GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,652
Erlang
34
GitHub Actions
26
Go
2,257
Maven
5,000+
npm
3,909
NuGet
704
pip
3,680
Pub
12
RubyGems
915
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
253,100 advisories
Filter by severity
A Null Pointer Dereference vulnerability in the SonicOS SSLVPN Virtual office interface allows a...
High
Unreviewed
CVE-2025-32818
was published
Apr 23, 2025
Stack-overflow in fig2dev in version 3.2.9a allows an attacker possible code execution via local...
High
Unreviewed
CVE-2025-46397
was published
Apr 23, 2025
Stack-overflow in fig2dev in version 3.2.9a allows an attacker possible code execution via local...
High
Unreviewed
CVE-2025-46398
was published
Apr 23, 2025
Segmentation fault in fig2dev in version 3.2.9a allows an attacker to availability via local...
High
Unreviewed
CVE-2025-46400
was published
Apr 23, 2025
BYD QIN PLUS DM-i Dilink OS v3.0_13.1.7.2204050.1 to v3.0_13.1.7.2312290.1_0 was discovered to...
High
Unreviewed
CVE-2025-28169
was published
Apr 23, 2025
In netstat in BusyBox through 1.37.0, local users can launch of network application with an argv...
Low
Unreviewed
CVE-2024-58251
was published
Apr 23, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Drupal Search API Solr allows Cross Site...
Moderate
Unreviewed
CVE-2025-3907
was published
Apr 23, 2025
BEC Technologies Multiple Routers Insufficiently Protected Credentials Information Disclosure...
Moderate
Unreviewed
CVE-2025-2772
was published
Apr 23, 2025
BEC Technologies Multiple Routers sys ping Command Injection Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2025-2773
was published
Apr 23, 2025
Vulnerability in Drupal UEditor - 百度编辑器.This issue affects UEditor - 百度编辑器: *.*.
High
Unreviewed
CVE-2025-3903
was published
Apr 23, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-3901
was published
Apr 23, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-3900
was published
Apr 23, 2025
Vulnerability in Drupal Sportsleague.This issue affects Sportsleague: *.*.
High
Unreviewed
CVE-2025-3904
was published
Apr 23, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-3902
was published
Apr 23, 2025
TOTOLINK A810R V4.1.2cu.5182_B20201026 was found to contain a buffer overflow vulnerability in...
Unknown
Unreviewed
CVE-2025-28022
was published
Apr 23, 2025
CarlinKit CPC200-CCPA Improper Verification of Cryptographic Signature Code Execution...
Moderate
Unreviewed
CVE-2025-2763
was published
Apr 23, 2025
TOTOLINK A810R V4.1.2cu.5182_B20201026 was found to contain a buffer overflow vulnerability in...
Unknown
Unreviewed
CVE-2025-28021
was published
Apr 23, 2025
CarlinKit CPC200-CCPA Wireless Hotspot Hard-Coded Credentials Authentication Bypass Vulnerability...
High
Unreviewed
CVE-2025-2765
was published
Apr 23, 2025
Bdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This...
High
Unreviewed
CVE-2025-2769
was published
Apr 23, 2025
GIMP FLI File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability...
High
Unreviewed
CVE-2025-2761
was published
Apr 23, 2025
CarlinKit CPC200-CCPA update.cgi Improper Verification of Cryptographic Signature Code Execution...
High
Unreviewed
CVE-2025-2764
was published
Apr 23, 2025
Arista NG Firewall User-Agent Cross-Site Scripting Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-2767
was published
Apr 23, 2025
BEC Technologies Multiple Routers Cleartext Password Storage Information Disclosure Vulnerability...
Moderate
Unreviewed
CVE-2025-2770
was published
Apr 23, 2025
Bdrive NetDrive Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This...
High
Unreviewed
CVE-2025-2768
was published
Apr 23, 2025
GIMP XWD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability...
High
Unreviewed
CVE-2025-2760
was published
Apr 23, 2025
ProTip!
Advisories are also available from the
GraphQL API