GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
301,786 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
drm/msm: Add error handling...
Unknown
Unreviewed
CVE-2025-39747
was published
Sep 11, 2025
In the Linux kernel, the following vulnerability has been resolved:
ALSA: hda/ca0132: Fix buffer...
Unknown
Unreviewed
CVE-2025-39751
was published
Sep 11, 2025
In the Linux kernel, the following vulnerability has been resolved:
mm/kmemleak: avoid deadlock...
Unknown
Unreviewed
CVE-2025-39736
was published
Sep 11, 2025
In the Linux kernel, the following vulnerability has been resolved:
mm/kmemleak: avoid soft...
Unknown
Unreviewed
CVE-2025-39737
was published
Sep 11, 2025
In the Linux kernel, the following vulnerability has been resolved:
btrfs: do not allow...
Unknown
Unreviewed
CVE-2025-39738
was published
Sep 11, 2025
Under heavy system utilization a random race condition can occur during authentication or token...
Moderate
Unreviewed
CVE-2025-26499
was published
Sep 11, 2025
A vulnerability was determined in Ascensio System SIA OnlyOffice up to 12.7.0. Impacted is an...
Moderate
Unreviewed
CVE-2025-10255
was published
Sep 11, 2025
A vulnerability was found in Ascensio System SIA OnlyOffice up to 12.7.0. This issue affects some...
Moderate
Unreviewed
CVE-2025-10254
was published
Sep 11, 2025
In the Linux kernel, the following vulnerability has been resolved:
iommu/arm-smmu-qcom: Add...
Unknown
Unreviewed
CVE-2025-39739
was published
Sep 11, 2025
In the Linux kernel, the following vulnerability has been resolved:
drm/xe/migrate: prevent...
Unknown
Unreviewed
CVE-2025-39740
was published
Sep 11, 2025
Flask App Builder has an Authentication Bypass vulnerability when using non AUTH_DB methods
Moderate
CVE-2025-58065
was published
for
flask-appbuilder
(pip)
Sep 11, 2025
[This CNA information record relates to multiple CVEs; the
text explains which aspects...
Critical
Unreviewed
CVE-2025-27466
was published
Sep 11, 2025
[This CNA information record relates to multiple CVEs; the
text explains which aspects...
High
Unreviewed
CVE-2025-58144
was published
Sep 11, 2025
[This CNA information record relates to multiple CVEs; the
text explains which aspects...
Critical
Unreviewed
CVE-2025-58142
was published
Sep 11, 2025
[This CNA information record relates to multiple CVEs; the
text explains which aspects...
Critical
Unreviewed
CVE-2025-58143
was published
Sep 11, 2025
[This CNA information record relates to multiple CVEs; the
text explains which aspects...
High
Unreviewed
CVE-2025-58145
was published
Sep 11, 2025
A vulnerability was detected in FoxCMS up to 1.24. Affected by this issue is the function...
Moderate
Unreviewed
CVE-2025-10251
was published
Sep 11, 2025
A vulnerability has been found in openDCIM 23.04. This vulnerability affects unknown code of the...
Moderate
Unreviewed
CVE-2025-10253
was published
Sep 11, 2025
In Content Management versions 20.4- 25.3 authenticated attackers may exploit a complex cache...
Moderate
Unreviewed
CVE-2025-8716
was published
Sep 11, 2025
A flaw has been found in SEAT Queue Ticket Kiosk up to 20250827. This affects an unknown part of...
Low
Unreviewed
CVE-2025-10252
was published
Sep 11, 2025
Prebid-universal-creative latest on npm briefly compromised
Critical
CVE-2025-59039
was published
for
prebid-universal-creative
(npm)
Sep 11, 2025
Prebid.js NPM package briefly compromised
High
CVE-2025-59038
was published
for
prebid.js
(npm)
Sep 11, 2025
The Time Tracker plugin for WordPress is vulnerable to unauthorized modification and loss of data...
High
Unreviewed
CVE-2025-9018
was published
Sep 11, 2025
SQL Injection in Online Fire Reporting System v1.2 by PHPGurukul. This vulnerability allows an...
Critical
Unreviewed
CVE-2025-40689
was published
Sep 11, 2025
SQL Injection in Online Fire Reporting System v1.2 by PHPGurukul. This vulnerability allows an...
Critical
Unreviewed
CVE-2025-40687
was published
Sep 11, 2025
ProTip!
Advisories are also available from the
GraphQL API