GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,870
Erlang
36
GitHub Actions
36
Go
2,493
Maven
5,000+
npm
4,126
NuGet
735
pip
3,943
Pub
12
RubyGems
945
Rust
1,021
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
38 advisories
Filter by severity
MongoDB Server may allow upsert operations retried within a transaction to violate unique index...
Moderate
Unreviewed
CVE-2025-10060
was published
Sep 5, 2025
In the Linux kernel, the following vulnerability has been resolved:
netrom: Decrease sock...
Moderate
Unreviewed
CVE-2021-47294
was published
May 21, 2024
The caching invalidation guidelines from the AMD-Vi specification (48882—Rev
3.07-PUB—Oct 2022)...
High
Unreviewed
CVE-2023-34326
was published
Jan 5, 2024
Amazon Cloud Cam is a home security camera that was deprecated on December 2, 2022, is end of...
High
Unreviewed
CVE-2025-6031
was published
Jun 12, 2025
This issue was addressed through improved state management. This issue is fixed in iOS 18.5 and...
High
Unreviewed
CVE-2025-31253
was published
May 13, 2025
An issue was discovered in MaraDNS Deadwood through 3.5.0021 that allows variant V1 of unintended...
High
Unreviewed
CVE-2022-30256
was published
Nov 19, 2022
Reference to Expired Domain Vulnerability in OpenText™ ArcSight Enterprise Security Manager.
Low
Unreviewed
CVE-2025-2517
was published
Apr 21, 2025
By using XSL Transforms, a malicious webserver could have served a user an XSL document that...
High
Unreviewed
CVE-2022-22755
was published
Dec 22, 2022
An operation on a resource after expiration or release in Fortinet FortiManager 6.4.12 through 7...
High
Unreviewed
CVE-2024-47571
was published
Jan 14, 2025
Premature release of resource during expected lifetime in the Intel(R) SGX SDK software may allow...
Moderate
Unreviewed
CVE-2022-27499
was published
Nov 11, 2022
Dell Avamar, version 19.4 or later, contains an access token reuse vulnerability in the AUI. A...
Moderate
Unreviewed
CVE-2025-21117
was published
Feb 5, 2025
In the Linux kernel, the following vulnerability has been resolved:
ipc/mqueue, msg, sem: avoid...
High
Unreviewed
CVE-2021-47069
was published
Mar 2, 2024
IBM App Connect Enterprise 12.0.1.0 through 12.0.12.1 could allow an authenticated user to obtain...
Moderate
Unreviewed
CVE-2024-31895
was published
May 22, 2024
IBM App Connect Enterprise 12.0.1.0 through 12.0.12.1 could allow an authenticated user to obtain...
Moderate
Unreviewed
CVE-2024-31894
was published
May 22, 2024
UAF vulnerability in the device node access module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-56434
was published
Jan 8, 2025
IBM App Connect Enterprise 12.0.1.0 through 12.0.12.1 could allow an authenticated user to obtain...
Moderate
Unreviewed
CVE-2024-31893
was published
May 22, 2024
In the Linux kernel, the following vulnerability has been resolved:
virtio_net: correct...
Moderate
Unreviewed
CVE-2024-56674
was published
Dec 27, 2024
In the Linux kernel, the following vulnerability has been resolved:
ACPI: battery: Fix possible...
Moderate
Unreviewed
CVE-2024-49955
was published
Oct 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5e: Fix crash caused...
Moderate
Unreviewed
CVE-2024-49953
was published
Oct 21, 2024
TouchLink packets processed after timeout or out of range due to Operation on a Resource after...
Critical
Unreviewed
CVE-2023-41094
was published
Oct 4, 2023
When the NGINX Plus is configured to use the MQTT pre-read module, undisclosed requests can cause...
High
Unreviewed
CVE-2024-39792
was published
Aug 14, 2024
A flaw was found in the QEMU Virtio PCI Bindings (hw/virtio/virtio-pci.c). An improper release...
Moderate
Unreviewed
CVE-2024-4693
was published
May 14, 2024
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in blockmason credit-protocol. It has...
Moderate
Unreviewed
CVE-2018-25098
was published
Feb 4, 2024
Philips Vue PACS versions 12.2.x.x and prior uses a cryptographic key or password past its...
High
Unreviewed
CVE-2021-33020
was published
Apr 3, 2022
A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.4),...
High
Unreviewed
CVE-2021-37204
was published
Feb 10, 2022
ProTip!
Advisories are also available from the
GraphQL API