GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,968
Erlang
39
GitHub Actions
38
Go
2,618
Maven
5,000+
npm
4,255
NuGet
760
pip
4,043
Pub
12
RubyGems
953
Rust
1,050
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,983 advisories
Filter by severity
Deserialization of Untrusted Data vulnerability in Chouby Polylang polylang allows Object...
High
Unreviewed
CVE-2025-64353
was published
Oct 31, 2025
cryptidy allows code execution via untrusted data due to pickle.loads
Moderate
CVE-2025-63675
was published
for
cryptidy
(pip)
Oct 31, 2025
Keras is vulnerable to arbitrary local file loading and Server-Side Request Forgery
Moderate
CVE-2025-12058
was published
for
keras
(pip)
Oct 29, 2025
Rox, the software running BeWelcome, contains a PHP object injection vulnerability resulting from...
Critical
Unreviewed
CVE-2025-34292
was published
Oct 27, 2025
The Utils.deserialize function in pgCodeKeeper 10.12.0 processes serialized data from untrusted...
High
Unreviewed
CVE-2025-46183
was published
Oct 24, 2025
Scapy Session Loading Vulnerable to Arbitrary Code Execution via Untrusted Pickle Deserialization
Moderate
GHSA-cq46-m9x9-j8w2
was published
for
scapy
(pip)
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in acowebs Product Table For WooCommerce product...
High
Unreviewed
CVE-2025-62008
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in eyecix JobSearch wp-jobsearch.This issue...
Critical
Unreviewed
CVE-2025-62025
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in quantumcloud KBx Pro Ultimate knowledgebase...
Critical
Unreviewed
CVE-2025-60232
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in designthemes Single Property single-property...
High
Unreviewed
CVE-2025-60234
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in universam UNIVERSAM universam-demo allows...
Critical
Unreviewed
CVE-2025-60238
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in designthemes Knowledge Base kbase allows...
High
Unreviewed
CVE-2025-60228
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in CRM Perks Connector for Gravity Forms and...
High
Unreviewed
CVE-2025-60209
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in Whitebox-Studio Scape scape allows Object...
Critical
Unreviewed
CVE-2025-60213
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in captivateaudio Captivate Sync captivatesync...
Moderate
Unreviewed
CVE-2025-60221
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in AncoraThemes BugsPatrol bugspatrol allows...
Critical
Unreviewed
CVE-2025-60225
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in BoldThemes Goldenblatt goldenblatt allows...
Critical
Unreviewed
CVE-2025-60214
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in BoldThemes Addison addison allows Object...
Moderate
Unreviewed
CVE-2025-60216
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in wpshuffle Subscribe to Download subscribe-to...
Moderate
Unreviewed
CVE-2025-60224
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in wpeverest Everest Forms - Frontend Listing...
Moderate
Unreviewed
CVE-2025-60210
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in designthemes Kriya kriya allows Object...
Moderate
Unreviewed
CVE-2025-60215
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in designthemes VEDA veda allows Object Injection...
High
Unreviewed
CVE-2025-60212
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in axiomthemes White Rabbit whiterabbit allows...
Critical
Unreviewed
CVE-2025-60226
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in themesflat TF Woo Product Grid Addon For...
High
Unreviewed
CVE-2025-59007
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in rascals Noisa noisa allows Object Injection...
Critical
Unreviewed
CVE-2025-60039
was published
Oct 22, 2025
ProTip!
Advisories are also available from the
GraphQL API