GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
                  
                    
                      
                      All reviewed
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      Composer
                    
                    
                      4,963
                    
                  
                  
                    
                      
                      Erlang
                    
                    
                      39
                    
                  
                  
                    
                      
                      GitHub Actions
                    
                    
                      38
                    
                  
                  
                    
                      
                      Go
                    
                    
                      2,615
                    
                  
                  
                    
                      
                      Maven
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      npm
                    
                    
                      4,255
                    
                  
                  
                    
                      
                      NuGet
                    
                    
                      760
                    
                  
                  
                    
                      
                      pip
                    
                    
                      4,034
                    
                  
                  
                    
                      
                      Pub
                    
                    
                      12
                    
                  
                  
                    
                      
                      RubyGems
                    
                    
                      953
                    
                  
                  
                    
                      
                      Rust
                    
                    
                      1,049
                    
                  
                  
                    
                      
                      Swift
                    
                    
                      45
                    
                  
                  Unreviewed advisories
                  
                    
                      
                      All unreviewed
                    
                    
                      5,000+
                    
                  
            Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
      2,710 advisories
        Filter by severity
        
      
      
    
                    
                      A path handling issue was addressed with improved validation. This issue is fixed in macOS...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-43191
                      
                      was published
                      Jul 30, 2025 
                    
                  
                    
                      An 'Arbitrary File Creation' in Samsung DMS(Data Management Server) allows attackers to create...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-53081
                      
                      was published
                      Jul 29, 2025 
                    
                  
                    
                      A vulnerability was found in yanyutao0402 ChanCMS up to 3.1.2. It has been rated as critical....
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-8132
                      
                      was published
                      Jul 25, 2025 
                    
                  
                    
                      Arbitrary File Overwrite (AFO) in superagi.controllers.resources.upload in TransformerOptimus...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-51475
                      
                      was published
                      Jul 22, 2025 
                    
                  
                    
                      An issue was discovered in CommScope Ruckus Unleashed prior to 200.14.6.1.203 and in Ruckus...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-46120
                      
                      was published
                      Jul 21, 2025 
                    
                  
                    
                      A vulnerability has been found in harry0703 MoneyPrinterTurbo up to 1.2.6 and classified as...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-7896
                      
                      was published
                      Jul 20, 2025 
                    
                  
                    
                      A vulnerability was found in YiJiuSmile kkFileViewOfficeEdit up to...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-7628
                      
                      was published
                      Jul 14, 2025 
                    
                  
                    
                      A vulnerability, which was classified as critical, was found in YiJiuSmile kkFileViewOfficeEdit...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-7625
                      
                      was published
                      Jul 14, 2025 
                    
                  
                    
                      A vulnerability has been found in YiJiuSmile kkFileViewOfficeEdit up to...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-7626
                      
                      was published
                      Jul 14, 2025 
                    
                  
                    
                      A vulnerability has been found in Zavy86 WikiDocs up to 1.0.77 and classified as critical....
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-7575
                      
                      was published
                      Jul 14, 2025 
                    
                  
                    
                      A vulnerability has been found in jshERP up to 3.5 and classified as critical. This vulnerability...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-7566
                      
                      was published
                      Jul 14, 2025 
                    
                  
                    
                      A vulnerability has been found in JoeyBling SpringBoot_MyBatisPlus up to...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-7488
                      
                      was published
                      Jul 12, 2025 
                    
                  
                    
                      The RSFirewall! plugin for WordPress is vulnerable to Path Traversal in all versions up to, and...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-7518
                      
                      was published
                      Jul 12, 2025 
                    
                  
                    
                      A vulnerability exists on all versions of Ivanti Policy Secure below 22.6R1 where an...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2023-39339
                      
                      was published
                      Jul 12, 2025 
                    
                  
                    
                      A vulnerability was found in letseeqiji gorobbs up to 1.0.8. It has been classified as critical....
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-7450
                      
                      was published
                      Jul 11, 2025 
                    
                  
                    
                      A vulnerability was found in kone-net go-chat up to f9e58d0afa9bbdb31faf25e7739da330692c4c63. It...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-7452
                      
                      was published
                      Jul 11, 2025 
                    
                  
                    
                      A vulnerability exists in Advantech iView in 
NetworkServlet.processImportRequest() that could...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-46704
                      
                      was published
                      Jul 11, 2025 
                    
                  
                    
                      SAPCAR improperly sanitizes the file paths while extracting SAPCAR archives. Due to this, an...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-42970
                      
                      was published
                      Jul 8, 2025 
                    
                  
                    
                      Marvell QConvergeConsole getDriverTmpPath Directory Traversal Information Disclosure...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-6807
                      
                      was published
                      Jul 7, 2025 
                    
                  
                    
                      Marvell QConvergeConsole getFileUploadSize Directory Traversal Information Disclosure...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-6795
                      
                      was published
                      Jul 7, 2025 
                    
                  
                    
                      A vulnerability classified as critical has been found in SimStudioAI sim up to 0.1.17. Affected...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-7107
                      
                      was published
                      Jul 7, 2025 
                    
                  
                    
                      A vulnerability classified as critical was found in risesoft-y9 Digital-Infrastructure up to 9.6...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-7108
                      
                      was published
                      Jul 7, 2025 
                    
                  
                    
                      A vulnerability, which was classified as critical, was found in Comodo Internet Security Premium...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-7098
                      
                      was published
                      Jul 7, 2025 
                    
                  
                    
                      Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-49303
                      
                      was published
                      Jul 4, 2025 
                    
                  
                    
                      Sending a crafted SOAP "provision" operation message archive field within the Mobile Network...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-24329
                      
                      was published
                      Jul 2, 2025 
                    
                  
        
        ProTip!
        Advisories are also available from the 
        GraphQL API