GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
9,969 advisories
Filter by severity
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in The Wikimedia...
Moderate
Unreviewed
CVE-2025-62699
was published
Oct 21, 2025
A flaw has been found in Das Parking Management System 停车场管理系统 6.2.0. Affected is an unknown...
Moderate
Unreviewed
CVE-2025-9843
was published
Oct 20, 2025
IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive...
High
Unreviewed
CVE-2022-35715
was published
Aug 11, 2022
Tileservice module is affected by information leak vulnerability, successful exploitation of this...
Low
Unreviewed
CVE-2025-57837
was published
Oct 20, 2025
Some Honor products are affected by information leak vulnerability, successful exploitation of...
Moderate
Unreviewed
CVE-2025-57838
was published
Oct 20, 2025
Photo module is affected by information leak vulnerability, successful exploitation of this...
Moderate
Unreviewed
CVE-2025-57839
was published
Oct 20, 2025
The PowerBI Embed Reports plugin for WordPress is vulnerable to Sensitive Information Disclosure...
Moderate
Unreviewed
CVE-2025-10750
was published
Oct 18, 2025
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in The Wikimedia...
Moderate
Unreviewed
CVE-2025-62669
was published
Oct 18, 2025
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation...
Low
Unreviewed
CVE-2025-23073
was published
Jan 14, 2025
Strapi core vulnerable to sensitive data exposure via CORS misconfiguration
Moderate
CVE-2025-53092
was published
for
@strapi/core
(npm)
Oct 16, 2025
When switching between Android apps using the card carousel Firefox shows a black screen as its...
Critical
Unreviewed
CVE-2025-11717
was published
Oct 14, 2025
In version 1.5.5 of mintplex-labs/anything-llm, the `/setup-complete` API endpoint allows...
High
Unreviewed
CVE-2024-6842
was published
Mar 20, 2025
Vanna v0.6.3 is vulnerable to SQL injection via Snowflake database in its file staging operations...
High
Unreviewed
CVE-2024-8055
was published
Mar 20, 2025
A misconfiguration in the AndroidManifest.xml file in hamza417/inure before build97 allows for...
Moderate
Unreviewed
CVE-2024-0245
was published
Mar 20, 2025
mudler/localai version 2.17.1 is vulnerable to a Timing Attack. This type of side-channel attack...
High
Unreviewed
CVE-2024-7010
was published
Oct 29, 2024
In lunary-ai/lunary versions up to and including 1.2.5, an information disclosure vulnerability...
Critical
Unreviewed
CVE-2024-3502
was published
Nov 14, 2024
The External Login plugin for WordPress is vulnerable to sensitive information exposure in all...
Moderate
Unreviewed
CVE-2025-11196
was published
Oct 15, 2025
Exposure of sensitive information to an unauthorized actor in Windows Taskbar Live allows an...
Low
Unreviewed
CVE-2025-59294
was published
Oct 14, 2025
Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized...
Low
Unreviewed
CVE-2025-59284
was published
Oct 14, 2025
Exposure of sensitive information to an unauthorized actor in Microsoft Failover Cluster Virtual...
Moderate
Unreviewed
CVE-2025-59260
was published
Oct 14, 2025
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an...
Moderate
Unreviewed
CVE-2025-58739
was published
Oct 14, 2025
Exposure of sensitive information to an unauthorized actor in Windows Failover Cluster allows an...
Moderate
Unreviewed
CVE-2025-59188
was published
Oct 14, 2025
Exposure of sensitive information to an unauthorized actor in Windows High Availability Services...
Moderate
Unreviewed
CVE-2025-59184
was published
Oct 14, 2025
ProTip!
Advisories are also available from the
GraphQL API