GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
46
GitHub Actions
47
Go
3,323
Maven
5,000+
npm
5,000+
NuGet
880
pip
4,533
Pub
12
RubyGems
1,010
Rust
1,201
Swift
51
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
141,339 advisories
Filter by severity
A flaw was found in firewalld. A local unprivileged user can exploit this vulnerability by mis...
Moderate
Unreviewed
CVE-2026-4948
was published
Mar 27, 2026
In OCaml through 4.14.3, Bigarray.reshape allows an integer overflow, and resultant reading of...
Moderate
Unreviewed
CVE-2026-34353
was published
Mar 27, 2026
Missing authentication for critical function vulnerability in BUFFALO Wi-Fi router products may...
Moderate
Unreviewed
CVE-2026-33366
was published
Mar 27, 2026
WordPress Plugin "OpenStreetMap" provided by MiKa contains a cross-site scripting vulnerability....
Moderate
Unreviewed
CVE-2026-33559
was published
Mar 27, 2026
The Smart Slider 3 plugin for WordPress is vulnerable to Arbitrary File Read in all versions up...
Moderate
Unreviewed
CVE-2026-3098
was published
Mar 27, 2026
Use after free vulnerability in Softing smartLink HW-DP or smartLink HW-PN webserver allows HTTP...
Moderate
Unreviewed
CVE-2024-14028
was published
Mar 27, 2026
A security vulnerability has been detected in Shenzhen Ruiming Technology Streamax Crocus bis 1.3...
Moderate
Unreviewed
CVE-2026-4910
was published
Mar 27, 2026
A vulnerability was identified in Page-Replica Page Replica up to...
Moderate
Unreviewed
CVE-2026-4907
was published
Mar 27, 2026
A weakness has been identified in code-projects Exam Form Submission 1.0/7.php. This impacts an...
Moderate
Unreviewed
CVE-2026-4909
was published
Mar 27, 2026
A security flaw has been discovered in code-projects Simple Laundry System 1.0. This affects an...
Moderate
Unreviewed
CVE-2026-4908
was published
Mar 27, 2026
The vulnerability affecting TL-WR850N v3 allows cleartext storage of administrative and Wi-Fi...
Moderate
Unreviewed
CVE-2026-4346
was published
Mar 27, 2026
A security flaw has been discovered in code-projects Online Food Ordering System 1.0. Affected by...
Moderate
Unreviewed
CVE-2026-4899
was published
Mar 27, 2026
A weakness has been identified in code-projects Online Food Ordering System 1.0. This affects an...
Moderate
Unreviewed
CVE-2026-4900
was published
Mar 27, 2026
A vulnerability was identified in code-projects Online Food Ordering System 1.0. Affected by this...
Moderate
Unreviewed
CVE-2026-4898
was published
Mar 27, 2026
Information disclosure in the file URI processing of File (Field) Paths in Drupal File (Field)...
Moderate
Unreviewed
CVE-2026-1556
was published
Mar 27, 2026
In the Drupal 7 Internationalization (i18n) module, the i18n_node submodule allows a user with...
Moderate
Unreviewed
CVE-2026-0748
was published
Mar 27, 2026
The Grafana MSSQL data source plugin contains a logic flaw that allows a low-privileged user ...
Moderate
Unreviewed
CVE-2026-33375
was published
Mar 26, 2026
A vulnerability has been discovered in Grafana OSS where an authorization bypass in the...
Moderate
Unreviewed
CVE-2026-21724
was published
Mar 26, 2026
A malicious SCP server can send unexpected paths that could make the
client application override...
Moderate
Unreviewed
CVE-2026-0964
was published
Mar 26, 2026
The API function `ssh_get_hexa()` is vulnerable, when 0-lenght
input is provided to this function...
Moderate
Unreviewed
CVE-2026-0966
was published
Mar 26, 2026
A flaw was found in GIMP. An integer overflow vulnerability exists when processing ICO image...
Moderate
Unreviewed
CVE-2026-2272
was published
Mar 26, 2026
A flaw was found in p11-kit. A remote attacker could exploit this vulnerability by calling the...
Moderate
Unreviewed
CVE-2026-2100
was published
Mar 26, 2026
Ruckus Access Point products contain an arbitrary file read vulnerability in the command-line...
Moderate
Unreviewed
CVE-2021-4474
was published
Mar 26, 2026
A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free...
Moderate
Unreviewed
CVE-2026-2436
was published
Mar 26, 2026
A flaw was found in Keycloak. The User-Managed Access (UMA) 2.0 Protection API endpoint for...
Moderate
Unreviewed
CVE-2026-3190
was published
Mar 26, 2026
ProTip!
Advisories are also available from the
GraphQL API