GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,786
Erlang
36
GitHub Actions
29
Go
2,370
Maven
5,000+
npm
3,990
NuGet
720
pip
3,781
Pub
12
RubyGems
927
Rust
982
Swift
38
Unreviewed advisories
All unreviewed
5,000+
764 advisories
Filter by severity
Deserialization of Untrusted Data vulnerability in AncoraThemes Jarvis – Night Club, Concert,...
Critical
Unreviewed
CVE-2025-32292
was published
May 23, 2025
Deserialization of Untrusted Data vulnerability in BoldThemes Avantage allows Object Injection....
Critical
Unreviewed
CVE-2025-39495
was published
May 23, 2025
Deserialization of Untrusted Data vulnerability in themeton Acerola allows Object Injection. This...
Critical
Unreviewed
CVE-2025-31927
was published
May 23, 2025
Deserialization of Untrusted Data vulnerability in ThemeGoods Grand Tour | Travel Agency...
Critical
Unreviewed
CVE-2025-39485
was published
May 23, 2025
Deserialization of Untrusted Data vulnerability in BoldThemes Medicare allows Object Injection....
Critical
Unreviewed
CVE-2025-39499
was published
May 23, 2025
Deserialization of Untrusted Data vulnerability in ZoomIt ZoomSounds allows Object Injection....
Critical
Unreviewed
CVE-2025-47568
was published
May 23, 2025
Deserialization of Untrusted Data vulnerability in CoinPayments CoinPayments.net Payment Gateway...
Critical
Unreviewed
CVE-2025-47532
was published
May 23, 2025
Deserialization of Untrusted Data vulnerability in WPFunnels WPFunnels allows Object Injection....
Critical
Unreviewed
CVE-2025-47530
was published
May 23, 2025
Deserialization of Untrusted Data vulnerability in Pagaleve Pix 4x sem juros - Pagaleve allows...
Critical
Unreviewed
CVE-2025-48287
was published
May 23, 2025
Deserialization of Untrusted Data vulnerability in AncoraThemes Kids Planet allows Object...
Critical
Unreviewed
CVE-2025-48289
was published
May 23, 2025
Deserialization of Untrusted Data vulnerability in ThimPress Course Builder allows Object...
Critical
Unreviewed
CVE-2025-48336
was published
May 29, 2025
Roundcube Webmail Vulnerable to Authenticated RCE via PHP Object Deserialization
Critical
CVE-2025-49113
was published
for
roundcube/roundcubemail
(Composer)
Jun 2, 2025
A deserialization of untrusted data vulnerability affecting DELMIA Apriso from Release 2020...
Critical
Unreviewed
CVE-2025-5086
was published
Jun 2, 2025
Auth0-PHP SDK Deserialization of Untrusted Data vulnerability
Critical
CVE-2025-48951
was published
for
auth0/auth0-php
(Composer)
Jun 4, 2025
Auth0 Wordpress Plugin vulnerable to Deserialization of Untrusted Data
Critical
GHSA-862m-5253-832r
was published
for
auth0/wordpress
(Composer)
Jun 5, 2025
Auth0 Symfony SDK Deserialization of Untrusted Data vulnerability
Critical
GHSA-98j6-67v3-mw34
was published
for
auth0/symfony
(Composer)
Jun 6, 2025
A deserialization of untrusted data vulnerability in the download file function of Soar Cloud HRD...
Critical
Unreviewed
CVE-2025-48780
was published
Jun 6, 2025
laravel-auth0 SDK Deserialization of Untrusted Data vulnerability
Critical
GHSA-c42h-56wx-h85q
was published
for
auth0/login
(Composer)
Jun 6, 2025
Deserialization of Untrusted Data vulnerability in Axiomthemes Sweet Dessert allows Object...
Critical
Unreviewed
CVE-2025-49073
was published
Jun 6, 2025
Deserialization of Untrusted Data vulnerability in AncoraThemes Mr. Murphy allows Object...
Critical
Unreviewed
CVE-2025-49072
was published
Jun 6, 2025
Deserialization of Untrusted Data vulnerability in themeton FLAP - Business WordPress Theme...
Critical
Unreviewed
CVE-2025-31396
was published
Jun 9, 2025
Deserialization of Untrusted Data vulnerability in themeton PIMP - Creative MultiPurpose allows...
Critical
Unreviewed
CVE-2025-31398
was published
Jun 9, 2025
Deserialization of Untrusted Data vulnerability in themeton PressGrid - Frontend Publish Reaction...
Critical
Unreviewed
CVE-2025-31429
was published
Jun 9, 2025
Deserialization of Untrusted Data vulnerability in themeton The Fashion - Model Agency One Page...
Critical
Unreviewed
CVE-2025-31052
was published
Jun 9, 2025
Deserialization of Untrusted Data vulnerability in LoftOcean TinySalt allows Object Injection...
Critical
Unreviewed
CVE-2025-49455
was published
Jun 10, 2025
ProTip!
Advisories are also available from the
GraphQL API