GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,698
Maven
5,000+
npm
4,325
NuGet
761
pip
4,099
Pub
12
RubyGems
958
Rust
1,063
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
278,642 advisories
Filter by severity
Improper validation of source IP addresses in OpenVPN version 2.6.0 through 2.7_rc1 allows an...
Moderate
Unreviewed
CVE-2025-13086
was published
Dec 3, 2025
Buffer Overflow was found in SmallBASIC community SmallBASIC with SDL Before v12_28, and commit...
Moderate
Unreviewed
CVE-2025-50361
was published
Dec 3, 2025
Allocation of Resources Without Limits or Throttling, Improper Validation of Specified Quantity...
High
Unreviewed
CVE-2025-12385
was published
Dec 3, 2025
alexusmai laravel-file-manager 3.3.1 and below is vulnerable to Directory Traversal. The zip...
Unknown
Unreviewed
CVE-2025-65345
was published
Dec 3, 2025
An excluded subdomain constraint in a certificate chain does not restrict the usage of wildcard...
Unknown
Unreviewed
CVE-2025-61727
was published
Dec 3, 2025
XML external entity (XXE) injection in eyoucms v1.7.1 allows remote attackers to cause a denial...
Unknown
Unreviewed
CVE-2025-65868
was published
Dec 3, 2025
An issue was discovered in Fanvil x210 V2 2.12.20 allowing unauthenticated attackers on the local...
Unknown
Unreviewed
CVE-2025-64055
was published
Dec 3, 2025
A heap buffer overflow in compiler.c and compiler.h in Pepper language 0.1.1commit...
High
Unreviewed
CVE-2025-50360
was published
Dec 3, 2025
NVIDIA Triton Server for Linux contains a vulnerability where an attacker may cause an improper...
High
Unreviewed
CVE-2025-33211
was published
Dec 3, 2025
Side-channel information leakage in Navigation and Loading in Google Chrome prior to 139.0.7258...
Moderate
Unreviewed
CVE-2025-13992
was published
Dec 3, 2025
A flaw was found in Undertow that can cause remote denial of service attacks. When the server...
High
Unreviewed
CVE-2024-3884
was published
Dec 3, 2025
NVIDIA Triton Inference Server contains a vulnerability where an attacker may cause an improper...
High
Unreviewed
CVE-2025-33201
was published
Dec 3, 2025
NVIDIA TAO contains a vulnerability where an attacker may cause a resource to be loaded via an...
High
Unreviewed
CVE-2025-33208
was published
Dec 3, 2025
Untrusted search path in auth_query connection handler in PgBouncer before 1.25.0 allows an...
High
Unreviewed
CVE-2025-12819
was published
Dec 3, 2025
Cross Site Scripting vulnerability in HCL Technologies Limited HCLTech DRAGON before v.7.6.0...
Moderate
Unreviewed
CVE-2025-63401
was published
Dec 3, 2025
An issue in HCL Technologies Limited HCLTech GRAGON before v.7.6.0 allows a remote attacker to...
Moderate
Unreviewed
CVE-2025-63402
was published
Dec 3, 2025
When building nested elements using xml.dom.minidom methods such as appendChild() that have a...
Moderate
Unreviewed
CVE-2025-12084
was published
Dec 3, 2025
The Aquarius HelperTool (1.0.003) privileged XPC service on macOS contains multiple flaws that...
Unknown
Unreviewed
CVE-2025-65842
was published
Dec 3, 2025
Aquarius Desktop 3.0.069 for macOS contains an insecure file handling vulnerability in its...
High
Unreviewed
CVE-2025-65843
was published
Dec 3, 2025
WebPros Plesk before 18.0.73.5 and 18.0.74 before 18.0.74.2 on Linux allows remote authenticated...
High
Unreviewed
CVE-2025-66431
was published
Dec 3, 2025
A local privilege escalation vulnerability exists in the Plugin Alliance InstallationHelper...
Moderate
Unreviewed
CVE-2025-62686
was published
Dec 3, 2025
Aquarius Desktop 3.0.069 for macOS stores user authentication credentials in the local file ~...
Unknown
Unreviewed
CVE-2025-65841
was published
Dec 3, 2025
A potential security vulnerability has been identified in HP Image Assistant for versions prior...
Moderate
Unreviewed
CVE-2025-13492
was published
Dec 3, 2025
In Splunk Enterprise versions below 10.0.2, 9.4.6, 9.3.8, and 9.2.10, and below 3.9.10, 3.8.58,...
Moderate
Unreviewed
CVE-2025-20383
was published
Dec 3, 2025
In Splunk Universal Forwarder for Windows versions below 10.0.2, 9.4.6, 9.3.8, and 9.2.10, a new...
High
Unreviewed
CVE-2025-20387
was published
Dec 3, 2025
ProTip!
Advisories are also available from the
GraphQL API