GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,655
Maven
5,000+
npm
4,284
NuGet
760
pip
4,068
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
287 advisories
Filter by severity
A missing validation process exists in Serv U when abused, could give a malicious actor with...
Critical
Unreviewed
CVE-2025-40548
was published
Nov 18, 2025
The EasyCommerce – AI-Powered, Fast & Beautiful WordPress Ecommerce Plugin plugin for WordPress...
Critical
Unreviewed
CVE-2025-11457
was published
Nov 11, 2025
Dell CloudLink, versions prior to 8.1.1, contain a vulnerability where a privileged user with...
Critical
Unreviewed
CVE-2025-46364
was published
Nov 5, 2025
Nagios XI versions prior to 2024R1.1.3 contain a privilege escalation vulnerability in which an...
Critical
Unreviewed
CVE-2024-13997
was published
Nov 4, 2025
The Doccure Core plugin for WordPress is vulnerable to privilege escalation in versions up to,...
Critical
Unreviewed
CVE-2025-8900
was published
Nov 3, 2025
The King Addons for Elementor – Free Elements, Widgets, Templates, and Features for Elementor...
Critical
Unreviewed
CVE-2025-8489
was published
Oct 31, 2025
Nagios XI versions prior to 2024R1.0.1 contain a privilege escalation vulnerability in the System...
Critical
Unreviewed
CVE-2024-14009
was published
Oct 31, 2025
Privilege Escalation through SUID-bit Binary.This issue affects BLU-IC2: through 1.19.5; BLU-IC4:...
Critical
Unreviewed
CVE-2025-12424
was published
Oct 28, 2025
Local Privilege Escalation.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 .
Critical
Unreviewed
CVE-2025-12425
was published
Oct 28, 2025
The WP Freeio plugin for WordPress is vulnerable to Privilege Escalation in all versions up to,...
Critical
Unreviewed
CVE-2025-11533
was published
Oct 11, 2025
In DriveLock 24.1.4 before 24.1.5, 24.2.5 before 24.2.6, and 25.1.2 before 25.1.4, attackers can...
Critical
Unreviewed
CVE-2025-55187
was published
Sep 26, 2025
An issue in PHPGurukul Online-Library-Management-System v3.0 allows an attacker to escalate...
Critical
Unreviewed
CVE-2025-57118
was published
Sep 16, 2025
The Real Spaces - WordPress Properties Directory Theme theme for WordPress is vulnerable to...
Critical
Unreviewed
CVE-2025-6758
was published
Aug 19, 2025
The Reveal Listing plugin by smartdatasoft for WordPress is vulnerable to privilege escalation in...
Critical
Unreviewed
CVE-2025-6994
was published
Aug 6, 2025
The Service Finder SMS System plugin for WordPress is vulnerable to privilege escalation via...
Critical
Unreviewed
CVE-2025-5954
was published
Aug 1, 2025
A permissions issue was addressed by removing the vulnerable code. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-43199
was published
Jul 30, 2025
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia...
Critical
Unreviewed
CVE-2025-24119
was published
Jul 30, 2025
The HT Contact Form Widget For Elementor Page Builder & Gutenberg Blocks & Form Builder. plugin...
Critical
Unreviewed
CVE-2025-7341
was published
Jul 15, 2025
The Opal Estate Pro – Property Management and Submission plugin for WordPress, used by the...
Critical
Unreviewed
CVE-2025-6934
was published
Jul 1, 2025
The Simple User Registration plugin for WordPress is vulnerable to Privilege Escalation in all...
Critical
Unreviewed
CVE-2025-4334
was published
Jun 26, 2025
A vulnerability in an internal API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated,...
Critical
Unreviewed
CVE-2025-20282
was published
Jun 26, 2025
On Arista CloudVision systems (virtual or physical on-premise deployments), Zero Touch...
Critical
Unreviewed
CVE-2025-0505
was published
May 8, 2025
ProTip!
Advisories are also available from the
GraphQL API