GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,781
Erlang
36
GitHub Actions
29
Go
2,345
Maven
5,000+
npm
3,976
NuGet
719
pip
3,772
Pub
12
RubyGems
923
Rust
980
Swift
38
Unreviewed advisories
All unreviewed
5,000+
87 advisories
Filter by severity
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-52719
was published
Jun 20, 2025
An information disclosure vulnerability in the SD-WAN feature of Palo Alto Networks PAN-OS®...
Moderate
Unreviewed
CVE-2025-4229
was published
Jun 13, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-49419
was published
Jun 6, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-23969
was published
Jun 6, 2025
An application "com.pri.applock", which is pre-loaded on Kruger&Matz smartphones, allows a user...
Moderate
Unreviewed
CVE-2024-13916
was published
May 30, 2025
Exposure of file path, file size or file existence vulnerabilities in ASPECT provide attackers...
Moderate
Unreviewed
CVE-2025-30170
was published
May 22, 2025
langchain-core allows unauthorized users to read arbitrary files from the host file system
Moderate
CVE-2024-10940
was published
for
langchain-core
(pip)
Mar 20, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Solid...
Moderate
Unreviewed
CVE-2025-39394
was published
May 19, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-32299
was published
May 16, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-31062
was published
May 16, 2025
In BlueWave Checkmate before 2.1, an authenticated regular user can access sensitive application...
Moderate
Unreviewed
CVE-2025-48024
was published
May 15, 2025
A flaw was found in libsoup. When libsoup clients encounter an HTTP redirect, they mistakenly...
Moderate
Unreviewed
CVE-2025-46421
was published
Apr 24, 2025
The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) uses a deprecated java...
Moderate
Unreviewed
CVE-2025-30011
was published
May 13, 2025
An authenticated user without user-management permissions could identify other user accounts.
Moderate
Unreviewed
CVE-2025-46747
was published
May 12, 2025
Files to be deployed with agents are accessible without authentication in Checkmk 2.1.0, Checkmk...
Moderate
Unreviewed
CVE-2025-3506
was published
May 8, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-47540
was published
May 7, 2025
Drupal Full Path Disclosure
Moderate
CVE-2024-45440
was published
for
drupal/core
(Composer)
Aug 29, 2024
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-39439
was published
Apr 17, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-39589
was published
Apr 16, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-39556
was published
Apr 16, 2025
IBM Aspera Console 3.4.0 through 3.4.4 could disclose sensitive information in HTTP headers that...
Moderate
Unreviewed
CVE-2022-43852
was published
Apr 14, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in WP...
Moderate
Unreviewed
CVE-2025-32228
was published
Apr 10, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-32164
was published
Apr 8, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in J....
Moderate
Unreviewed
CVE-2025-32251
was published
Apr 4, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-32255
was published
Apr 4, 2025
ProTip!
Advisories are also available from the
GraphQL API