GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
9,967 advisories
Filter by severity
Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized...
Moderate
Unreviewed
CVE-2025-55699
was published
Oct 14, 2025
Exposure of sensitive information to an unauthorized actor in Windows Cloud Files Mini Filter...
Moderate
Unreviewed
CVE-2025-55336
was published
Oct 14, 2025
Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core...
Moderate
Unreviewed
CVE-2025-59209
was published
Oct 14, 2025
An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in Fortinet...
Moderate
Unreviewed
CVE-2025-59921
was published
Oct 14, 2025
Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized...
Moderate
Unreviewed
CVE-2025-55683
was published
Oct 14, 2025
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Ariva Computer Accord...
Critical
Unreviewed
CVE-2024-1744
was published
Sep 6, 2024
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Yordam Information...
High
Unreviewed
CVE-2024-6406
was published
Sep 18, 2024
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in PORTY Smart Tech...
High
Unreviewed
CVE-2024-1662
was published
Jun 5, 2024
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Utarit Information...
High
Unreviewed
CVE-2024-3305
was published
Sep 12, 2024
The AXN-NET Ethernet module accessory 3.04 for the Accuenergy Acuvim II allows remote attackers...
High
Unreviewed
CVE-2014-2374
was published
May 17, 2022
Ecava IntegraXor before 4.1.4393 allows remote attackers to read cleartext credentials for...
Moderate
Unreviewed
CVE-2014-0786
was published
May 17, 2022
Ecava IntegraXor SCADA Server Stable 4.1.4360 and earlier and Beta 4.1.4392 and earlier allows...
Moderate
Unreviewed
CVE-2014-2377
was published
May 17, 2022
Rack has a Possible Information Disclosure Vulnerability
Moderate
CVE-2025-61780
was published
for
rack
(RubyGems)
Oct 10, 2025
Next.js may leak x-middleware-subrequest-id to external hosts
Low
CVE-2025-30218
was published
for
next
(npm)
Apr 2, 2025
A flaw was found in the XFIXES extension. The XFixesSetClientDisconnectMode handler does not...
Moderate
Unreviewed
CVE-2025-49177
was published
Jun 17, 2025
Hardcoded TLS private key and certificate in firmware in Kiloview N30 2.02.246 allows malicious...
High
Unreviewed
CVE-2025-8915
was published
Oct 13, 2025
A flaw has been found in Tomofun Furbo 360 and Furbo Mini. This issue affects some unknown...
Low
Unreviewed
CVE-2025-11647
was published
Oct 13, 2025
A security vulnerability has been detected in Tomofun Furbo Mobile App up to 7.57.0a on Android....
Low
Unreviewed
CVE-2025-11645
was published
Oct 12, 2025
A security flaw has been discovered in Tomofun Furbo 360 and Furbo Mini. This affects an unknown...
Low
Unreviewed
CVE-2025-11634
was published
Oct 12, 2025
The Code Quality Control Tool plugin for WordPress is vulnerable to Sensitive Information...
Moderate
Unreviewed
CVE-2025-8484
was published
Oct 11, 2025
The Trinity Audio – Text to Speech AI audio player to convert content into audio plugin for...
Moderate
Unreviewed
CVE-2025-9196
was published
Oct 11, 2025
Permission verification bypass vulnerability in the Camera app. Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-58277
was published
Oct 11, 2025
Identity authentication bypass vulnerability in the Gallery app. Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-58278
was published
Oct 11, 2025
SaTECH BCU in its firmware version 2.1.3, allows an authenticated attacker to access information...
Moderate
Unreviewed
CVE-2025-2860
was published
Mar 28, 2025
Incorrect Permission Assignment for Critical Resource, Exposure of Sensitive Information to an...
Moderate
Unreviewed
CVE-2025-8886
was published
Oct 10, 2025
ProTip!
Advisories are also available from the
GraphQL API