GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,757
Erlang
35
GitHub Actions
29
Go
2,327
Maven
5,000+
npm
3,960
NuGet
712
pip
3,741
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,182 advisories
Filter by severity
CWE-20: Improper Input Validation vulnerability exists that could cause Denial of Service when an...
High
Unreviewed
CVE-2025-3898
was published
Jun 10, 2025
CWE-20: Improper Input Validation vulnerability exists that could cause Denial of Service when an...
High
Unreviewed
CVE-2025-3116
was published
Jun 10, 2025
Improper Input Validation vulnerability in upKeeper Solutions upKeeper Instant Privilege Access...
High
Unreviewed
CVE-2025-4680
was published
Jun 10, 2025
An improper input validation discovered in
Avaya Call Management System
could allow an...
Critical
Unreviewed
CVE-2025-1041
was published
Jun 10, 2025
In AMD Versal Adaptive SoC devices, the lack of address validation when executing PLM runtime...
Moderate
Unreviewed
CVE-2025-0037
was published
Jun 10, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through improper input.
Moderate
Unreviewed
CVE-2025-27131
was published
Jun 8, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through improper input.
Low
Unreviewed
CVE-2025-27242
was published
Jun 8, 2025
A vulnerability classified as critical has been found in Shenzhen Dashi Tongzhou Information...
Moderate
Unreviewed
CVE-2025-5679
was published
Jun 5, 2025
A vulnerability classified as critical was found in Shenzhen Dashi Tongzhou Information...
Moderate
Unreviewed
CVE-2025-5680
was published
Jun 5, 2025
CVE-2025-1701 is a high-severity vulnerability in the MIM Admin service. An attacker could...
High
Unreviewed
CVE-2025-1701
was published
Jun 4, 2025
A vulnerability was found in ChestnutCMS up to 15.1. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2025-5552
was published
Jun 4, 2025
A vulnerability was found in slackero phpwcms up to 1.9.45/1.10.8. It has been declared as...
Moderate
Unreviewed
CVE-2025-5497
was published
Jun 3, 2025
A vulnerability was found in slackero phpwcms up to 1.9.45/1.10.8. It has been rated as critical....
Moderate
Unreviewed
CVE-2025-5498
was published
Jun 3, 2025
A vulnerability classified as critical has been found in slackero phpwcms up to 1.9.45/1.10.8....
Moderate
Unreviewed
CVE-2025-5499
was published
Jun 3, 2025
An issue was found in the private API function qDecodeDataUrl() in QtCore, which is used in...
High
Unreviewed
CVE-2025-5455
was published
Jun 2, 2025
A malicious user with administrative privileges in the web portal would be able to manipulate the...
Moderate
Unreviewed
CVE-2025-4635
was published
May 30, 2025
A vulnerability was found in zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 1.0...
Moderate
Unreviewed
CVE-2025-5326
was published
May 29, 2025
An issue in OpenKnowledgeMaps Headstart v7 allows a remote attacker to escalate privileges via...
High
Unreviewed
CVE-2024-51392
was published
May 29, 2025
APTIOV contains a vulnerability in BIOS where an attacker may cause an Improper Input Validation...
Moderate
Unreviewed
CVE-2025-33043
was published
May 29, 2025
A vulnerability has been found in easysoft zentaopms 21.5_20250307 and classified as critical....
Moderate
Unreviewed
CVE-2025-5114
was published
May 23, 2025
The Intellian C700 web panel allows you to add firewall rules. Each of these rules has an...
Moderate
Unreviewed
CVE-2025-41379
was published
May 23, 2025
Cryptographic vulnerability in Iridium Certus 700. This vulnerability allows a user to retrieve...
Critical
Unreviewed
CVE-2025-41377
was published
May 23, 2025
The SSID field is not parsed correctly and can be used to inject commands into the hostpad.conf...
Moderate
Unreviewed
CVE-2025-41378
was published
May 23, 2025
An issue in Ocuco Innovation Tracking.exe v.2.10.24.51 allows a local attacker to escalate...
High
Unreviewed
CVE-2024-40458
was published
May 22, 2025
Ericsson RAN Compute
and Site Controller 6610 contains in certain configurations a high severity...
High
Unreviewed
CVE-2024-25010
was published
May 22, 2025
ProTip!
Advisories are also available from the
GraphQL API