GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,698
Maven
5,000+
npm
4,327
NuGet
761
pip
4,099
Pub
12
RubyGems
958
Rust
1,064
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
636 advisories
Filter by severity
An unauthenticated attacker can trick a local user into executing arbitrary code by opening a...
High
Unreviewed
CVE-2025-41700
was published
Dec 1, 2025
Deserialization of Untrusted Data vulnerability in Icegram Email Subscribers & Newsletters email...
High
Unreviewed
CVE-2025-66055
was published
Nov 21, 2025
IBM webMethods Integration 10.11 through 10.11_Core_Fix22, 10.15 through 10.15_Core_Fix22, and 11...
High
Unreviewed
CVE-2025-36072
was published
Nov 21, 2025
The WP Import – Ultimate CSV XML Importer for WordPress plugin for WordPress is vulnerable to PHP...
High
Unreviewed
CVE-2025-13145
was published
Nov 19, 2025
The AI Engine plugin for WordPress is vulnerable to PHP Object Injection via PHAR Deserialization...
High
Unreviewed
CVE-2025-12844
was published
Nov 13, 2025
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to...
High
Unreviewed
CVE-2025-62204
was published
Nov 11, 2025
The Academy LMS – WordPress LMS Plugin for Complete eLearning Solution plugin for WordPress is...
High
Unreviewed
CVE-2025-12099
was published
Nov 8, 2025
Deserialization of Untrusted Data vulnerability in uxper Togo togo.This issue affects Togo: from...
High
Unreviewed
CVE-2025-62035
was published
Nov 6, 2025
Deserialization of Untrusted Data vulnerability in Cozmoslabs TranslatePress translatepress...
High
Unreviewed
CVE-2025-58592
was published
Nov 6, 2025
Deserialization of Untrusted Data vulnerability in NooTheme Yogi - Health Beauty & Yoga noo-yogi...
High
Unreviewed
CVE-2025-54719
was published
Nov 6, 2025
Deserialization of Untrusted Data vulnerability in sbouey Falang multilanguage falang allows...
High
Unreviewed
CVE-2025-58619
was published
Nov 6, 2025
Deserialization of Untrusted Data vulnerability in Chouby Polylang polylang allows Object...
High
Unreviewed
CVE-2025-64353
was published
Oct 31, 2025
The Utils.deserialize function in pgCodeKeeper 10.12.0 processes serialized data from untrusted...
High
Unreviewed
CVE-2025-46183
was published
Oct 24, 2025
Deserialization of Untrusted Data vulnerability in acowebs Product Table For WooCommerce product...
High
Unreviewed
CVE-2025-62008
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in designthemes VEDA veda allows Object Injection...
High
Unreviewed
CVE-2025-60212
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in designthemes Knowledge Base kbase allows...
High
Unreviewed
CVE-2025-60228
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in designthemes Single Property single-property...
High
Unreviewed
CVE-2025-60234
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in CRM Perks Connector for Gravity Forms and...
High
Unreviewed
CVE-2025-60209
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in themesflat TF Woo Product Grid Addon For...
High
Unreviewed
CVE-2025-59007
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in Hernan Villanueva Boldermail boldermail allows...
High
Unreviewed
CVE-2025-52740
was published
Oct 22, 2025
Deserialization of Untrusted Data vulnerability in Tijmen Smit WP Store Locator wp-store-locator...
High
Unreviewed
CVE-2025-52737
was published
Oct 22, 2025
Deserialization of untrusted data in Azure Monitor Agent allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-59285
was published
Oct 14, 2025
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to...
High
Unreviewed
CVE-2025-59237
was published
Oct 14, 2025
Insecure deserialization in Ivanti Endpoint Manager allows a local authenticated attacker to...
High
Unreviewed
CVE-2025-11622
was published
Oct 13, 2025
Deserialization of Untrusted Data vulnerability in awesomesupport Awesome Support allows Object...
High
Unreviewed
CVE-2025-58662
was published
Sep 22, 2025
ProTip!
Advisories are also available from the
GraphQL API