GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,007 advisories
Filter by severity
Deserialization of Untrusted Data vulnerability in empik EmpikPlace for Woocommerce allows Object...
Critical
Unreviewed
CVE-2025-32568
was published
Apr 11, 2025
Deserialization of Untrusted Data vulnerability in magepeopleteam WpBookingly allows Object...
Critical
Unreviewed
CVE-2025-32607
was published
Apr 11, 2025
Deserialization of Untrusted Data vulnerability in RealMag777 TableOn – WordPress Posts Table...
Critical
Unreviewed
CVE-2025-32569
was published
Apr 11, 2025
Deserialization of Untrusted Data vulnerability in PickPlugins Accordion allows Object Injection....
High
Unreviewed
CVE-2025-32143
was published
Apr 11, 2025
Deserialization of Untrusted Data vulnerability in PickPlugins Job Board Manager allows Object...
High
Unreviewed
CVE-2025-32144
was published
Apr 11, 2025
The IntelliSpace portal application utilizes .NET Remoting for its functionality. The...
High
Unreviewed
CVE-2025-3425
was published
Apr 7, 2025
Deserialization of Untrusted Data vulnerability in magepeopleteam WpEvently allows Object...
High
Unreviewed
CVE-2025-32145
was published
Apr 10, 2025
snowflake-connector-python vulnerable to insecure deserialization of the OCSP response cache
Moderate
CVE-2025-24794
was published
for
snowflake-connector-python
(pip)
Jan 29, 2025
vLLM deserialization vulnerability in vllm.distributed.GroupCoordinator.recv_object
Critical
CVE-2024-9052
was published
for
vllm
(pip)
Mar 20, 2025
The Product Carousel Slider & Grid Ultimate for WooCommerce plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2024-1950
was published
Mar 13, 2024
ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a Deserialization of...
Critical
Unreviewed
CVE-2025-24447
was published
Apr 8, 2025
ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a Deserialization of...
High
Unreviewed
CVE-2025-30284
was published
Apr 8, 2025
ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a Deserialization of...
High
Unreviewed
CVE-2025-30285
was published
Apr 8, 2025
Deserialization of Untrusted Data vulnerability in WP Sunshine Sunshine Photo Cart.This issue...
Moderate
Unreviewed
CVE-2024-30221
was published
Mar 28, 2024
Deserialization of Untrusted Data vulnerability in Wholesale Team WholesaleX.This issue affects...
Critical
Unreviewed
CVE-2024-30224
was published
Mar 28, 2024
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to...
High
Unreviewed
CVE-2025-29793
was published
Apr 8, 2025
Deserialization of Untrusted Data vulnerability in Acowebs PDF Invoices and Packing Slips For...
High
Unreviewed
CVE-2024-30230
was published
Mar 28, 2024
Picklescan failed to detect to some unsafe global function in Numpy library
Moderate
GHSA-fj43-3qmq-673f
was published
for
picklescan
(pip)
Apr 7, 2025
Deserialization mismatch vulnerability in the DSoftBus module
Impact: Successful exploitation of...
High
Unreviewed
CVE-2025-31175
was published
Apr 7, 2025
An issue was discovered in OpenText Content Suite Platform 22.1 (16.2.19.1803). The Common...
High
Unreviewed
CVE-2022-45923
was published
Jan 19, 2023
BentoML Allows Remote Code Execution (RCE) via Insecure Deserialization
Critical
CVE-2025-27520
was published
for
bentoml
(pip)
Apr 4, 2025
The Play.ht – Make Your Blog Posts Accessible With Text to Speech Audio plugin for WordPress is...
High
Unreviewed
CVE-2024-1772
was published
Mar 13, 2024
Deserialization of Untrusted Data vulnerability in PickPlugins Testimonial Slider allows Object...
High
Unreviewed
CVE-2025-30889
was published
Apr 3, 2025
The Script.prototype.freeze/thaw functionality in Mozilla 1.4 and earlier allows attackers to...
High
Unreviewed
CVE-2003-0791
was published
Apr 29, 2022
Deserialization of Untrusted Data vulnerability in WP All Import Import Users from CSV.This issue...
Moderate
Unreviewed
CVE-2024-32431
was published
Apr 15, 2024
ProTip!
Advisories are also available from the
GraphQL API