GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,737
Maven
5,000+
npm
4,337
NuGet
764
pip
4,112
Pub
12
RubyGems
960
Rust
1,068
Swift
45
Unreviewed advisories
All unreviewed
5,000+
40 advisories
Filter by severity
Nokia Service Router Operating System (SR OS) 22.10 and SR Linux, when error-handling update...
High
Unreviewed
CVE-2023-41376
was published
Aug 29, 2023
Trigger `beforeFind` not invoked in internal query pipeline when fetching pointer
High
CVE-2023-41058
was published
for
parse-server
(npm)
Sep 4, 2023
Electron's Content-Secrity-Policy disabling eval not applied consistently in renderers with sandbox disabled
High
CVE-2023-23623
was published
for
electron
(npm)
Sep 6, 2023
Insufficient authentication flow in Checkmk before 2.2.0p17, 2.1.0p37 and 2.0.0p39 allows...
High
Unreviewed
CVE-2023-31211
was published
Jan 12, 2024
A vulnerability classified as critical has been found in SourceCodester Computer Laboratory...
High
Unreviewed
CVE-2024-3376
was published
Apr 6, 2024
Tor Arti's STUB circuits incorrectly have a length of 2
High
CVE-2024-35312
was published
for
arti
(Rust)
May 18, 2024
Contract balance not updating correctly after interchain transaction
High
CVE-2024-37153
was published
for
github.com/evmos/evmos/v10
(Go)
Jun 6, 2024
there is a possible way to bypass due to a logic error in the code. This could lead to local...
High
Unreviewed
CVE-2024-32896
was published
Jun 13, 2024
Denial of service in quinn-proto when using `Endpoint::retry()`
High
CVE-2024-45311
was published
for
quinn-proto
(Rust)
Sep 3, 2024
A vulnerability in the DHCP Snooping feature of Cisco IOS XE Software on Software-Defined Access ...
High
Unreviewed
CVE-2024-20480
was published
Sep 25, 2024
btcd did not correctly re-implement Bitcoin Core's "FindAndDelete()" functionality
High
CVE-2024-38365
was published
for
github.com/btcsuite/btcd
(Go)
Oct 10, 2024
In the Linux kernel, the following vulnerability has been resolved:
mm: call the...
High
Unreviewed
CVE-2024-47745
was published
Oct 21, 2024
WinZip Mark-of-the-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypass...
High
Unreviewed
CVE-2024-8811
was published
Nov 22, 2024
KDE Konsole before 25.04.2 allows remote code execution in a certain scenario. It supports...
High
Unreviewed
CVE-2025-49091
was published
Jun 11, 2025
SSH Tectia Server before 6.6.6 sometimes allows attackers to read and alter a user's session...
High
Unreviewed
CVE-2025-32942
was published
Oct 2, 2025
ProTip!
Advisories are also available from the
GraphQL API