GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
41
GitHub Actions
41
Go
3,064
Maven
5,000+
npm
4,845
NuGet
825
pip
4,397
Pub
12
RubyGems
988
Rust
1,147
Swift
50
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
291,667 advisories
Filter by severity
OpenViking versions 0.2.1 and prior, fixed in commit 46b3e76, contain a path traversal...
High
Unreviewed
CVE-2026-28518
was published
Mar 3, 2026
An issue was discovered in 6.0 before 6.0.3, 5.2 before 5.2.12, and 4.2 before 4.2.29.
Race...
Unknown
Unreviewed
CVE-2026-25674
was published
Mar 3, 2026
An issue was discovered in 6.0 before 6.0.3, 5.2 before 5.2.12, and 4.2 before 4.2.29.
`URLField...
Unknown
Unreviewed
CVE-2026-25673
was published
Mar 3, 2026
iBoysoft NTFS for Mac contains a local privilege escalation vulnerability in its privileged...
High
Unreviewed
CVE-2026-2637
was published
Mar 3, 2026
A vulnerability was determined in Tuya App and SDK 24.07.11 on Android. Affected by this...
Low
Unreviewed
CVE-2026-3465
was published
Mar 3, 2026
A buffer overflow vulnerability was discovered in goform/formSetMacFilterCfg in Tenda AC15V1.0...
Unknown
Unreviewed
CVE-2026-24103
was published
Mar 3, 2026
A command injection vulnerability in the szc script of the ccurtsinger/stabilizer repository...
Unknown
Unreviewed
CVE-2025-52365
was published
Mar 3, 2026
An issue in Step-Video-T2V allows a remote attacker to execute arbitrary code via the /vae-api , ...
Unknown
Unreviewed
CVE-2025-57622
was published
Mar 3, 2026
A reflected cross-site scripting (XSS) vulnerability in the Fireware OS Web UI enabled execution...
Moderate
Unreviewed
CVE-2026-3343
was published
Mar 3, 2026
A heap-based buffer overflow vulnerability exists in the Intan CLP parsing functionality of The...
Critical
Unreviewed
CVE-2026-22891
was published
Mar 3, 2026
renren-secuity before v5.5.0 is vulnerable to SQL Injection in the BaseServiceImpl.java component
Unknown
Unreviewed
CVE-2025-70821
was published
Mar 3, 2026
A heap-based buffer overflow vulnerability exists in the Nicolet WFT parsing functionality of The...
High
Unreviewed
CVE-2026-20777
was published
Mar 3, 2026
An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow an authenticated...
High
Unreviewed
CVE-2026-3342
was published
Mar 3, 2026
A vulnerability in WatchGuard Fireware OS may allow an attacker to bypass the Fireware OS...
Moderate
Unreviewed
CVE-2026-3344
was published
Mar 3, 2026
An out-of-bounds read vulnerability exists in the ABF parsing functionality of The Biosig Project...
Moderate
Unreviewed
CVE-2025-64736
was published
Mar 3, 2026
A weakness has been identified in xlnt-community xlnt up to 1.6.1. Impacted is the function xlnt:...
Moderate
Unreviewed
CVE-2026-3463
was published
Mar 3, 2026
The WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms plugin for...
High
Unreviewed
CVE-2026-2568
was published
Mar 3, 2026
A vulnerability was found in Dataease SQLBot up to 1.5.1. This impacts the function...
Moderate
Unreviewed
CVE-2025-15598
was published
Mar 3, 2026
OpenMQ exposes a TCP-based management service (imqbrokerd) that by default requires...
Critical
Unreviewed
CVE-2026-22886
was published
Mar 3, 2026
Hostname verification bypass issue in Apache Ranger NiFiRegistryClient/NiFiClient is reported in...
Moderate
Unreviewed
CVE-2025-59060
was published
Mar 3, 2026
Remote Code Execution Vulnerability in NashornScriptEngineCreator is reported in Apache Ranger...
Critical
Unreviewed
CVE-2025-59059
was published
Mar 3, 2026
Privilege escalation via dll hijacking in Inno Setup 6.2.1 and ealier versions.
Moderate
Unreviewed
CVE-2025-15595
was published
Mar 3, 2026
Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ...
High
Unreviewed
CVE-2026-1876
was published
Mar 3, 2026
Always-Incorrect Control Flow Implementation vulnerability in Mitsubishi Electric Corporation...
High
Unreviewed
CVE-2026-1874
was published
Mar 3, 2026
Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ...
High
Unreviewed
CVE-2026-1875
was published
Mar 3, 2026
ProTip!
Advisories are also available from the
GraphQL API