GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,122
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,020
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
4,554 advisories
Filter by severity
A file access issue was addressed with improved input validation. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-24255
was published
Apr 1, 2025
Running DDoS on tcp port 22 will trigger a kernel crash. This issue is introduced by the backport...
High
Unreviewed
CVE-2023-0881
was published
Mar 31, 2025
The Active Products Tables for WooCommerce. Use constructor to create tables plugin for WordPress...
High
Unreviewed
CVE-2025-1514
was published
Mar 26, 2025
A local file inclusion vulnerability exists in haotian-liu/llava at commit c121f04. This...
High
Unreviewed
CVE-2024-12065
was published
Mar 20, 2025
GPT Academic version 3.83 is vulnerable to a Local File Read (LFI) vulnerability through its...
High
Unreviewed
CVE-2024-10986
was published
Mar 20, 2025
In danny-avila/librechat version git 0c2a583, there is an improper input validation vulnerability...
High
Unreviewed
CVE-2024-11171
was published
Mar 20, 2025
Improper Input Validation vulnerability in Avid Avid NEXIS E-series on Linux, Avid Avid NEXIS F...
High
Unreviewed
CVE-2024-26290
was published
Mar 12, 2025
A vulnerability in the Layer 3 multicast feature of Cisco IOS XR Software for Cisco ASR 9000...
High
Unreviewed
CVE-2025-20146
was published
Mar 12, 2025
A vulnerability in the IPv4 access control list (ACL) feature and quality of service (QoS) policy...
High
Unreviewed
CVE-2025-20142
was published
Mar 12, 2025
The WooCommerce Recover Abandoned Cart plugin for WordPress is vulnerable to PHP Object Injection...
High
Unreviewed
CVE-2025-0956
was published
Mar 5, 2025
LibreOffice supports Office URI Schemes to enable browser integration of LibreOffice with MS...
High
Unreviewed
CVE-2025-1080
was published
Mar 4, 2025
Permission verification bypass vulnerability in the notification module
Impact: Successful...
High
Unreviewed
CVE-2024-58044
was published
Mar 4, 2025
Paragon Partition Manager version 17, both community and Business versions, contain an insecure...
High
Unreviewed
CVE-2025-0289
was published
Mar 3, 2025
Paragon Partition Manager version 7.9.1 contains an arbitrary kernel memory mapping vulnerability...
High
Unreviewed
CVE-2025-0285
was published
Mar 3, 2025
Memory corruption while processing input message passed from FE driver.
High
Unreviewed
CVE-2024-53030
was published
Mar 3, 2025
Memory corruption while reading a type value from a buffer controlled by the Guest Virtual Machine.
High
Unreviewed
CVE-2024-53031
was published
Mar 3, 2025
Memory corruption while reading a value from a buffer controlled by the Guest Virtual Machine.
High
Unreviewed
CVE-2024-53029
was published
Mar 3, 2025
Memory corruption may occur during communication between primary and guest VM.
High
Unreviewed
CVE-2024-53022
was published
Mar 3, 2025
Memory corruption may occur due to improper input validation in clock device.
High
Unreviewed
CVE-2024-53012
was published
Mar 3, 2025
Improper Input Validation vulnerability in The Document Foundation LibreOffice allows Windows...
High
Unreviewed
CVE-2025-0514
was published
Feb 26, 2025
An improper input validation vulnerability was discovered in the NTP server configuration field...
High
Unreviewed
CVE-2025-22495
was published
Feb 24, 2025
The Uncode theme for WordPress is vulnerable to arbitrary file read due to insufficient input...
High
Unreviewed
CVE-2024-13681
was published
Feb 18, 2025
An authenticated user in the "bestinformed Web" application can execute commands on the...
High
Unreviewed
CVE-2025-0422
was published
Feb 18, 2025
CWE-20: Improper Input Validation vulnerability exists that could cause Denial-of-Service of the...
High
Unreviewed
CVE-2025-0816
was published
Feb 13, 2025
CWE-20: Improper Input Validation vulnerability exists that could cause Denial-of-Service of the...
High
Unreviewed
CVE-2025-0815
was published
Feb 13, 2025
ProTip!
Advisories are also available from the
GraphQL API