GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,986
Erlang
39
GitHub Actions
38
Go
2,626
Maven
5,000+
npm
4,258
NuGet
760
pip
4,051
Pub
12
RubyGems
954
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,366 advisories
Filter by severity
An issue was discovered in libarchive bsdtar before version 3.8.1 in function apply_substitution...
Moderate
Unreviewed
CVE-2025-60753
was published
Nov 5, 2025
LibreChat version 0.7.9 is vulnerable to a Denial of Service (DoS) attack due to unbounded...
Moderate
Unreviewed
CVE-2025-8849
was published
Oct 31, 2025
Zohocorp ManageEngine Exchange Reporter Plus through 5721 are vulnerable to ReDOS vulnerability...
Moderate
Unreviewed
CVE-2025-5342
was published
Oct 30, 2025
Hotta Studio GameDriverX64.sys 7.23.4.7, a signed kernel-mode anti-cheat driver, allows local...
Moderate
Unreviewed
CVE-2025-61155
was published
Oct 28, 2025
Bouncy Castle Vulnerable to Uncontrolled Resource Consumption
Moderate
CVE-2025-12194
was published
for
org.bouncycastle:bc-fips
(Maven)
Oct 25, 2025
An issue was discovered in the NDIS Usermode IO driver (RtkIOAC60.sys, version 6.0.5600.16348)...
Moderate
Unreviewed
CVE-2025-60419
was published
Oct 24, 2025
Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Core)...
Moderate
Unreviewed
CVE-2025-62475
was published
Oct 21, 2025
Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component:...
Moderate
Unreviewed
CVE-2025-62477
was published
Oct 21, 2025
Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component:...
Moderate
Unreviewed
CVE-2025-62476
was published
Oct 21, 2025
Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component:...
Moderate
Unreviewed
CVE-2025-62478
was published
Oct 21, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported...
Moderate
Unreviewed
CVE-2025-53054
was published
Oct 21, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported...
Moderate
Unreviewed
CVE-2025-53062
was published
Oct 21, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). ...
Moderate
Unreviewed
CVE-2025-53067
was published
Oct 21, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported...
Moderate
Unreviewed
CVE-2025-53053
was published
Oct 21, 2025
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The...
Moderate
Unreviewed
CVE-2025-53068
was published
Oct 21, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported...
Moderate
Unreviewed
CVE-2025-53044
was published
Oct 21, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). ...
Moderate
Unreviewed
CVE-2025-53040
was published
Oct 21, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). ...
Moderate
Unreviewed
CVE-2025-53042
was published
Oct 21, 2025
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported...
Moderate
Unreviewed
CVE-2025-53045
was published
Oct 21, 2025
Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component:...
Moderate
Unreviewed
CVE-2025-53046
was published
Oct 21, 2025
ProcessWire CMS vulnerable to resource-exhaustion Denial of Service
Moderate
CVE-2025-60790
was published
for
processwire/processwire
(Composer)
Oct 21, 2025
NVIDIA Jetson Linux and IGX OS contain a vulnerability in NvMap, where improper tracking of...
Moderate
Unreviewed
CVE-2025-33177
was published
Oct 14, 2025
A vulnerability in the parsing of ethernet frames in AOS-8 Instant and AOS 10 could allow an...
Moderate
Unreviewed
CVE-2025-37148
was published
Oct 14, 2025
A vulnerability in an AOS firmware binary allows an authenticated malicious actor to permanently...
Moderate
Unreviewed
CVE-2025-37139
was published
Oct 14, 2025
A weakness has been identified in Tomofun Furbo 360 up to FB0035_FW_036. This vulnerability...
Moderate
Unreviewed
CVE-2025-11635
was published
Oct 12, 2025
ProTip!
Advisories are also available from the
GraphQL API