GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,680
Maven
5,000+
npm
4,308
NuGet
760
pip
4,081
Pub
12
RubyGems
958
Rust
1,061
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
100 advisories
Filter by severity
Object lifecycle issue in Media in Google Chrome prior to 142.0.7444.59 allowed a remote attacker...
High
Unreviewed
CVE-2025-12430
was published
Nov 10, 2025
Inappropriate implementation in Omnibox in Google Chrome on Android prior to 141.0.7390.54...
High
Unreviewed
CVE-2025-11209
was published
Nov 7, 2025
An issue was discovered in AnyDesk through 9.0.4. When the connection between two clients is...
High
Unreviewed
CVE-2025-27916
was published
Nov 6, 2025
Therefore Corporation GmbH has recently become aware that Therefore™ Online and Therefore™ On...
High
Unreviewed
CVE-2025-11843
was published
Oct 31, 2025
A Secure Boot Bypass Vulnerability exists in affected Access Points that allows an adversary to...
High
Unreviewed
CVE-2025-37147
was published
Oct 14, 2025
A security vulnerability was identified in Obsidian Scheduler's REST API 5.0.0 thru 6.3.0. If an...
High
Unreviewed
CVE-2025-56449
was published
Sep 29, 2025
Wi-SUN unexpected 4- Way Handshake packet receptions may lead to predictable keys and potentially...
High
Unreviewed
CVE-2025-7448
was published
Sep 12, 2025
On affected platforms running Arista EOS, maliciously formed UDP packets with source port 3503...
High
Unreviewed
CVE-2025-6188
was published
Aug 26, 2025
IBM i 7.3, 7.4, 7.5, and 7.6 is affected by an authenticated user obtaining elevated privileges...
High
Unreviewed
CVE-2025-36119
was published
Aug 8, 2025
An issue was discovered in AlertEnterprise Guardian 4.1.14.2.2.1. One can bypass manager approval...
High
Unreviewed
CVE-2025-31511
was published
Jul 22, 2025
Authentication bypass vulnerability in the DSoftBus module
Impact: Successful exploitation of...
High
Unreviewed
CVE-2025-48906
was published
Jun 6, 2025
Thunderbird parses addresses in a way that can allow sender spoofing in case the server allows an...
High
Unreviewed
CVE-2025-3875
was published
May 14, 2025
An issue in Mytel Telecom Online Account System v1.0 allows attackers to bypass the OTP...
High
Unreviewed
CVE-2025-28128
was published
Apr 25, 2025
Francois Jacquet RosarioSIS v12.0.0 was discovered to contain a content spoofing vulnerability in...
High
Unreviewed
CVE-2025-29621
was published
Apr 22, 2025
There is a whitelist mechanism bypass in GameCenter ,successful exploitation of this...
High
Unreviewed
CVE-2025-2188
was published
Apr 17, 2025
Access control vulnerability in the security verification module
Impact: Successful exploitation...
High
Unreviewed
CVE-2025-31170
was published
Apr 7, 2025
Access control vulnerability in the security verification module
Impact: Successful exploitation...
High
Unreviewed
CVE-2024-58125
was published
Apr 7, 2025
Access control vulnerability in the security verification module
Impact: Successful exploitation...
High
Unreviewed
CVE-2024-58126
was published
Apr 7, 2025
Access control vulnerability in the security verification module
Impact: Successful exploitation...
High
Unreviewed
CVE-2024-58127
was published
Apr 7, 2025
Access control vulnerability in the security verification module
Impact: Successful exploitation...
High
Unreviewed
CVE-2024-58124
was published
Apr 7, 2025
A crafted URL containing specific Unicode characters could have hidden the true origin of the...
High
Unreviewed
CVE-2025-3029
was published
Apr 1, 2025
An issue was discovered on G-Net Dashcam BB GONX devices. Bypassing of Device Pairing can occur....
High
Unreviewed
CVE-2025-30142
was published
Mar 18, 2025
Certain crafted MIME email messages that claimed to contain an encrypted OpenPGP message, which...
High
Unreviewed
CVE-2025-26696
was published
Mar 10, 2025
In JetBrains YouTrack before 2024.3.55417 account takeover was possible via spoofed email and...
High
Unreviewed
CVE-2025-24458
was published
Jan 21, 2025
Snap One OVRC cloud uses the MAC address as an identifier to provide information when requested....
High
Unreviewed
CVE-2024-50380
was published
Dec 2, 2024
ProTip!
Advisories are also available from the
GraphQL API