GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,820
Erlang
36
GitHub Actions
32
Go
2,412
Maven
5,000+
npm
4,050
NuGet
723
pip
3,844
Pub
12
RubyGems
933
Rust
1,004
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,233 advisories
Filter by severity
NVIDIA Display Driver for Linux and Windows contains a vulnerability in the kernel mode driver,...
High
Unreviewed
CVE-2025-23277
was published
Aug 3, 2025
An issue was discovered in CS Cart 4.18.3 allows the vendor login functionality lacks essential...
High
Unreviewed
CVE-2025-50850
was published
Jul 31, 2025
ExaGrid EX10 6.3 - 7.0.1.P08 is vulnerable to Incorrect Access Control. Since version 6.3,...
High
Unreviewed
CVE-2025-29556
was published
Jul 31, 2025
The firmware of the AZIOT 2MP Full HD Smart Wi-Fi CCTV Home Security Camera (version V1.00.02)...
High
Unreviewed
CVE-2025-50777
was published
Jul 30, 2025
An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-43270
was published
Jul 30, 2025
An access control issue in NanoMQ v0.21.10 allows attackers to bypass security restrictions and...
High
Unreviewed
CVE-2024-42655
was published
Jul 29, 2025
An issue in Gardyn 4 allows a remote attacker with the corresponding ssh private key can gain...
High
Unreviewed
CVE-2025-29630
was published
Jul 25, 2025
Improper access control in secure message component in Devolutions Server allows an authenticated...
High
Unreviewed
CVE-2025-6741
was published
Jul 22, 2025
An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139...
High
Unreviewed
CVE-2025-46118
was published
Jul 21, 2025
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
High
Unreviewed
CVE-2025-53028
was published
Jul 15, 2025
Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component:...
High
Unreviewed
CVE-2025-50105
was published
Jul 15, 2025
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition...
High
Unreviewed
CVE-2025-50059
was published
Jul 15, 2025
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Server). ...
High
Unreviewed
CVE-2025-50060
was published
Jul 15, 2025
pyLoad is vulnerable to attacks that bypass localhost restrictions, enabling the creation of arbitrary packages
High
CVE-2025-7346
was published
for
pyload-ng
(pip)
Jul 8, 2025
Improper access control in Microsoft PC Manager allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-47993
was published
Jul 8, 2025
A vulnerability has been identified in TIA Administrator (All versions < V3.0.6). The affected...
High
Unreviewed
CVE-2025-23365
was published
Jul 8, 2025
Improper Access Control vulnerability in Wikimedia Foundation Mediawiki - Scribunto Extension...
High
Unreviewed
CVE-2025-53501
was published
Jul 3, 2025
Misconfigured settings in IITB SSO v1.1.0 allow attackers to access sensitive application data.
High
Unreviewed
CVE-2025-45081
was published
Jul 1, 2025
Janssen Config API returns results without scope verification
High
CVE-2025-53003
was published
for
io.jans:jans-config-api-server
(Maven)
Jun 30, 2025
Mikrotik RouterOS VXLAN Source IP Improper Access Control Vulnerability. This vulnerability...
High
Unreviewed
CVE-2025-6443
was published
Jun 26, 2025
An issue in NCR Terminal Handler v1.5.1 allows low-level privileged authenticated attackers to...
High
Unreviewed
CVE-2023-47294
was published
Jun 23, 2025
ACL configured in ip_allow.config or remap.config does not use IP addresses that are provided by...
High
Unreviewed
CVE-2025-31698
was published
Jun 19, 2025
An insecure access control vulnerability in Trend Micro Apex One and Trend Micro Worry-Free...
High
Unreviewed
CVE-2025-49154
was published
Jun 17, 2025
Dell iDRAC Tools, version(s) prior to 11.3.0.0, contain(s) an Improper Access Control...
High
Unreviewed
CVE-2025-27689
was published
Jun 12, 2025
Improper access control in Windows SDK allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-47962
was published
Jun 10, 2025
ProTip!
Advisories are also available from the
GraphQL API