GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,690
Maven
5,000+
npm
4,320
NuGet
760
pip
4,096
Pub
12
RubyGems
958
Rust
1,063
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
110 advisories
Filter by severity
The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.7, iOS 18.5 and...
Low
Unreviewed
CVE-2025-31216
was published
Nov 22, 2025
Improper access control for some Intel(R) PresentMon before version 2.3.1 within Ring 3: User...
Low
Unreviewed
CVE-2025-32037
was published
Nov 11, 2025
Improper access control for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within...
Low
Unreviewed
CVE-2025-24314
was published
Nov 11, 2025
A logic issue was addressed with improved checks. This issue is fixed in iOS 26 and iPadOS 26. An...
Low
Unreviewed
CVE-2025-43309
was published
Nov 4, 2025
This issue was addressed by restricting options offered on a locked device. This issue is fixed...
Low
Unreviewed
CVE-2024-40822
was published
Jul 30, 2024
This issue was addressed by restricting options offered on a locked device. This issue is fixed...
Low
Unreviewed
CVE-2025-43408
was published
Nov 4, 2025
This issue was addressed with improved authentication. This issue is fixed in iOS 18.4 and iPadOS...
Low
Unreviewed
CVE-2025-24193
was published
Apr 1, 2025
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition...
Low
Unreviewed
CVE-2025-61748
was published
Oct 21, 2025
Vulnerability in the Unified Audit component of Oracle Database Server. Supported versions that...
Low
Unreviewed
CVE-2025-61749
was published
Oct 21, 2025
Due to a bug in Zabbix API, the hostprototype.get method lists all host prototypes to users that...
Low
Unreviewed
CVE-2025-27238
was published
Sep 12, 2025
IBM i 7.2, 7.3, 7.4, and 7.5 is vulnerable to a file level local denial of service caused by an...
Low
Unreviewed
CVE-2024-35122
was published
Jan 24, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2. An app...
Low
Unreviewed
CVE-2024-44271
was published
Aug 29, 2025
Improper access control for some Edge Orchestrator software before version 24.11.1 for Intel(R)...
Low
Unreviewed
CVE-2025-24840
was published
Aug 12, 2025
In Linksys EA6350 V2.1.2, the chroot_local_user option is enabled in the dynamically generated...
Low
Unreviewed
CVE-2025-44657
was published
Jul 21, 2025
Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). ...
Low
Unreviewed
CVE-2025-50081
was published
Jul 15, 2025
ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by an Improper Access...
Low
Unreviewed
CVE-2025-49546
was published
Jul 8, 2025
An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS...
Low
Unreviewed
CVE-2023-28197
was published
Jan 11, 2024
Philips SureSigns VS4, A.07.107 and prior. The software does not restrict or incorrectly...
Low
Unreviewed
CVE-2020-16241
was published
May 24, 2022
Vulnerability in Oracle Audit Vault and Database Firewall (component: Firewall). Supported...
Low
Unreviewed
CVE-2024-20912
was published
Jan 17, 2024
Improper access control for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may...
Low
Unreviewed
CVE-2025-20076
was published
May 13, 2025
Vulnerability in the Oracle Solaris product of Oracle Systems (component: Pluggable...
Low
Unreviewed
CVE-2025-30700
was published
Apr 15, 2025
Vulnerability in the Oracle Applications Technology Stack product of Oracle E-Business Suite ...
Low
Unreviewed
CVE-2025-30731
was published
Apr 15, 2025
The Gemalto SafeNet Luna HSM allows remote authenticated users to bypass intended key-export...
Low
Unreviewed
CVE-2015-5464
was published
May 17, 2022
Some Dahua software products have a vulnerability of unauthenticated enable or disable SSHD...
Low
Unreviewed
CVE-2022-45430
was published
Dec 27, 2022
An app may be able to break out of its sandbox. This issue is fixed in iOS 17 and iPadOS 17, iOS...
Low
Unreviewed
CVE-2023-42969
was published
Apr 11, 2025
ProTip!
Advisories are also available from the
GraphQL API