GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
44
GitHub Actions
45
Go
3,248
Maven
5,000+
npm
5,000+
NuGet
867
pip
4,513
Pub
12
RubyGems
997
Rust
1,189
Swift
51
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
140,675 advisories
Filter by severity
A vulnerability was detected in itsourcecode Online Doctor Appointment System 1.0. This issue...
Moderate
Unreviewed
CVE-2026-4473
was published
Mar 20, 2026
A security flaw has been discovered in itsourcecode Online Frozen Foods Ordering System 1.0....
Moderate
Unreviewed
CVE-2026-4470
was published
Mar 20, 2026
The Membership Plugin – Restrict Content plugin for WordPress is vulnerable to Unvalidated...
Moderate
Unreviewed
CVE-2026-4136
was published
Mar 20, 2026
A weakness has been identified in itsourcecode Online Frozen Foods Ordering System 1.0. This...
Moderate
Unreviewed
CVE-2026-4471
was published
Mar 20, 2026
A security vulnerability has been detected in itsourcecode Online Frozen Foods Ordering System 1...
Moderate
Unreviewed
CVE-2026-4472
was published
Mar 20, 2026
A vulnerability was identified in itsourcecode Online Frozen Foods Ordering System 1.0. Affected...
Moderate
Unreviewed
CVE-2026-4469
was published
Mar 20, 2026
A vulnerability was determined in Comfast CF-AC100 2.6.0.8. Affected is an unknown function of...
Moderate
Unreviewed
CVE-2026-4468
was published
Mar 20, 2026
A flaw has been found in D-Link DIR-513 1.10. The impacted element is an unknown function of the...
Moderate
Unreviewed
CVE-2026-4465
was published
Mar 20, 2026
A vulnerability was found in Comfast CF-AC100 2.6.0.8. This impacts an unknown function of the...
Moderate
Unreviewed
CVE-2026-4467
was published
Mar 20, 2026
A vulnerability has been found in Comfast CF-AC100 2.6.0.8. This affects an unknown function of...
Moderate
Unreviewed
CVE-2026-4466
was published
Mar 20, 2026
Use of Java scripting engine enabled (e.g. JRuby, Jython) template views in Spring MVC and Spring...
Moderate
Unreviewed
CVE-2026-22737
was published
Mar 20, 2026
Stack Buffer Overflow in wc_HpkeLabeledExtract via Oversized ECH Config. A vulnerability existed...
Moderate
Unreviewed
CVE-2026-3849
was published
Mar 19, 2026
Improper neutralization of special elements used in a command ('command injection') in M365...
Moderate
Unreviewed
CVE-2026-24299
was published
Mar 19, 2026
Server-side request forgery (ssrf) in Microsoft Bing allows an unauthorized attacker to perform...
Moderate
Unreviewed
CVE-2026-26120
was published
Mar 19, 2026
Improper neutralization of special elements used in a command ('command injection') in Microsoft...
Moderate
Unreviewed
CVE-2026-26136
was published
Mar 19, 2026
Protection mechanism failure in wolfCrypt post-quantum implementations (ML-KEM and ML-DSA) in...
Moderate
Unreviewed
CVE-2026-3503
was published
Mar 19, 2026
Improper Validation of Specified Quantity in Input (CWE-1284) in the Timelion visualization...
Moderate
Unreviewed
CVE-2026-26940
was published
Mar 19, 2026
In wolfSSL 5.8.2 and earlier, a logic flaw existed in the TLS 1.2 server state machine...
Moderate
Unreviewed
CVE-2026-2645
was published
Mar 19, 2026
Missing Authorization (CWE-862) in Kibana’s server-side Detection Rule Management can lead to...
Moderate
Unreviewed
CVE-2026-26939
was published
Mar 19, 2026
A heap-buffer-overflow vulnerability exists in wolfSSL's wolfSSL_d2i_SSL_SESSION() function. When...
Moderate
Unreviewed
CVE-2026-2646
was published
Mar 19, 2026
OPEXUS eComplaint before version 10.1.0.0 allows an unauthenticated attacker to obtain or guess...
Moderate
Unreviewed
CVE-2026-32867
was published
Mar 19, 2026
OPEXUS eComplaint and eCASE before 10.2.0.0 do not correctly sanitize the contents of the "Name...
Moderate
Unreviewed
CVE-2026-32869
was published
Mar 19, 2026
OPEXUS eComplaint and eCASE before 10.2.0.0 do not correctly sanitize the contents of first and...
Moderate
Unreviewed
CVE-2026-32866
was published
Mar 19, 2026
OPEXUS eComplaint and eCASE before 10.2.0.0 do not correctly sanitize the contents of first and...
Moderate
Unreviewed
CVE-2026-32868
was published
Mar 19, 2026
A flaw was found in libarchive. An Undefined Behavior vulnerability exists in the zisofs...
Moderate
Unreviewed
CVE-2026-4426
was published
Mar 19, 2026
ProTip!
Advisories are also available from the
GraphQL API