GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,896
Erlang
38
GitHub Actions
38
Go
2,558
Maven
5,000+
npm
4,233
NuGet
751
pip
4,001
Pub
12
RubyGems
953
Rust
1,042
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
129,400 advisories
Filter by severity
CVE-2025-54086 is an excess permissions vulnerability in the
Warehouse component of Absolute...
Moderate
Unreviewed
CVE-2025-54086
was published
Oct 2, 2025
A security flaw has been discovered in OGRECave Ogre up to 14.4.1. This issue affects the...
Moderate
Unreviewed
CVE-2025-11014
was published
Sep 26, 2025
A security flaw has been discovered in kidaze CourseSelectionSystem 1.0/5.php. The impacted...
Moderate
Unreviewed
CVE-2025-11052
was published
Sep 27, 2025
A flaw has been found in ProjectsAndPrograms School Management System up to...
Moderate
Unreviewed
CVE-2025-11659
was published
Oct 13, 2025
CVE-2025-54088 is an open-redirect vulnerability in Secure
Access prior to version 14.10....
Moderate
Unreviewed
CVE-2025-54088
was published
Oct 2, 2025
CVE-2025-54089 is a cross-site scripting vulnerability in versions
of secure access prior to 14...
Moderate
Unreviewed
CVE-2025-54089
was published
Oct 2, 2025
A weakness has been identified in ProjectsAndPrograms School Management System up to...
Moderate
Unreviewed
CVE-2025-11656
was published
Oct 13, 2025
SQL injection vulnerability in Ultimate PHP Board 2.2.7 via the username field in lostpassword.php.
Moderate
Unreviewed
CVE-2025-61540
was published
Oct 16, 2025
A vulnerability was detected in ProjectsAndPrograms School Management System up to...
Moderate
Unreviewed
CVE-2025-11658
was published
Oct 13, 2025
A flaw has been found in lostvip-com ruoyi-go 2.1. This affects the function SelectListPage of...
Moderate
Unreviewed
CVE-2025-10218
was published
Sep 11, 2025
In the Linux kernel, the following vulnerability has been resolved:
accel/ivpu: Fix general...
Moderate
Unreviewed
CVE-2024-54455
was published
Jan 11, 2025
In the Linux kernel, the following vulnerability has been resolved:
ALSA: memalloc: prefer...
Moderate
Unreviewed
CVE-2024-57800
was published
Jan 11, 2025
A vulnerability was identified in BehaviorTree up to 4.7.0. This vulnerability affects the...
Moderate
Unreviewed
CVE-2025-11013
was published
Sep 26, 2025
A vulnerability was found in BehaviorTree up to 4.7.0. Affected by this issue is the function...
Moderate
Unreviewed
CVE-2025-11011
was published
Sep 26, 2025
A vulnerability exists in the QuickJS engine's BigInt string conversion logic ...
Moderate
Unreviewed
CVE-2025-62493
was published
Oct 16, 2025
A security vulnerability has been detected in Shazwazza Smidge up to 4.5.1. The impacted element...
Moderate
Unreviewed
CVE-2025-11842
was published
Oct 16, 2025
Mattermost Desktop App versions <=5.13.0 fail to manage modals in the Mattermost Desktop App that...
Moderate
Unreviewed
CVE-2025-55035
was published
Oct 16, 2025
Pega Platform versions 8.7.5 to Infinity 24.2.2 are affected by a Insecure Direct Object...
Moderate
Unreviewed
CVE-2025-9559
was published
Oct 16, 2025
Ilevia EVE X1 Server firmware versions ≤ 4.7.18.0.eden contain a reflected cross-site scripting ...
Moderate
Unreviewed
CVE-2025-34512
was published
Oct 16, 2025
A vulnerability has been found in Apeman ID71 EN75.8.53.20. The affected element is an unknown...
Moderate
Unreviewed
CVE-2025-11851
was published
Oct 16, 2025
A vulnerability stemming from floating-point arithmetic precision errors exists in the QuickJS...
Moderate
Unreviewed
CVE-2025-62492
was published
Oct 16, 2025
A weakness has been identified in GNU Binutils 2.45. The affected element is the function vfinfo...
Moderate
Unreviewed
CVE-2025-11840
was published
Oct 16, 2025
IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5, and 6.2.1.0 and IBM Sterling File Gateway 6...
Moderate
Unreviewed
CVE-2025-36002
was published
Oct 16, 2025
A security vulnerability has been detected in ProjectsAndPrograms School Management System up to...
Moderate
Unreviewed
CVE-2025-11657
was published
Oct 13, 2025
Reflected Cross-site scripting (XSS) in Apt-Cacher-NG v3.2.1. The vulnerability allows an...
Moderate
Unreviewed
CVE-2025-11146
was published
Sep 29, 2025
ProTip!
Advisories are also available from the
GraphQL API