GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,783
Erlang
36
GitHub Actions
29
Go
2,349
Maven
5,000+
npm
3,976
NuGet
720
pip
3,774
Pub
12
RubyGems
923
Rust
981
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,780 advisories
Filter by severity
Kaleris NAVIS N4 ULC (Ultra Light Client) contains an unsafe Java deserialization vulnerability....
Critical
Unreviewed
CVE-2025-2566
was published
Jun 24, 2025
A PHP object injection vulnerability exists in SugarCRM versions prior to 6.5.24, 6.7.13, 7.5.2.5...
Critical
Unreviewed
CVE-2025-25034
was published
Jun 20, 2025
PowSyBl Core allows deserialization of untrusted SparseMatrix data
High
CVE-2025-47771
was published
for
com.powsybl:powsybl-math
(Maven)
Jun 19, 2025
Deserialization of Untrusted Data vulnerability in CRM Perks Integration for Contact Form 7 and...
Critical
Unreviewed
CVE-2025-49330
was published
Jun 17, 2025
Deserialization of Untrusted Data vulnerability in impleCode eCommerce Product Catalog allows...
High
Unreviewed
CVE-2025-49331
was published
Jun 17, 2025
Deserialization of Untrusted Data vulnerability in yuliaz Rapyd Payment Extension for WooCommerce...
Critical
Unreviewed
CVE-2025-30618
was published
Jun 17, 2025
Deserialization of Untrusted Data vulnerability in themeton Spare allows Object Injection. This...
Critical
Unreviewed
CVE-2025-31919
was published
Jun 17, 2025
A deserialization of untrusted input vulnerability exists in the cvhDecapsulateCmd functionality...
High
Unreviewed
CVE-2025-24919
was published
Jun 14, 2025
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to...
High
Unreviewed
CVE-2025-47166
was published
Jun 10, 2025
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to...
High
Unreviewed
CVE-2025-47163
was published
Jun 10, 2025
Deserialization of Untrusted Data vulnerability in LoftOcean CozyStay allows Object Injection...
Critical
Unreviewed
CVE-2025-49507
was published
Jun 10, 2025
Deserialization of Untrusted Data vulnerability in LoftOcean TinySalt allows Object Injection...
Critical
Unreviewed
CVE-2025-49455
was published
Jun 10, 2025
Apache Kafka Deserialization of Untrusted Data vulnerability
High
CVE-2025-27819
was published
for
org.apache.kafka:kafka
(Maven)
Jun 10, 2025
Apache Kafka Deserialization of Untrusted Data vulnerability
High
CVE-2025-27818
was published
for
org.apache.kafka:kafka
(Maven)
Jun 10, 2025
Deserialization of Untrusted Data vulnerability in themeton PIMP - Creative MultiPurpose allows...
Critical
Unreviewed
CVE-2025-31398
was published
Jun 9, 2025
Deserialization of Untrusted Data vulnerability in themeton The Fashion - Model Agency One Page...
Critical
Unreviewed
CVE-2025-31052
was published
Jun 9, 2025
Deserialization of Untrusted Data vulnerability in themeton PressGrid - Frontend Publish Reaction...
Critical
Unreviewed
CVE-2025-31429
was published
Jun 9, 2025
Deserialization of Untrusted Data vulnerability in themeton FLAP - Business WordPress Theme...
Critical
Unreviewed
CVE-2025-31396
was published
Jun 9, 2025
Apache InLong Deserialization of Untrusted Data Vulnerability
High
CVE-2025-27531
was published
for
org.apache.inlong:inlong-manager
(Maven)
Jun 6, 2025
Deserialization of Untrusted Data vulnerability in AncoraThemes Mr. Murphy allows Object...
Critical
Unreviewed
CVE-2025-49072
was published
Jun 6, 2025
Deserialization of Untrusted Data vulnerability in Axiomthemes Sweet Dessert allows Object...
Critical
Unreviewed
CVE-2025-49073
was published
Jun 6, 2025
laravel-auth0 SDK Deserialization of Untrusted Data vulnerability
Critical
GHSA-c42h-56wx-h85q
was published
for
auth0/login
(Composer)
Jun 6, 2025
Deserialization of Untrusted Data vulnerability in ThemeGoods Photography.This issue affects...
High
Unreviewed
CVE-2025-47584
was published
Jun 6, 2025
Deserialization of Untrusted Data vulnerability in Teastudio.Pl WP Posts Carousel allows Object...
High
Unreviewed
CVE-2025-39358
was published
Jun 6, 2025
A deserialization of untrusted data vulnerability in the download file function of Soar Cloud HRD...
Critical
Unreviewed
CVE-2025-48780
was published
Jun 6, 2025
ProTip!
Advisories are also available from the
GraphQL API