GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,908 advisories
Filter by severity
Monai: Unsafe use of Pickle deserialization may lead to RCE
High
CVE-2025-58757
was published
for
monai
(pip)
Sep 9, 2025
MONAI: Unsafe torch usage may lead to arbitrary code execution
High
CVE-2025-58756
was published
for
monai
(pip)
Sep 9, 2025
Deserialization of untrusted data in Microsoft High Performance Compute Pack (HPC) allows an...
Critical
Unreviewed
CVE-2025-55232
was published
Sep 9, 2025
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to...
High
Unreviewed
CVE-2025-54897
was published
Sep 9, 2025
Deserialization of Untrusted Data vulnerability in ThemeMove ThemeMove Core allows Object...
High
Unreviewed
CVE-2025-53303
was published
Sep 9, 2025
Deserialization of Untrusted Data vulnerability in ThemeGoods Photography. This issue affects...
Critical
Unreviewed
CVE-2025-47579
was published
Sep 9, 2025
Deserialization of Untrusted Data vulnerability in webdevstudios Constant Contact for WordPress...
High
Unreviewed
CVE-2025-48101
was published
Sep 9, 2025
An unauthenticated attacker can trick a local user into executing arbitrary commands by opening a...
High
Unreviewed
CVE-2025-41701
was published
Sep 9, 2025
Due to a deserialization vulnerability in SAP NetWeaver, an unauthenticated attacker could...
Critical
Unreviewed
CVE-2025-42944
was published
Sep 9, 2025
Apache Jackrabbit: Core and JCR Commons are vulnerable to Deserialization of Untrusted Data
Moderate
CVE-2025-58782
was published
for
org.apache.jackrabbit:jackrabbit-core
(Maven)
Sep 8, 2025
Deserialization of Untrusted Data vulnerability in ExpressTech Systems Quiz And Survey Master...
Critical
Unreviewed
CVE-2025-49401
was published
Sep 5, 2025
In createIntentsList of PackageParser.java , there is a possible way to bypass lazy bundle...
High
Unreviewed
CVE-2025-32312
was published
Sep 5, 2025
Deserialization of Untrusted Data vulnerability in aThemeArt Translations eDS Responsive Menu...
High
Unreviewed
CVE-2025-58839
was published
Sep 5, 2025
Deserialization of Untrusted Data vulnerability in Rubel Miah Aitasi Coming Soon allows Object...
High
Unreviewed
CVE-2025-58815
was published
Sep 5, 2025
Deserialization of Untrusted Data vulnerability in Sitecore Experience Manager (XM), Sitecore...
Critical
Unreviewed
CVE-2025-53690
was published
Sep 5, 2025
In assertSafeToStartCustomActivity of AppRestrictionsFragment.java , there is a possible way to...
High
Unreviewed
CVE-2025-48535
was published
Sep 4, 2025
Deserialization of Untrusted Data vulnerability in enituretechnology LTL Freight Quotes - TQL...
High
Unreviewed
CVE-2025-58644
was published
Sep 3, 2025
Deserialization of Untrusted Data vulnerability in enituretechnology LTL Freight Quotes –...
High
Unreviewed
CVE-2025-58643
was published
Sep 3, 2025
Deserialization of Untrusted Data vulnerability in enituretechnology LTL Freight Quotes – Day &...
High
Unreviewed
CVE-2025-58642
was published
Sep 3, 2025
Deserialization of Untrusted Data vulnerability in Sitecore Experience Manager (XM), Sitecore...
High
Unreviewed
CVE-2025-53691
was published
Sep 3, 2025
The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin...
Moderate
Unreviewed
CVE-2025-9260
was published
Sep 3, 2025
Anritsu ShockLine CHX File Parsing Deserialization of Untrusted Data Remote Code Execution...
High
Unreviewed
CVE-2025-7976
was published
Sep 2, 2025
There is a deserialization of untrusted data vulnerability in Digilent DASYLab. This...
High
Unreviewed
CVE-2025-9188
was published
Sep 2, 2025
Deserialization of Untrusted Data vulnerability in emarket-design WP Ticket Customer Service...
High
Unreviewed
CVE-2025-53584
was published
Aug 28, 2025
Deserialization of Untrusted Data vulnerability in emarket-design Employee Spotlight allows...
High
Unreviewed
CVE-2025-53583
was published
Aug 28, 2025
ProTip!
Advisories are also available from the
GraphQL API