GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,752
Maven
5,000+
npm
4,357
NuGet
765
pip
4,121
Pub
12
RubyGems
961
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
11,200 advisories
Filter by severity
An error-based SQL injection vulnerability exists in the Sunbird Power IQ 9.2.0 API. The...
Low
Unreviewed
CVE-2025-55703
was published
Dec 15, 2025
An Authentication Bypass vulnerability existed where the application bundled an interpreter ...
Low
Unreviewed
CVE-2025-14714
was published
Dec 15, 2025
LINE client for iOS prior to 15.19 allows UI spoofing due to inconsistencies between the...
Low
Unreviewed
CVE-2025-14023
was published
Dec 15, 2025
LINE client for Android versions from 13.8 to 15.5 is vulnerable to UI spoofing in the in-app...
Low
Unreviewed
CVE-2025-14019
was published
Dec 15, 2025
uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by...
Low
Unreviewed
CVE-2025-67899
was published
Dec 15, 2025
The rtMedia for WordPress, BuddyPress and bbPress plugin for WordPress is vulnerable to to...
Low
Unreviewed
CVE-2025-9218
was published
Dec 13, 2025
A security vulnerability has been detected in tiny-rdm Tiny RDM up to 1.2.5. Affected by this...
Low
Unreviewed
CVE-2025-14606
was published
Dec 13, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.8.3,...
Low
Unreviewed
CVE-2025-43518
was published
Dec 12, 2025
A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing...
Low
Unreviewed
CVE-2025-43522
was published
Dec 12, 2025
A privacy issue was addressed with improved private data redaction for log entries. This issue is...
Low
Unreviewed
CVE-2025-43517
was published
Dec 12, 2025
A parsing issue in the handling of directory paths was addressed with improved path validation....
Low
Unreviewed
CVE-2025-43465
was published
Dec 12, 2025
A session management issue was addressed with improved checks. This issue is fixed in macOS...
Low
Unreviewed
CVE-2025-43516
was published
Dec 12, 2025
An information disclosure issue was addressed with improved privacy controls. This issue is fixed...
Low
Unreviewed
CVE-2025-43437
was published
Dec 12, 2025
A memory corruption issue was addressed with improved bounds checking. This issue is fixed in...
Low
Unreviewed
CVE-2025-43532
was published
Dec 12, 2025
The issue was addressed with improved handling of caches. This issue is fixed in macOS Sequoia 15...
Low
Unreviewed
CVE-2025-43410
was published
Dec 12, 2025
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in...
Low
Unreviewed
CVE-2025-43404
was published
Dec 12, 2025
An injection issue was addressed with improved validation. This issue is fixed in macOS Tahoe 26...
Low
Unreviewed
CVE-2025-43388
was published
Dec 12, 2025
Malwarebytes 1.0.14 for Linux doesn't properly compute signatures in some scenarios. This allows...
Low
Unreviewed
CVE-2023-29144
was published
Dec 12, 2025
SolarEdge SE3680H has unauthenticated disclosure of sensitive information during the bootloader...
Low
Unreviewed
CVE-2025-36744
was published
Dec 12, 2025
The CleverDisplay BlueOne hardware player is designed with its USB interfaces physically enclosed...
Low
Unreviewed
CVE-2025-36755
was published
Dec 12, 2025
The WP Fastest Cache plugin for WordPress is vulnerable to Server-Side Request Forgery in all...
Low
Unreviewed
CVE-2025-10583
was published
Dec 12, 2025
Multiple constant-time implementations in wolfSSL before version 5.8.4 may be transformed into...
Low
Unreviewed
CVE-2025-13912
was published
Dec 11, 2025
In JetBrains TeamCity before 2025.11 path traversal was possible via file upload
Low
Unreviewed
CVE-2025-67742
was published
Dec 11, 2025
In JetBrains TeamCity before 2025.11.2 improper repository URL validation could lead to local...
Low
Unreviewed
CVE-2025-67739
was published
Dec 11, 2025
In JetBrains TeamCity before 2025.11 improper access control could expose GitHub App token's...
Low
Unreviewed
CVE-2025-67740
was published
Dec 11, 2025
ProTip!
Advisories are also available from the
GraphQL API