GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,869
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,119
NuGet
735
pip
3,941
Pub
12
RubyGems
945
Rust
1,018
Swift
39
Unreviewed advisories
All unreviewed
5,000+
12,422 advisories
Filter by severity
Improper input validation in the Intel Edger8r Tool for some Intel(R) SGX SDK may allow an...
Low
Unreviewed
CVE-2025-32004
was published
Aug 12, 2025
Improper access control for some Edge Orchestrator software before version 24.11.1 for Intel(R)...
Low
Unreviewed
CVE-2025-24840
was published
Aug 12, 2025
Uncontrolled resource consumption for some Edge Orchestrator software before version 24.11.1 for...
Low
Unreviewed
CVE-2025-27576
was published
Aug 12, 2025
Improper initialization in the Linux kernel-mode driver for some Intel(R) I350 Series Ethernet...
Low
Unreviewed
CVE-2025-24511
was published
Aug 12, 2025
Improper synchronization in the firmware for some Intel(R) TDX may allow a privileged user to...
Low
Unreviewed
CVE-2025-22853
was published
Aug 12, 2025
Improper buffer restrictions in the firmware for some Intel(R) TDX may allow a privileged user to...
Low
Unreviewed
CVE-2025-21096
was published
Aug 12, 2025
Integer overflow or wraparound in the Linux kernel-mode driver for some Intel(R) 800 Series...
Low
Unreviewed
CVE-2025-24324
was published
Aug 12, 2025
Predictable Seed in Pseudo-Random Number Generator (PRNG) in the firmware for some Intel(R) TDX...
Low
Unreviewed
CVE-2025-20613
was published
Aug 12, 2025
A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V10.0), SIPROTEC...
Low
Unreviewed
CVE-2025-40570
was published
Aug 12, 2025
A vulnerability has been identified in SmartClient modules Opcenter QL Home (SC) (All versions >=...
Low
Unreviewed
CVE-2024-41985
was published
Aug 12, 2025
A vulnerability has been identified in SmartClient modules Opcenter QL Home (SC) (All versions >=...
Low
Unreviewed
CVE-2024-41980
was published
Aug 12, 2025
A vulnerability has been identified in SmartClient modules Opcenter QL Home (SC) (All versions >=...
Low
Unreviewed
CVE-2024-41984
was published
Aug 12, 2025
SAP Fiori (Launchpad) is vulnerable to Reverse Tabnabbing vulnerability due to inadequate...
Low
Unreviewed
CVE-2025-42941
was published
Aug 12, 2025
Due to a missing authorization check in SAP Cloud Connector, an attacker on an adjacent network...
Low
Unreviewed
CVE-2025-42955
was published
Aug 12, 2025
HFS user adding a "web link" in HFS is vulnerable to "target=_blank" exploit
Low
GHSA-xcxh-6cv4-q8p8
was published
for
hfs
(npm)
Aug 12, 2025
Litestar has potential log injection in exception logging
Low
GHSA-674p-xv2x-rf3g
was published
for
litestar
(pip)
Aug 11, 2025
Mattermost Confluence Plugin has Missing Authorization vulnerability
Low
CVE-2025-53857
was published
for
github.com/mattermost/mattermost-plugin-confluence
(Go)
Aug 11, 2025
Mattermost Confluence Plugin has Missing Authorization vulnerability
Low
CVE-2025-49221
was published
for
github.com/mattermost/mattermost-plugin-confluence
(Go)
Aug 11, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through type confusion.
Low
Unreviewed
CVE-2025-27536
was published
Aug 11, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release...
Low
Unreviewed
CVE-2025-27562
was published
Aug 11, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release...
Low
Unreviewed
CVE-2025-24925
was published
Aug 11, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through improper input.
Low
Unreviewed
CVE-2025-25212
was published
Aug 11, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer...
Low
Unreviewed
CVE-2025-26690
was published
Aug 11, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release...
Low
Unreviewed
CVE-2025-24844
was published
Aug 11, 2025
In EMQX before 5.8.6, administrators can install arbitrary novel plugins via the Dashboard web...
Low
Unreviewed
CVE-2025-52136
was published
Aug 10, 2025
ProTip!
Advisories are also available from the
GraphQL API