GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,478
Erlang
33
GitHub Actions
24
Go
2,208
Maven
5,000+
npm
3,865
NuGet
696
pip
3,642
Pub
12
RubyGems
913
Rust
919
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,393 advisories
Filter by severity
A use of hard-coded cryptographic key vulnerability in FortiSIEM version 5.2.6 may allow a remote...
Low
Unreviewed
CVE-2019-17659
was published
Mar 17, 2025
A vulnerability was found in IROAD Dash Cam FX2 up to 20250308. It has been declared as...
Low
Unreviewed
CVE-2025-2349
was published
Mar 17, 2025
A vulnerability was found in IROAD Dash Cam X5 up to 20250203. It has been rated as problematic....
Low
Unreviewed
CVE-2025-2341
was published
Mar 16, 2025
The GDPR Cookie Compliance WordPress plugin before 4.15.7 does not sanitise and escape some of...
Low
Unreviewed
CVE-2025-1622
was published
Mar 16, 2025
The GDPR Cookie Compliance WordPress plugin before 4.15.9 does not sanitise and escape some of...
Low
Unreviewed
CVE-2025-1624
was published
Mar 16, 2025
The GDPR Cookie Compliance WordPress plugin before 4.15.9 does not sanitise and escape some of...
Low
Unreviewed
CVE-2025-1623
was published
Mar 16, 2025
A flaw was found in Foreman/Red Hat Satellite. Improper file permissions allow low-privileged OS...
Low
Unreviewed
CVE-2025-2157
was published
Mar 15, 2025
An improper neutralization of special elements used in an SQL command ('SQL Injection')...
Low
Unreviewed
CVE-2022-29059
was published
Mar 14, 2025
An issue was discovered in GitLab EE affecting all versions from 16.5 prior to 17.7.7, 17.8 prior...
Low
Unreviewed
CVE-2024-7296
was published
Mar 13, 2025
An issue was discovered in GitLab EE affecting all versions starting from 17.2 before 17.7.7, all...
Low
Unreviewed
CVE-2024-8402
was published
Mar 13, 2025
Improper Neutralization of Script in an Error Message Web Page vulnerability in OpenText™ Service...
Low
Unreviewed
CVE-2025-0883
was published
Mar 12, 2025
An improper access control vulnerability exists in Bitdefender Box 1 (firmware version 1.3.52.928...
Low
Unreviewed
CVE-2024-13870
was published
Mar 12, 2025
In the Linux kernel, the following vulnerability has been resolved:
mm/zswap: fix inconsistency...
Low
Unreviewed
CVE-2025-21860
was published
Mar 12, 2025
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix softlockup in...
Low
Unreviewed
CVE-2025-21851
was published
Mar 12, 2025
hostapd fails to process crafted RADIUS packets properly. When hostapd authenticates wi-fi...
Low
Unreviewed
CVE-2025-24912
was published
Mar 12, 2025
PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This...
Low
Unreviewed
CVE-2025-0900
was published
Mar 11, 2025
An incorrect authorization vulnerability [CWE-863] in FortiSIEM 7.2 all versions, 7.1 all...
Low
Unreviewed
CVE-2024-55592
was published
Mar 11, 2025
EDK2 contains a vulnerability in BIOS where a user may cause an Integer Overflow or Wraparound by...
Low
Unreviewed
CVE-2024-12546
was published
Mar 11, 2025
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0...
Low
Unreviewed
CVE-2025-27398
was published
Mar 11, 2025
The ip-utils package through 2.4.0 for Node.js might allow SSRF because some IP addresses (such...
Low
Unreviewed
CVE-2024-28607
was published
Mar 11, 2025
In Archer Platform 6 through 6.14.00202.10024, an authenticated user with record creation...
Low
Unreviewed
CVE-2025-27893
was published
Mar 11, 2025
The Social Share Buttons, Social Sharing Icons, Click to Tweet — Social Media Plugin by Social...
Low
Unreviewed
CVE-2024-13615
was published
Mar 11, 2025
Under certain conditions, an SSRF vulnerability in SAP CRM and SAP S/4HANA (Interaction Center)...
Low
Unreviewed
CVE-2025-27430
was published
Mar 11, 2025
The eDocument Cockpit (Inbound NF-e) in SAP Electronic Invoicing for Brazil allows an...
Low
Unreviewed
CVE-2025-27432
was published
Mar 11, 2025
SAP Just In Time(JIT) does not perform necessary authorization checks for an authenticated user,...
Low
Unreviewed
CVE-2025-26655
was published
Mar 11, 2025
ProTip!
Advisories are also available from the
GraphQL API