GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,680
Maven
5,000+
npm
4,308
NuGet
760
pip
4,081
Pub
12
RubyGems
958
Rust
1,061
Swift
45
Unreviewed advisories
All unreviewed
5,000+
566 advisories
Filter by severity
A security vulnerability has been detected in nutzam NutzBoot up to 2.6.0-SNAPSHOT. This impacts...
Moderate
Unreviewed
CVE-2025-13806
was published
Dec 1, 2025
A flaw has been found in orionsec orion-ops up to 5925824997a3109651bbde07460958a7be249ed1....
Moderate
Unreviewed
CVE-2025-13808
was published
Dec 1, 2025
A vulnerability was detected in orionsec orion-ops up to 5925824997a3109651bbde07460958a7be249ed1...
Moderate
Unreviewed
CVE-2025-13807
was published
Dec 1, 2025
A flaw has been found in ZenTao up to 21.7.6-8564. The affected element is the function file:...
Moderate
Unreviewed
CVE-2025-13787
was published
Nov 30, 2025
Insecure permissions in fail2ban-client v0.11.2 allows attackers with limited sudo privileges to...
High
Unreviewed
CVE-2025-45311
was published
Nov 26, 2025
OpenBao is Vulnerable to Privileged Operator Identity Group Root Escalation
High
CVE-2025-64761
was published
for
github.com/openbao/openbao
(Go)
Nov 24, 2025
A vulnerability was detected in code-projects Blog Site 1.0. The affected element is an unknown...
Moderate
Unreviewed
CVE-2025-13576
was published
Nov 24, 2025
Black Duck SCA versions prior to 2025.10.0 had user role permissions configured in an overly...
Moderate
Unreviewed
CVE-2025-0504
was published
Nov 22, 2025
Grafana Incorrect Privilege Assignment vulnerability
Critical
CVE-2025-41115
was published
for
github.com/grafana/grafana
(Go)
Nov 21, 2025
A vulnerability was detected in macrozheng mall up to 1.0.3. Affected by this issue is the...
Moderate
Unreviewed
CVE-2025-13443
was published
Nov 20, 2025
A vulnerability was detected in WeiYe-Jing datax-web up to 2.1.2. This impacts the function...
Moderate
Unreviewed
CVE-2025-13250
was published
Nov 16, 2025
A vulnerability has been found in Radarr 5.28.0.10274. The affected element is an unknown...
High
Unreviewed
CVE-2025-13130
was published
Nov 14, 2025
A vulnerability was found in Sonarr 4.0.15.2940. The impacted element is an unknown function of...
High
Unreviewed
CVE-2025-13131
was published
Nov 14, 2025
A security flaw has been discovered in macrozheng mall-swarm up to 1.0.3. This impacts the...
Moderate
Unreviewed
CVE-2025-13115
was published
Nov 13, 2025
A vulnerability was detected in macrozheng mall-swarm up to 1.0.3. Affected by this issue is the...
Moderate
Unreviewed
CVE-2025-13118
was published
Nov 13, 2025
A security vulnerability has been detected in macrozheng mall-swarm up to 1.0.3. Affected by this...
Moderate
Unreviewed
CVE-2025-13117
was published
Nov 13, 2025
A weakness has been identified in macrozheng mall-swarm up to 1.0.3. Affected is the function...
Moderate
Unreviewed
CVE-2025-13116
was published
Nov 13, 2025
A vulnerability was identified in macrozheng mall-swarm up to 1.0.3. This affects the function...
Moderate
Unreviewed
CVE-2025-13114
was published
Nov 13, 2025
Observability Operator is vulnerable to Incorrect Privilege Assignment through its Custom Resource MonitorStack
High
CVE-2025-2843
was published
for
github.com/rhobs/observability-operator
(Go)
Nov 12, 2025
A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The...
High
Unreviewed
CVE-2024-32009
was published
Nov 11, 2025
A vulnerability was discovered in RISC-V Rocket-Chip v1.6 and before implementation where the...
Moderate
Unreviewed
CVE-2025-63384
was published
Nov 10, 2025
An issue in Sublime HQ Pty Ltd Sublime Text 4 4200 allows authenticated attackers with low-level...
Moderate
Unreviewed
CVE-2025-56503
was published
Nov 10, 2025
Incorrect Privilege Assignment vulnerability in KingAddons.com King Addons for Elementor king...
Critical
Unreviewed
CVE-2025-6325
was published
Nov 6, 2025
Incorrect Privilege Assignment vulnerability in uxper Togo togo.This issue affects Togo: from n/a...
High
Unreviewed
CVE-2025-62034
was published
Nov 6, 2025
Incorrect Privilege Assignment vulnerability in Vito Peleg Atarim atarim-visual-collaboration...
Critical
Unreviewed
CVE-2025-60195
was published
Nov 6, 2025
ProTip!
Advisories are also available from the
GraphQL API