GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,318
Maven
5,000+
npm
3,950
NuGet
711
pip
3,729
Pub
12
RubyGems
920
Rust
965
Swift
38
Unreviewed advisories
All unreviewed
5,000+
383 advisories
Filter by severity
IBM Security Guardium 12.0 could allow a remote attacker to obtain sensitive information when a...
Moderate
Unreviewed
CVE-2025-25025
was published
May 28, 2025
User enumeration vulnerability in M3M Printer Server Web. This issue occurs during user...
Moderate
Unreviewed
CVE-2025-40653
was published
May 26, 2025
Mailform Pro CGI prior to 4.3.4 generates error messages containing sensitive information, which...
Moderate
Unreviewed
CVE-2025-41441
was published
May 26, 2025
An administrator could discover another account's credentials.
Moderate
Unreviewed
CVE-2025-46746
was published
May 12, 2025
Hashicorp Vault Community vulnerable to Generation of Error Message Containing Sensitive Information
Moderate
CVE-2025-4166
was published
for
github.com/hashicorp/vault
(Go)
May 2, 2025
When a Web User without Create permission on subfolders attempts to upload a file to a non...
Low
Unreviewed
CVE-2025-0049
was published
Apr 28, 2025
There is an information disclosure vulnerability in the GoldenDB database product. Attackers can...
Moderate
Unreviewed
CVE-2025-46575
was published
Apr 27, 2025
IBM InfoSphere Information 11.7 Server authenticated user to obtain sensitive information when a...
Moderate
Unreviewed
CVE-2025-25045
was published
Apr 24, 2025
A vulnerability in Cisco Nexus Dashboard could allow an unauthenticated, remote attacker to...
Moderate
Unreviewed
CVE-2025-20150
was published
Apr 16, 2025
An issue has been discovered in GitLab EE affecting all versions from 17.1 before 17.8.7, 17.9...
Moderate
Unreviewed
CVE-2024-11129
was published
Apr 10, 2025
Generation of Error Message Containing Sensitive Information vulnerability in vcita Online...
Moderate
Unreviewed
CVE-2025-32238
was published
Apr 4, 2025
HCL Traveler generates some error messages that provide detailed information about errors and...
Moderate
Unreviewed
CVE-2025-0279
was published
Apr 4, 2025
API Platform Core can leak exceptions message that may contain sensitive information
Moderate
CVE-2023-47639
was published
for
api-platform/core
(Composer)
Apr 3, 2025
IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive...
Low
Unreviewed
CVE-2024-55895
was published
Mar 29, 2025
In JetBrains TeamCity before 2025.03 exception could lead to credential leakage on Cloud Profiles...
Low
Unreviewed
CVE-2025-31141
was published
Mar 27, 2025
An issue was discovered in GitLab EE/CE affecting all versions starting from 11.5 before 17.7.7,...
Moderate
Unreviewed
CVE-2024-12380
was published
Mar 13, 2025
Generation of Error Message Containing Sensitive Information vulnerability in Hillstone Networks...
Moderate
Unreviewed
CVE-2025-2239
was published
Mar 12, 2025
Due to improper error handling in SAP Business Objects Business Intelligence Platform, technical...
Moderate
Unreviewed
CVE-2025-23185
was published
Mar 11, 2025
After attempting to upload a file that does not meet prerequisites, GMOD Apollo will respond with...
Moderate
Unreviewed
CVE-2025-20002
was published
Mar 5, 2025
IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed...
Low
Unreviewed
CVE-2024-56496
was published
Feb 27, 2025
IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed...
Low
Unreviewed
CVE-2024-56811
was published
Feb 27, 2025
IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed...
Low
Unreviewed
CVE-2024-56810
was published
Feb 27, 2025
IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed...
Low
Unreviewed
CVE-2024-56495
was published
Feb 27, 2025
IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed...
Low
Unreviewed
CVE-2024-56494
was published
Feb 27, 2025
IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed...
Low
Unreviewed
CVE-2024-56812
was published
Feb 27, 2025
ProTip!
Advisories are also available from the
GraphQL API