GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,757
Maven
5,000+
npm
4,363
NuGet
766
pip
4,128
Pub
12
RubyGems
961
Rust
1,070
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
281,142 advisories
Filter by severity
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2025-67950
was published
Dec 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-67912
was published
Dec 16, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-67951
was published
Dec 16, 2025
Missing Authorization vulnerability in Bob Watu Quiz watu allows Exploiting Incorrectly...
Unknown
Unreviewed
CVE-2025-67976
was published
Dec 16, 2025
Missing Authorization vulnerability in favethemes Homey Core homey-core allows Exploiting...
Moderate
Unreviewed
CVE-2025-67965
was published
Dec 16, 2025
Missing Authorization vulnerability in yaadsarig Yaad Sarig Payment Gateway For WC yaad-sarig...
Critical
Unreviewed
CVE-2025-66131
was published
Dec 16, 2025
Missing Authorization vulnerability in Design Stylish Price List stylish-price-list allows...
Moderate
Unreviewed
CVE-2025-66122
was published
Dec 16, 2025
Authorization Bypass Through User-Controlled Key vulnerability in FAPI Business s.r.o. FAPI...
Unknown
Unreviewed
CVE-2025-66132
was published
Dec 16, 2025
Missing Authorization vulnerability in Brevo Sendinblue for WooCommerce woocommerce-sendinblue...
Moderate
Unreviewed
CVE-2025-66128
was published
Dec 16, 2025
Missing Authorization vulnerability in g5theme Essential Real Estate essential-real-estate allows...
Moderate
Unreviewed
CVE-2025-66127
was published
Dec 16, 2025
Missing Authorization vulnerability in merkulove Masker for Elementor masker-elementor allows...
Moderate
Unreviewed
CVE-2025-66163
was published
Dec 16, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in Nitesh Ultimate Auction ...
Moderate
Unreviewed
CVE-2025-66125
was published
Dec 16, 2025
Missing Authorization vulnerability in CatFolders CatFolders catfolders allows Exploiting...
Moderate
Unreviewed
CVE-2025-66120
was published
Dec 16, 2025
Missing Authorization vulnerability in SiteGround SiteGround Security sg-security allows...
Unknown
Unreviewed
CVE-2025-66121
was published
Dec 16, 2025
Missing Authorization vulnerability in merkulove Grider for Elementor grider-elementor allows...
Moderate
Unreviewed
CVE-2025-66161
was published
Dec 16, 2025
Missing Authorization vulnerability in wppochipp Pochipp pochipp allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-66129
was published
Dec 16, 2025
Missing Authorization vulnerability in ZEEN101 Leaky Paywall leaky-paywall allows Exploiting...
Moderate
Unreviewed
CVE-2025-66124
was published
Dec 16, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in wowpress.host Fix Media...
Unknown
Unreviewed
CVE-2025-66126
was published
Dec 16, 2025
Missing Authorization vulnerability in NinjaTeam FileBird Pro filebird-pro allows Exploiting...
Moderate
Unreviewed
CVE-2025-66134
was published
Dec 16, 2025
Missing Authorization vulnerability in merkulove Lottier for WPBakery lottier-wpbakery allows...
Moderate
Unreviewed
CVE-2025-66165
was published
Dec 16, 2025
Missing Authorization vulnerability in merkulove Coder for Elementor coder-elementor allows...
Moderate
Unreviewed
CVE-2025-66147
was published
Dec 16, 2025
Missing Authorization vulnerability in etruel WP Views Counter wpecounter allows Exploiting...
Moderate
Unreviewed
CVE-2025-66130
was published
Dec 16, 2025
Missing Authorization vulnerability in merkulove Laser laser allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-66164
was published
Dec 16, 2025
Missing Authorization vulnerability in merkulove Lottier for Elementor lottier-elementor allows...
Moderate
Unreviewed
CVE-2025-66166
was published
Dec 16, 2025
Missing Authorization vulnerability in merkulove Spoter for Elementor spoter-elementor allows...
Moderate
Unreviewed
CVE-2025-66162
was published
Dec 16, 2025
ProTip!
Advisories are also available from the
GraphQL API