GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
166 advisories
Filter by severity
The DDMP/ODMF module has a service hijacking vulnerability. Successful exploit of this...
High
Unreviewed
CVE-2022-44555
was published
Nov 10, 2022
relay_cgi.cgi on Dingtian DT-R002 2CH relay devices with firmware 3.1.276A allows an attacker to...
Moderate
Unreviewed
CVE-2022-29593
was published
Jul 15, 2022
ZITADEL Allows IdP Intent Token Reuse
High
CVE-2025-46815
was published
for
github.com/zitadel/zitadel
(Go)
May 6, 2025
In affected versions of Octopus Server it is possible to use the Git Connectivity test function...
High
Unreviewed
CVE-2022-2780
was published
Oct 14, 2022
Authentication Bypass by Capture-replay vulnerability in Drupal Enterprise MFA - TFA for Drupal...
Moderate
Unreviewed
CVE-2025-47706
was published
May 14, 2025
Tiiwee X1 Alarm System TWX1HAKV2 allows Authentication Bypass by Capture-replay, leading to...
High
Unreviewed
CVE-2025-30072
was published
May 19, 2025
Authentication Bypass by Capture-replay vulnerability in Drupal One Time Password allows Remote...
Moderate
Unreviewed
CVE-2025-48012
was published
May 21, 2025
Medtronic MMT 508 MiniMed insulin pump, 522 / MMT - 722 Paradigm REAL-TIME, 523 / MMT - 723...
Moderate
Unreviewed
CVE-2018-14781
was published
May 13, 2022
There is a traffic hijacking vulnerability in WS7200-10 11.0.2.13. Successful exploitation of...
Moderate
Unreviewed
CVE-2021-46835
was published
Sep 21, 2022
Use of fixed learning codes, one code to lock the car and the other code to unlock it, the Key...
Critical
Unreviewed
CVE-2025-6029
was published
Jun 13, 2025
Use of fixed learning codes, one code to lock the car and the other code to unlock it, in the Key...
Critical
Unreviewed
CVE-2025-6030
was published
Jun 13, 2025
Salt's request server is vulnerable to replay attacks when not using a TLS encrypted transport.
Low
Unreviewed
CVE-2024-38823
was published
Jun 13, 2025
Taylored webhook validation vulnerabilities
Critical
GHSA-8g98-m4j9-qww5
was published
for
taylored
(npm)
Jun 18, 2025
Dell OpenManage Network Integration, versions prior to 3.8, contains an Authentication Bypass by...
High
Unreviewed
CVE-2025-36593
was published
Jun 30, 2025
Dradis through 4.16.0 allows referencing external images (resources) over HTTPS, instead of...
Moderate
Unreviewed
CVE-2023-50786
was published
Jul 5, 2025
A weakness identified in OpenText Advanced Authentication where a Malicious browser plugin can...
Moderate
Unreviewed
CVE-2025-8616
was published
Aug 6, 2025
ProTip!
Advisories are also available from the
GraphQL API