GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,656
Maven
5,000+
npm
4,284
NuGet
760
pip
4,069
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,599 advisories
Filter by severity
A vulnerability in the SSH restricted shell interface of the network management services allows...
High
Unreviewed
CVE-2025-37155
was published
Nov 18, 2025
Due to webserver misconfiguration an unauthenticated remote attacker is able to read the source...
High
Unreviewed
CVE-2025-41737
was published
Nov 18, 2025
A security vulnerability has been detected in Iqbolshoh php-business-website up to...
Moderate
Unreviewed
CVE-2025-13275
was published
Nov 17, 2025
A security vulnerability has been detected in Jiusi OA up to 20251102. This affects an unknown...
Moderate
Unreviewed
CVE-2025-13249
was published
Nov 16, 2025
A weakness has been identified in Bdtask Flight Booking Software 4. Affected by this...
Moderate
Unreviewed
CVE-2025-13238
was published
Nov 16, 2025
A vulnerability has been found in DouPHP up to 1.8 Release 20251022. This impacts an unknown...
Moderate
Unreviewed
CVE-2025-13198
was published
Nov 15, 2025
The Qi Blocks plugin for WordPress is vulnerable to unauthorized access due to a missing...
Moderate
Unreviewed
CVE-2025-12182
was published
Nov 15, 2025
Directus has Improper Permission Handling on Deleted Fields
Moderate
CVE-2025-64746
was published
for
directus
(npm)
Nov 14, 2025
A security flaw has been discovered in Bdtask/CodeCanyon News365 up to 7.0.3. This affects an...
Moderate
Unreviewed
CVE-2025-13185
was published
Nov 14, 2025
A weakness has been identified in SimStudioAI sim up to ed9b9ad83f1a7c61f4392787fb51837d34eeb0af....
Moderate
Unreviewed
CVE-2025-9800
was published
Nov 14, 2025
An Incorrect Access Control vulnerability was found in the Application Server of Desktop Alert...
Moderate
Unreviewed
CVE-2025-54561
was published
Nov 14, 2025
An Incorrect Access Control vulnerability was found in the Application Server of Desktop Alert...
Critical
Unreviewed
CVE-2025-54339
was published
Nov 14, 2025
An Incorrect Access Control vulnerability was found in the Application Server of Desktop Alert...
Critical
Unreviewed
CVE-2025-54343
was published
Nov 14, 2025
@apollo/composition has Improper Enforcement of Access Control on Interface Types and Fields
High
CVE-2025-64530
was published
for
@apollo/composition
(npm)
Nov 14, 2025
Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contain an Improper Access...
Moderate
Unreviewed
CVE-2025-46362
was published
Nov 13, 2025
Keyfactor SignServer before 7.3.1 has Incorrect Access Control, issue 2 of 3.
Moderate
Unreviewed
CVE-2025-47221
was published
Nov 13, 2025
Keyfactor SignServer before 7.3.1 has Incorrect Access Control, issue 3 of 3.
Moderate
Unreviewed
CVE-2025-47222
was published
Nov 13, 2025
Keyfactor SignServer before 7.3.1 has Incorrect Access Control, issue 1 of 3.
Moderate
Unreviewed
CVE-2025-47220
was published
Nov 13, 2025
The issue was addressed by refusing external connections by default. This issue is fixed in...
High
Unreviewed
CVE-2025-43515
was published
Nov 13, 2025
A vulnerability in Cisco Catalyst Center Virtual Appliance could allow an authenticated, remote...
High
Unreviewed
CVE-2025-20341
was published
Nov 13, 2025
A vulnerability was detected in itsourcecode Online Voting System 1.0. This impacts an unknown...
Moderate
Unreviewed
CVE-2025-13061
was published
Nov 12, 2025
Dell Data Lakehouse, versions prior to 1.6.0.0, contain(s) an Improper Access Control...
Critical
Unreviewed
CVE-2025-46608
was published
Nov 12, 2025
A vulnerability in FiberHome GPON ONU HG6145F1 RP4423 allows the device's factory default Wi-Fi...
Critical
Unreviewed
CVE-2025-63353
was published
Nov 12, 2025
Tenda AC15 v15.03.05.18_multi) issues an authentication cookie that exposes the account password...
Critical
Unreviewed
CVE-2025-63666
was published
Nov 12, 2025
Incorrect access control in SIMICAM v1.16.41-20250725, KEVIEW v1.14.92-20241120, ASECAM v1.14.10...
High
Unreviewed
CVE-2025-63667
was published
Nov 12, 2025
ProTip!
Advisories are also available from the
GraphQL API