GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,857 advisories
Filter by severity
The issue was addressed with additional permissions checks. This issue is fixed in iPadOS 17.7.9,...
Moderate
Unreviewed
CVE-2025-43230
was published
Jul 30, 2025
Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the...
Low
Unreviewed
CVE-2025-32462
was published
Jun 30, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.6, macOS...
Moderate
Unreviewed
CVE-2025-30440
was published
May 13, 2025
This issue was addressed with improved checks to prevent unauthorized actions. This issue is...
Moderate
Unreviewed
CVE-2025-43307
was published
Sep 16, 2025
This issue was addressed with improved URL validation. This issue is fixed in Safari 26, iOS 26...
Moderate
Unreviewed
CVE-2025-31254
was published
Sep 16, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-24233
was published
Apr 1, 2025
An authorization issue was addressed with improved state management. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2025-43251
was published
Jul 30, 2025
This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sequoia...
Moderate
Unreviewed
CVE-2025-43197
was published
Jul 30, 2025
A logic issue was addressed with improved checks. This issue is fixed in iOS 18.5 and iPadOS 18.5...
Moderate
Unreviewed
CVE-2025-31227
was published
May 13, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported...
Low
Unreviewed
CVE-2025-30703
was published
Apr 15, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2025-24114
was published
Jan 28, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.3,...
Low
Unreviewed
CVE-2025-24121
was published
Jan 28, 2025
A privacy issue was addressed with improved private data redaction for log entries. This issue is...
Low
Unreviewed
CVE-2024-44172
was published
Jan 28, 2025
This issue was addressed with improved data access restriction. This issue is fixed in visionOS 2...
High
Unreviewed
CVE-2025-24221
was published
Apr 1, 2025
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.933 Application 20.0.2368...
Critical
Unreviewed
CVE-2025-27645
was published
Mar 5, 2025
An authorization issue was addressed with improved state management. This issue is fixed in...
High
Unreviewed
CVE-2025-24200
was published
Feb 10, 2025
An authentication issue was addressed with improved state management. This issue is fixed in iOS...
Low
Unreviewed
CVE-2025-24141
was published
Jan 28, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security:...
Moderate
Unreviewed
CVE-2025-21567
was published
Jan 21, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security:...
Low
Unreviewed
CVE-2025-21546
was published
Jan 21, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported...
Moderate
Unreviewed
CVE-2025-21555
was published
Jan 21, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security:...
Moderate
Unreviewed
CVE-2025-21540
was published
Jan 21, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security:...
Moderate
Unreviewed
CVE-2025-21519
was published
Jan 21, 2025
The OWASP ModSecurity Core Rule Set (CRS) is affected by a response body bypass to sequentially...
High
Unreviewed
CVE-2022-39958
was published
Sep 21, 2022
The OWASP ModSecurity Core Rule Set (CRS) is affected by a partial rule set bypass for HTTP...
Critical
Unreviewed
CVE-2022-39956
was published
Sep 21, 2022
The OWASP ModSecurity Core Rule Set (CRS) is affected by a partial rule set bypass by submitting...
Critical
Unreviewed
CVE-2022-39955
was published
Sep 21, 2022
ProTip!
Advisories are also available from the
GraphQL API