlayer Lite r33064 due to improper bounds...
High
Unreviewed
CVE-2011-10008
was published
Jul 31, 2025
Dell PowerProtect Data Manager, versions prior to 19.19, contain(s) an Improper Input Validation...
Moderate
Unreviewed
CVE-2025-30480
was published
Jul 30, 2025
LinuxServer.io heimdall 2.6.3-ls307 contains a vulnerability in how it handles user-supplied HTTP...
Critical
Unreviewed
CVE-2025-50578
was published
Jul 30, 2025
The vulnerability was identified in the code developed specifically for Lenovo. Please visit ...
Moderate
Unreviewed
CVE-2025-4424
was published
Jul 30, 2025
This issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15...
Critical
Unreviewed
CVE-2025-43253
was published
Jul 30, 2025
A denial-of-service issue was addressed with improved input validation. This issue is fixed in...
High
Unreviewed
CVE-2025-43223
was published
Jul 30, 2025
Multiple memory corruption issues were addressed with improved input validation. This issue is...
Critical
Unreviewed
CVE-2025-43234
was published
Jul 30, 2025
An issue existed in the handling of environment variables. This issue was addressed with improved...
Moderate
Unreviewed
CVE-2025-43195
was published
Jul 30, 2025
An input validation issue was addressed with improved memory handling. This issue is fixed in...
Critical
Unreviewed
CVE-2025-31281
was published
Jul 30, 2025
ProTip!
Advisories are also available from the
GraphQL API