GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
8,842 advisories
Filter by severity
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.5,...
Moderate
Unreviewed
CVE-2025-24164
was published
Apr 1, 2025
The issue was addressed with improved handling of protocols. This issue is fixed in macOS Ventura...
Critical
Unreviewed
CVE-2024-40864
was published
Apr 1, 2025
The DAP to Autoresponders Email Syncing plugin for WordPress is vulnerable to Sensitive...
Moderate
Unreviewed
CVE-2025-2840
was published
Mar 29, 2025
SaTECH BCU in its firmware version 2.1.3, allows an authenticated attacker to access information...
Moderate
Unreviewed
CVE-2025-2860
was published
Mar 28, 2025
An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE...
Moderate
Unreviewed
CVE-2021-24008
was published
Mar 28, 2025
The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-2578
was published
Mar 28, 2025
libming v0.4.8 was discovered to contain a memory leak via the parseSWF_MORPHFILLSTYLES function.
Moderate
Unreviewed
CVE-2025-29497
was published
Mar 27, 2025
libming v0.4.8 was discovered to contain a memory leak via the parseSWF_PLACEOBJECT3 function.
Moderate
Unreviewed
CVE-2025-29486
was published
Mar 27, 2025
libming v0.4.8 was discovered to contain a memory leak via the parseSWF_INITACTION function.
Moderate
Unreviewed
CVE-2025-29488
was published
Mar 27, 2025
libming v0.4.8 was discovered to contain a memory leak via the parseSWF_MORPHLINESTYLES function.
Moderate
Unreviewed
CVE-2025-29489
was published
Mar 27, 2025
In Splunk Enterprise versions below 9.3.3, 9.2.5, and 9.1.8 and Splunk Cloud Platform versions...
Moderate
Unreviewed
CVE-2025-20232
was published
Mar 27, 2025
In Splunk Enterprise versions below 9.4.1, 9.3.3, 9.2.5, and 9.1.8 and Splunk Cloud Platform...
Moderate
Unreviewed
CVE-2025-20226
was published
Mar 27, 2025
Telesquare TLR-2005KSH 1.1.4 has an Information Disclosure vulnerability when requesting...
High
Unreviewed
CVE-2025-26009
was published
Mar 26, 2025
Telesquare TLR-2005KSH 1.1.4 is vulnerable to Information Disclosure via the parameter...
High
Unreviewed
CVE-2025-26001
was published
Mar 26, 2025
The Responsive Addons for Elementor – Free Elementor Addons Plugin and Elementor Templates plugin...
Moderate
Unreviewed
CVE-2025-2228
was published
Mar 26, 2025
The Easy Digital Downloads – eCommerce Payments and Subscriptions made easy plugin for WordPress...
Moderate
Unreviewed
CVE-2025-2252
was published
Mar 25, 2025
The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-2331
was published
Mar 22, 2025
Vanna v0.6.3 is vulnerable to SQL injection via Snowflake database in its file staging operations...
High
Unreviewed
CVE-2024-8055
was published
Mar 20, 2025
In version 1.5.5 of mintplex-labs/anything-llm, the `/setup-complete` API endpoint allows...
High
Unreviewed
CVE-2024-6842
was published
Mar 20, 2025
In version 3.83 of binary-husky/gpt_academic, a Server-Side Request Forgery (SSRF) vulnerability...
High
Unreviewed
CVE-2024-11031
was published
Mar 20, 2025
A misconfiguration in the AndroidManifest.xml file in hamza417/inure before build97 allows for...
Moderate
Unreviewed
CVE-2024-0245
was published
Mar 20, 2025
The Exposure of Sensitive Information to an Unauthorized Actor
vulnerability impacting Beta80...
Moderate
Unreviewed
CVE-2025-26485
was published
Mar 19, 2025
An exposure of sensitive information to an unauthorized actor vulnerability in FortiOS version 6...
Moderate
Unreviewed
CVE-2020-29010
was published
Mar 17, 2025
A vulnerability was found in IROAD Dash Cam FX2 up to 20250308. It has been classified as...
Moderate
Unreviewed
CVE-2025-2348
was published
Mar 16, 2025
Exposure of password in web-based SSH authentication component in Devolutions Server 2024.3.13...
High
Unreviewed
CVE-2025-2277
was published
Mar 13, 2025
ProTip!
Advisories are also available from the
GraphQL API