GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,680
Maven
5,000+
npm
4,308
NuGet
760
pip
4,081
Pub
12
RubyGems
958
Rust
1,061
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,334 advisories
Filter by severity
A vulnerability was identified in code-projects Hostel Management System 1.0. This affects an...
Moderate
Unreviewed
CVE-2025-8964
was published
Aug 14, 2025
A vulnerability has been found in WinterChenS my-site up to...
Moderate
Unreviewed
CVE-2025-8838
was published
Aug 11, 2025
A vulnerability, which was classified as problematic, was found in atjiu pybbs up to 6.0.0. This...
Moderate
Unreviewed
CVE-2025-8546
was published
Aug 5, 2025
A vulnerability has been found in Kehua Charging Pile Cloud Platform 1.0 and classified as...
Moderate
Unreviewed
CVE-2025-8348
was published
Jul 31, 2025
Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft...
Moderate
Unreviewed
CVE-2025-53771
was published
Jul 21, 2025
A vulnerability was found in harry0703 MoneyPrinterTurbo up to 1.2.6 and classified as critical....
Moderate
Unreviewed
CVE-2025-7897
was published
Jul 20, 2025
A vulnerability classified as critical has been found in Metasoft 美特软件 MetaCRM up to 6.4.2. This...
Moderate
Unreviewed
CVE-2025-7875
was published
Jul 20, 2025
A vulnerability has been found in TOTOLINK T6 4.1.5cu.748_B20211015 and classified as critical....
Moderate
Unreviewed
CVE-2025-7862
was published
Jul 20, 2025
Authentication vulnerability in the mobile application(tech.palm.id)may lead to the risk of...
Moderate
Unreviewed
CVE-2025-7703
was published
Jul 16, 2025
Directus' insufficient permission checks can enable unauthenticated users to manually trigger Flows
Moderate
CVE-2025-53889
was published
for
directus
(npm)
Jul 15, 2025
An authentication issue was addressed with improved state management. This issue is fixed in App...
Moderate
Unreviewed
CVE-2025-31267
was published
Jul 11, 2025
Improper authentication in Microsoft Office SharePoint allows an authorized attacker to perform...
Moderate
Unreviewed
CVE-2025-49706
was published
Jul 8, 2025
An Improper Access Control vulnerability in the Stylus Tools component of Google ChromeOS version...
Moderate
Unreviewed
CVE-2025-6044
was published
Jul 7, 2025
A vulnerability was found in rowboatlabs rowboat up to 8096eaf63b5a0732edd8f812bee05b78e214ee97....
Moderate
Unreviewed
CVE-2025-7115
was published
Jul 7, 2025
A vulnerability was found in SimStudioAI sim up to 37786d371e17d35e0764e1b5cd519d873d90d97b. It...
Moderate
Unreviewed
CVE-2025-7114
was published
Jul 7, 2025
A vulnerability classified as critical has been found in Comodo Internet Security Premium 12.3.4...
Moderate
Unreviewed
CVE-2025-7095
was published
Jul 7, 2025
Insufficient validation of the screen lock mechanism in Trust Wallet v8.45 allows physically...
Moderate
Unreviewed
CVE-2025-52294
was published
Jul 1, 2025
A misconfigured query in UniFi Network (v9.1.120 and earlier) could allow users to authenticate...
Moderate
Unreviewed
CVE-2025-24292
was published
Jun 29, 2025
A vulnerability, which was classified as critical, has been found in xxyopen/201206030 novel-plus...
Moderate
Unreviewed
CVE-2025-6533
was published
Jun 26, 2025
A vulnerability has been found in 70mai M300 up to 20250611 and classified as problematic....
Moderate
Unreviewed
CVE-2025-6528
was published
Jun 26, 2025
In ExtremeCloud Universal ZTNA, a syntax error in the 'searchKeyword' condition caused queries to...
Moderate
Unreviewed
CVE-2025-6083
was published
Jun 13, 2025
Salt's salt.auth.pki module does not properly authenticate callers
Moderate
CVE-2024-38825
was published
for
salt
(pip)
Jun 13, 2025
A vulnerability was found in code-projects School Fees Payment System 1.0 and classified as...
Moderate
Unreviewed
CVE-2025-5985
was published
Jun 11, 2025
A vulnerability classified as critical has been found in code-projects Laundry System 1.0. This...
Moderate
Unreviewed
CVE-2025-5906
was published
Jun 10, 2025
An issue in KeeperChat IOS Application v.5.8.8 allows a physically proximate attacker to escalate...
Moderate
Unreviewed
CVE-2025-29627
was published
Jun 9, 2025
ProTip!
Advisories are also available from the
GraphQL API