GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
37
GitHub Actions
36
Go
2,500
Maven
5,000+
npm
4,147
NuGet
735
pip
3,948
Pub
12
RubyGems
945
Rust
1,025
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,247 advisories
Filter by severity
An unrestricted file upload vulnerability exists in Dell (acquired by Quest) KACE K1000 System...
Critical
Unreviewed
CVE-2014-125113
was published
Aug 5, 2025
FreeFloat FTP Server contains multiple critical design flaws that allow unauthenticated remote...
Critical
Unreviewed
CVE-2012-10030
was published
Aug 5, 2025
Burk Technology ARC Solo's password change mechanism can be utilized without proper ...
Critical
Unreviewed
CVE-2025-5095
was published
Aug 8, 2025
By default, the Packet Power Monitoring and Control Web Interface do not
enforce authentication...
Critical
Unreviewed
CVE-2025-8284
was published
Aug 8, 2025
Mattermost Confluence Plugin is Missing Authentication for Critical Function
High
CVE-2025-44004
was published
for
github.com/mattermost/mattermost-plugin-confluence
(Go)
Aug 11, 2025
Missing Authentication for Critical Function vulnerability in ABB Aspect.This issue affects...
High
Unreviewed
CVE-2025-7677
was published
Aug 11, 2025
Missing Authentication for Critical Function vulnerability in ABB Aspect.This issue affects...
High
Unreviewed
CVE-2025-53191
was published
Aug 11, 2025
Mattermost Confluence Plugin is Missing Authentication for Critical Function
High
CVE-2025-54478
was published
for
github.com/mattermost/mattermost-plugin-confluence
(Go)
Aug 11, 2025
Missing Authentication for Critical Function vulnerability in ABB Aspect.This issue affects...
High
Unreviewed
CVE-2025-7679
was published
Aug 11, 2025
A low-privileged local attacker can exploit improper permissions on nssm.exe to escalate their...
High
Unreviewed
CVE-2025-41686
was published
Aug 12, 2025
Missing authentication for critical function in Windows StateRepository API allows an authorized...
High
Unreviewed
CVE-2025-53789
was published
Aug 12, 2025
Missing Authentication for Critical Function vulnerability in ABB ABB AbilityTM zenon.This issue...
High
Unreviewed
CVE-2025-8754
was published
Aug 13, 2025
Flowise OS command remote code execution
Critical
CVE-2025-8943
was published
for
flowise
(npm)
Aug 14, 2025
KuWFi CPF908-CP5 WEB5.0_LCD_20210125 devices have multiple unauthenticated access control...
Critical
Unreviewed
CVE-2025-43983
was published
Aug 14, 2025
A security issue exists within the 5032 16pt Digital Configurable module’s web server....
High
Unreviewed
CVE-2025-7774
was published
Aug 14, 2025
Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Authenticator...
Critical
Unreviewed
CVE-2025-8995
was published
Aug 15, 2025
An unauthenticated remote attacker can grant access without password protection to the affected...
Moderate
Unreviewed
CVE-2025-41689
was published
Aug 19, 2025
Improper Access Control issue in the Workflow component of Fortra's FileCatalyst allows...
High
Unreviewed
CVE-2025-8450
was published
Aug 19, 2025
An issue was discovered in Cicool builder 3.4.4 allowing attackers to reset the administrator's...
Moderate
Unreviewed
CVE-2025-51543
was published
Aug 19, 2025
AOMEI Cyber Backup Missing Authentication for Critical Function Remote Code Execution...
Critical
Unreviewed
CVE-2025-8610
was published
Aug 20, 2025
AOMEI Cyber Backup Missing Authentication for Critical Function Remote Code Execution...
Critical
Unreviewed
CVE-2025-8611
was published
Aug 20, 2025
A Missing Authentication for Critical Function vulnerability in the UniFi Connect EV Station Pro...
Critical
Unreviewed
CVE-2025-27214
was published
Aug 21, 2025
Mattermost Does Not Sanitize the Team Invite ID
Moderate
CVE-2025-47870
was published
for
github.com/mattermost/mattermost-server
(Go)
Aug 21, 2025
WebITR developed by Uniong has a Missing Authentication vulnerability, allowing unauthenticated...
Critical
Unreviewed
CVE-2025-9254
was published
Aug 22, 2025
An authentication bypass vulnerability exists which allows an unauthenticated attacker to control...
Critical
Unreviewed
CVE-2025-53118
was published
Aug 26, 2025
ProTip!
Advisories are also available from the
GraphQL API