GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
13 advisories
Filter by severity
Windows Shortcut Following (.LNK) vulnerability in multiple processes of Mitsubishi Electric...
Moderate
Unreviewed
CVE-2025-7376
was published
Aug 6, 2025
Trend Micro Cleaner One Pro is vulnerable to a Privilege Escalation vulnerability that could...
High
Unreviewed
CVE-2025-53503
was published
Jul 10, 2025
Trend Micro Security 17.8 (Consumer) is vulnerable to a link following local privilege escalation...
High
Unreviewed
CVE-2025-52521
was published
Jul 10, 2025
Trend Micro Password Manager (Consumer) version 5.8.0.1327 and below is vulnerable to a Link...
High
Unreviewed
CVE-2025-52837
was published
Jul 10, 2025
Trend Micro Security 17.8 (Consumer) is vulnerable to a link following local privilege escalation...
High
Unreviewed
CVE-2025-49384
was published
Jun 17, 2025
Trend Micro Security 17.8 (Consumer) is vulnerable to a link following local privilege escalation...
High
Unreviewed
CVE-2025-49385
was published
Jun 17, 2025
Trend Micro Password Manager (Consumer) version 5.0.0.1266 and below is vulnerable to a Link...
Moderate
Unreviewed
CVE-2025-48443
was published
Jun 17, 2025
The Duo Authentication Proxy installer prior to 5.2.1 did not properly validate file installation...
High
Unreviewed
CVE-2021-1492
was published
May 24, 2022
Cross-site scripting vulnerability in TinyMCE plugins
Moderate
CVE-2024-21910
was published
for
TinyMCE
(Composer)
Nov 2, 2021
Cross-site Scripting in Beego
Moderate
CVE-2021-39391
was published
for
github.com/beego/beego/v2
(Go)
Sep 15, 2021
Cross-Site Scripting in jquery
Moderate
CVE-2012-6708
was published
for
jQuery
(RubyGems)
Sep 1, 2020
Cross-Site Scripting in bootbox
Moderate
GHSA-87mg-h5r3-hw88
was published
for
bootbox
(npm)
May 30, 2019
Cross-Site Scripting in html-pages
Moderate
CVE-2018-16481
was published
for
html-pages
(npm)
Feb 7, 2019
ProTip!
Advisories are also available from the
GraphQL API