GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,447 advisories
Filter by severity
An issue in OpenKnowledgeMaps Headstart v7 allows a remote attacker to escalate privileges via...
High
Unreviewed
CVE-2024-51392
was published
May 29, 2025
APTIOV contains a vulnerability in BIOS where an attacker may cause an Improper Input Validation...
Moderate
Unreviewed
CVE-2025-33043
was published
May 29, 2025
A vulnerability has been found in easysoft zentaopms 21.5_20250307 and classified as critical....
Moderate
Unreviewed
CVE-2025-5114
was published
May 23, 2025
The SSID field is not parsed correctly and can be used to inject commands into the hostpad.conf...
Moderate
Unreviewed
CVE-2025-41378
was published
May 23, 2025
Cryptographic vulnerability in Iridium Certus 700. This vulnerability allows a user to retrieve...
Critical
Unreviewed
CVE-2025-41377
was published
May 23, 2025
The Intellian C700 web panel allows you to add firewall rules. Each of these rules has an...
Moderate
Unreviewed
CVE-2025-41379
was published
May 23, 2025
An issue in Ocuco Innovation Tracking.exe v.2.10.24.51 allows a local attacker to escalate...
High
Unreviewed
CVE-2024-40458
was published
May 22, 2025
Ericsson RAN Compute
and Site Controller 6610 contains in certain configurations a high severity...
High
Unreviewed
CVE-2024-25010
was published
May 22, 2025
Harman Becker MGU21 Bluetooth Improper Input Validation Denial-of-Service Vulnerability. This...
Moderate
Unreviewed
CVE-2025-3885
was published
May 22, 2025
Yandex Browser Lite for Android prior to version 21.1.0 allows remote attackers to cause a denial...
High
Unreviewed
CVE-2021-25255
was published
May 21, 2025
A vulnerability was found in iop-apl-uw basestation3 up to 3.0.4 and classified as problematic....
Moderate
Unreviewed
CVE-2025-4905
was published
May 19, 2025
A request smuggling vulnerability existed in the Google Cloud Classic Application Load Balancer...
High
Unreviewed
CVE-2025-4600
was published
May 16, 2025
A Path traversal vulnerability in the file
download functionality was identified. This...
High
Unreviewed
CVE-2025-2305
was published
May 16, 2025
Ericsson Packet Core Controller (PCC) contains a
vulnerability where an attacker sending a large...
High
Unreviewed
CVE-2024-53827
was published
May 16, 2025
A vulnerability classified as problematic has been found in XU-YIJIE grpo-flat up to...
Moderate
Unreviewed
CVE-2025-4742
was published
May 16, 2025
A vulnerability was found in BeamCtrl Airiana up to 11.0. It has been declared as problematic....
Moderate
Unreviewed
CVE-2025-4740
was published
May 16, 2025
An issue was discovered in Insyde InsydeH2O kernel 5.2 before version 05.29.50, kernel 5.3 before...
High
Unreviewed
CVE-2024-52880
was published
May 15, 2025
A vulnerability, which was classified as problematic, has been found in VITA-MLLM Freeze-Omni up...
Moderate
Unreviewed
CVE-2025-4701
was published
May 15, 2025
Insecure Direct Object Reference (IDOR) vulnerability in the eSignaViewer component in eSigna...
Low
Unreviewed
CVE-2025-4762
was published
May 15, 2025
Improper input validation in the UEFI firmware error handler for the Intel(R) Server D50DNP and...
High
Unreviewed
CVE-2025-24308
was published
May 13, 2025
ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Input...
Critical
Unreviewed
CVE-2025-43560
was published
May 13, 2025
ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Input...
Critical
Unreviewed
CVE-2025-43559
was published
May 13, 2025
Improper input validation in the UEFI firmware DXE module for the Intel(R) Server D50DNP and...
High
Unreviewed
CVE-2025-21094
was published
May 13, 2025
Improper input validation in the UEFI firmware GenerationSetup module for the Intel(R) Server...
Moderate
Unreviewed
CVE-2025-20009
was published
May 13, 2025
Improper input validation in the BackupBiosUpdate UEFI firmware SmiVariable driver for the Intel...
Moderate
Unreviewed
CVE-2025-20034
was published
May 13, 2025
ProTip!
Advisories are also available from the
GraphQL API