GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,830 advisories
Filter by severity
Secret Server version 11.7 and earlier is vulnerable to a SQL report creation vulnerability that...
Low
Unreviewed
CVE-2025-6943
was published
Jul 2, 2025
In Tenable Nessus versions prior to 10.8.5 on a Windows host, it was found that a non...
High
Unreviewed
CVE-2025-36630
was published
Jul 2, 2025
Janssen Config API returns results without scope verification
High
CVE-2025-53003
was published
for
io.jans:jans-config-api-server
(Maven)
Jun 30, 2025
The Opal Estate Pro – Property Management and Submission plugin for WordPress, used by the...
Critical
Unreviewed
CVE-2025-6934
was published
Jul 1, 2025
An issue in NetEase (Hangzhou) Network Co., Ltd NeacSafe64 Driver before v1.0.0.8 allows...
Moderate
Unreviewed
CVE-2025-45737
was published
Jun 27, 2025
A vulnerability exists in in the Monitor Pro interface of the MicroSCADA X SYS600 product. An...
High
Unreviewed
CVE-2025-39202
was published
Jun 24, 2025
The Simple User Registration plugin for WordPress is vulnerable to Privilege Escalation in all...
Critical
Unreviewed
CVE-2025-4334
was published
Jun 26, 2025
A vulnerability in an internal API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated,...
Critical
Unreviewed
CVE-2025-20282
was published
Jun 26, 2025
An issue was discovered in Sensopart VISOR Vision Sensors before 2.10.0.2 allows local users to...
High
Unreviewed
CVE-2023-50450
was published
Jun 23, 2025
A potential security vulnerability has been identified in HPE OneView for VMware vCenter (OV4VC)....
High
Unreviewed
CVE-2025-37101
was published
Jun 26, 2025
A vulnerability allowing an authenticated user with the Backup Operator role to modify backup...
High
Unreviewed
CVE-2025-24286
was published
Jun 19, 2025
An issue in Coign CRM Portal v.06.06 allows a remote attacker to escalate privileges via the...
High
Unreviewed
CVE-2023-43317
was published
Jan 24, 2024
A malicious devtools extension could have been used to escalate privileges. This vulnerability...
High
Unreviewed
CVE-2024-0751
was published
Jan 23, 2024
Insecure Permission vulnerability in Cosy+ devices running a firmware 21.x below 21.2s10 or a...
High
Unreviewed
CVE-2024-33894
was published
Aug 2, 2024
An improper access control vulnerability in Trend Micro Deep Security 20.0 and Trend Micro Cloud...
High
Unreviewed
CVE-2023-52337
was published
Jan 23, 2024
An issue was discovered on GL.iNet devices through 4.5.0. Attackers can invoke the add_user...
Critical
Unreviewed
CVE-2023-50921
was published
Jan 3, 2024
New authd users logging in via SSH are members of the root group
Moderate
CVE-2025-5689
was published
for
github.com/ubuntu/authd
(Go)
Jun 16, 2025
Privilege Escalation in MiniOS in Google ChromeOS (16063.45.2 and potentially others) on enrolled...
High
Unreviewed
CVE-2025-6177
was published
Jun 16, 2025
In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non...
High
Unreviewed
CVE-2025-36631
was published
Jun 13, 2025
In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non...
High
Unreviewed
CVE-2025-36633
was published
Jun 13, 2025
Acer ControlCenter contains Remote Code Execution vulnerability. The program exposes a Windows...
High
Unreviewed
CVE-2025-5491
was published
Jun 13, 2025
IBM Db2 for Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 could allow a local user...
High
Unreviewed
CVE-2023-47145
was published
Jan 7, 2024
A privilege escalation vulnerability exists in Apache CloudStack versions 4.10.0.0 through 4.20.0...
High
Unreviewed
CVE-2025-47713
was published
Jun 11, 2025
A privilege escalation vulnerability exists in Apache CloudStack versions 4.10.0.0 through 4.20.0...
High
Unreviewed
CVE-2025-47849
was published
Jun 11, 2025
A vulnerability in Mozilla VPN on macOS allows privilege escalation from a normal user to root.
...
High
Unreviewed
CVE-2025-5687
was published
Jun 11, 2025
ProTip!
Advisories are also available from the
GraphQL API