GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,992
Erlang
39
GitHub Actions
38
Go
2,634
Maven
5,000+
npm
4,259
NuGet
760
pip
4,052
Pub
12
RubyGems
955
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
765 advisories
Filter by severity
A vulnerability was identified in newbee-mall-plus up to 2.4.1. This vulnerability affects the...
Moderate
Unreviewed
CVE-2025-12854
was published
Nov 7, 2025
The IDonate – Blood Donation, Request And Donor Management System plugin for WordPress is...
High
Unreviewed
CVE-2025-4519
was published
Nov 7, 2025
The Better Find and Replace – AI-Powered Suggestions plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-12360
was published
Nov 6, 2025
MantisBT unauthorized disclosure of private project column configuration
Moderate
CVE-2025-62520
was published
for
mantisbt/mantisbt
(Composer)
Nov 3, 2025
A vulnerability was identified in fushengqian fuint up to...
Low
Unreviewed
CVE-2025-12623
was published
Nov 3, 2025
The SiteSEO – SEO Simplified plugin for WordPress is vulnerable to Missing Authorization in...
Moderate
Unreviewed
CVE-2025-12367
was published
Nov 1, 2025
The Document Library Lite plugin for WordPress is vulnerable to Improper Authorization in all...
Moderate
Unreviewed
CVE-2025-11174
was published
Nov 1, 2025
A vulnerability was detected in Bdtask Pharmacy Management System up to 9.4. Affected is an...
Moderate
Unreviewed
CVE-2025-12288
was published
Oct 27, 2025
A security flaw has been discovered in code-projects Client Details System 1.0. The impacted...
Moderate
Unreviewed
CVE-2025-12283
was published
Oct 27, 2025
The GenerateBlocks plugin for WordPress is vulnerable to unauthorized access of data due to a...
Moderate
Unreviewed
CVE-2025-11879
was published
Oct 25, 2025
The WP VR – 360 Panorama and Free Virtual Tour Builder For WordPress plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-12005
was published
Oct 25, 2025
The Tutor LMS Pro – eLearning and online course solution plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-6639
was published
Oct 25, 2025
The Password Protected plugin for WordPress is vulnerable to authorization bypass via IP address...
Low
Unreviewed
CVE-2025-11244
was published
Oct 25, 2025
The Originality.ai AI Checker plugin for WordPress is vulnerable to unauthorized loss of data due...
Moderate
Unreviewed
CVE-2025-10902
was published
Oct 24, 2025
Moodle has a time restriction bypass
Moderate
CVE-2025-62401
was published
for
moodle/moodle
(Composer)
Oct 23, 2025
Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected...
Moderate
Unreviewed
CVE-2025-22175
was published
Oct 22, 2025
Jira Align is vulnerable to an authorization issue. A low-privilege user is able to alter the...
Moderate
Unreviewed
CVE-2025-22171
was published
Oct 22, 2025
Jira Align is vulnerable to an authorization issue. A low-privilege user without sufficient...
Moderate
Unreviewed
CVE-2025-22170
was published
Oct 22, 2025
Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected...
Moderate
Unreviewed
CVE-2025-22169
was published
Oct 22, 2025
Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected...
Moderate
Unreviewed
CVE-2025-22168
was published
Oct 22, 2025
Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected...
Moderate
Unreviewed
CVE-2025-22172
was published
Oct 22, 2025
Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected...
Moderate
Unreviewed
CVE-2025-22174
was published
Oct 22, 2025
Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected...
Moderate
Unreviewed
CVE-2025-22177
was published
Oct 22, 2025
Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected...
Moderate
Unreviewed
CVE-2025-22173
was published
Oct 22, 2025
Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected...
Moderate
Unreviewed
CVE-2025-22176
was published
Oct 22, 2025
ProTip!
Advisories are also available from the
GraphQL API