GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
46
GitHub Actions
47
Go
3,323
Maven
5,000+
npm
5,000+
NuGet
880
pip
4,533
Pub
12
RubyGems
1,010
Rust
1,201
Swift
51
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
15 advisories
Filter by severity
Mattermost versions 11.2.x <= 11.2.2, 10.11.x <= 10.11.10, 11.4.x <= 11.4.0, 11.3.x <= 11.3.1...
High
Unreviewed
CVE-2026-3108
was published
Mar 26, 2026
An improper neutralization of escape, meta, or control sequences vulnerability has been reported...
Moderate
Unreviewed
CVE-2025-62845
was published
Mar 20, 2026
Tanium addressed an unauthorized code execution vulnerability in Tanium Appliance.
High
Unreviewed
CVE-2025-15311
was published
Feb 5, 2026
Improper neutralization of escape, meta, or control sequences in Copilot allows an unauthorized...
High
Unreviewed
CVE-2026-21521
was published
Jan 23, 2026
Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in Apache HTTP Server...
Moderate
Unreviewed
CVE-2025-65082
was published
Dec 5, 2025
Insufficient escaping of user-supplied data in mod_ssl in Apache HTTP Server 2.4.63 and earlier...
High
Unreviewed
CVE-2024-47252
was published
Jul 10, 2025
In netstat in BusyBox through 1.37.0, local users can launch of network application with an argv...
Low
Unreviewed
CVE-2024-58251
was published
Apr 23, 2025
IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD console could allow an authenticated user to execute...
High
Unreviewed
CVE-2025-0975
was published
Feb 28, 2025
RARLAB WinRAR before 7.00, on Windows, allows attackers to spoof the screen output via ANSI...
High
Unreviewed
CVE-2024-36052
was published
May 21, 2024
RARLAB WinRAR before 7.00, on Linux and UNIX platforms, allows attackers to spoof the screen...
High
Unreviewed
CVE-2024-33899
was published
Apr 29, 2024
wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape...
Low
Unreviewed
CVE-2024-28085
was published
Mar 27, 2024
An authentication bypass exists on CyberPower PowerPanel Enterprise by failing to sanitize meta...
Critical
Unreviewed
CVE-2023-3265
was published
Aug 14, 2023
** UNSUPPORTED WHEN ASSIGNED ** The administration web interface on Belkin Linksys WRT160NL 1.0...
High
Unreviewed
CVE-2021-25310
was published
May 24, 2022
An information disclosure and remote code execution vulnerability in the slinger web server of...
High
Unreviewed
CVE-2020-6932
was published
May 24, 2022
The xterm terminal emulator in XFree86 4.2.0 and earlier allows attackers to modify the window...
High
Unreviewed
CVE-2003-0063
was published
Apr 29, 2022
ProTip!
Advisories are also available from the
GraphQL API