GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,904
Erlang
38
GitHub Actions
38
Go
2,566
Maven
5,000+
npm
4,237
NuGet
753
pip
4,001
Pub
12
RubyGems
953
Rust
1,042
Swift
45
Unreviewed advisories
All unreviewed
5,000+
170 advisories
Filter by severity
An arbitrary file download vulnerability in the web interface of Juniper Networks Junos Space...
High
Unreviewed
CVE-2025-59976
was published
Oct 9, 2025
Apache Kylin Files or Directories Accessible to External Parties
High
CVE-2025-61734
was published
for
org.apache.kylin:kylin
(Maven)
Oct 2, 2025
Elevation of Privileges in the cleaning feature of Gen Digital CCleaner version 6.33.11465 on...
High
Unreviewed
CVE-2025-3025
was published
Sep 15, 2025
ContentKeeper Web Appliance (now maintained by Impero Software) versions prior to 125.10 expose...
High
Unreviewed
CVE-2009-10005
was published
Aug 20, 2025
NVIDIA Installer for Windows contains a vulnerability where an attacker may be able to escalate...
High
Unreviewed
CVE-2025-23276
was published
Aug 3, 2025
A vulnerability exists in Sitecore Experience Manager (XM), Experience Platform (XP), Experience...
High
Unreviewed
CVE-2025-34139
was published
Jul 25, 2025
OA EKP v16 was discovered to contain an arbitrary download vulnerability via the component /ui...
High
Unreviewed
CVE-2023-41566
was published
Jul 17, 2025
Multiple Brother driver installers for Windows contain a privilege escalation vulnerability. If...
High
Unreviewed
CVE-2025-49797
was published
Jun 26, 2025
Lack of file validation in do_update_vps in Avast Business Antivirus for Linux 4.5 on Linux...
High
Unreviewed
CVE-2025-4134
was published
May 28, 2025
An arbitrary file read vulnerability in the ReadTextAsynchronous function of SSCMS v7.3.1 allows...
High
Unreviewed
CVE-2025-45529
was published
May 27, 2025
A vulnerability was discovered in Pagure server. If a malicious user were to submit a git...
High
Unreviewed
CVE-2024-4981
was published
May 12, 2025
A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges to...
High
Unreviewed
CVE-2025-32819
was published
May 7, 2025
Local File Inclusion vulnerability in Ready's attachment upload panel allows low privileged user...
High
Unreviewed
CVE-2025-1982
was published
Apr 16, 2025
CWE-552: Files or Directories Accessible to External Parties vulnerability over https exists that...
High
Unreviewed
CVE-2025-2222
was published
Apr 9, 2025
The ReadFile endpoint of the firmware for Mennekes Smart / Premium Chargingpoints can be abused...
High
Unreviewed
CVE-2025-22369
was published
Mar 11, 2025
A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302...
High
Unreviewed
CVE-2025-25266
was published
Mar 11, 2025
Moodle has an arbitrary file read risk through pdfTeX
High
CVE-2025-26525
was published
for
moodle/moodle
(Composer)
Feb 24, 2025
Files or Directories Accessible to External Parties vulnerability in Agito Computer Health4All...
High
Unreviewed
CVE-2024-12917
was published
Feb 24, 2025
In Progress® Telerik® Document Processing Libraries, versions prior to 2025 Q1 (2025.1.205),...
High
Unreviewed
CVE-2024-11629
was published
Feb 12, 2025
Local File Inclusion vulnerability in dhtmlxFileExplorer v.8.4.6 allows a remote attacker to...
High
Unreviewed
CVE-2024-55214
was published
Feb 7, 2025
Directory Traversal vulnerability in dhtmlxFileExplorer v.8.4.6 allows a remote attacker to...
High
Unreviewed
CVE-2024-55213
was published
Feb 7, 2025
Sparkle Signing Checks Bypass
High
CVE-2025-0509
was published
for
github.com/sparkle-project/Sparkle
(Swift)
Feb 4, 2025
ChestnutCMS <=1.5.0 has an arbitrary file deletion vulnerability in contentcore.controller...
High
Unreviewed
CVE-2024-57452
was published
Feb 3, 2025
Potential privilege escalation vulnerability in Revenera InstallShield versions 2022 R2 and 2021...
High
Unreviewed
CVE-2023-29080
was published
Jan 30, 2025
A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V9.80), SIPROTEC...
High
Unreviewed
CVE-2024-53649
was published
Jan 14, 2025
ProTip!
Advisories are also available from the
GraphQL API