GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,685
Maven
5,000+
npm
4,318
NuGet
760
pip
4,092
Pub
12
RubyGems
958
Rust
1,063
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,155 advisories
Filter by severity
In preloader, there is a possible escalation of privilege due to an insecure default value. This...
Moderate
Unreviewed
CVE-2025-20730
was published
Nov 4, 2025
A flaw has been found in 70mai X200 up to 20251010. Affected is an unknown function of the...
Moderate
Unreviewed
CVE-2025-11942
was published
Oct 19, 2025
A vulnerability was found in Apeman ID71 218.53.203.117. The impacted element is an unknown...
Moderate
Unreviewed
CVE-2025-11852
was published
Oct 16, 2025
An improper authentication vulnerability [CWE-287] in Fortinet FortiAnalyzer version 7.6.0...
Moderate
Unreviewed
CVE-2025-53845
was published
Oct 14, 2025
A vulnerability was found in ProjectsAndPrograms School Management System up to...
Moderate
Unreviewed
CVE-2025-11661
was published
Oct 13, 2025
A vulnerability was identified in Tomofun Furbo 360 and Furbo Mini. Affected by this issue is...
Moderate
Unreviewed
CVE-2025-11633
was published
Oct 12, 2025
A security flaw has been discovered in ChurchCRM up to 5.18.0. This impacts the function...
Moderate
Unreviewed
CVE-2025-11529
was published
Oct 9, 2025
An improper authentication vulnerability has been reported to affect QNAP Authenticator. If an...
Moderate
Unreviewed
CVE-2025-54154
was published
Oct 3, 2025
Trivision NC-227WF firmware 5.80 (build 20141010) login mechanism reveals whether a username...
Moderate
Unreviewed
CVE-2025-56764
was published
Sep 29, 2025
A cross-tenant authentication vulnerability exists in multiple WSO2 products due to improper...
Moderate
Unreviewed
CVE-2025-0663
was published
Sep 23, 2025
A vulnerability was identified in huggingface LeRobot up to 0.3.3. Affected by this vulnerability...
Moderate
Unreviewed
CVE-2025-10772
was published
Sep 22, 2025
A vulnerability was found in newbee-mall 1.0. Impacted is the function mallKaptcha of the file ...
Moderate
Unreviewed
CVE-2025-10423
was published
Sep 15, 2025
A vulnerability was found in roncoo roncoo-pay up to 9428382af21cd5568319eae7429b7e1d0332ff40....
Moderate
Unreviewed
CVE-2025-10288
was published
Sep 12, 2025
An issue in RTSPtoWeb v.2.4.3 allows a remote attacker to obtain sensitive information and...
Moderate
Unreviewed
CVE-2025-56578
was published
Sep 10, 2025
Improper Authentication (CWE-287) in the LDAP authentication engine in AxxonSoft Axxon One 2.0.2...
Moderate
Unreviewed
CVE-2025-10224
was published
Sep 10, 2025
An issue was discovered in Tenda AC8 v4.0 AC1200 Dual-band Gigabit Wireless Router AC8v4.0...
Moderate
Unreviewed
CVE-2025-52054
was published
Aug 28, 2025
A vulnerability has been found in TOTOLINK T10 4.1.8cu.5241_B20210927. Affected is an unknown...
Moderate
Unreviewed
CVE-2025-9533
was published
Aug 27, 2025
A security flaw has been discovered in zhenfeng13 My-Blog 1.0.0. This vulnerability affects...
Moderate
Unreviewed
CVE-2025-9100
was published
Aug 18, 2025
A vulnerability was identified in code-projects Hostel Management System 1.0. This affects an...
Moderate
Unreviewed
CVE-2025-8964
was published
Aug 14, 2025
A vulnerability has been found in WinterChenS my-site up to...
Moderate
Unreviewed
CVE-2025-8838
was published
Aug 11, 2025
A vulnerability, which was classified as problematic, was found in atjiu pybbs up to 6.0.0. This...
Moderate
Unreviewed
CVE-2025-8546
was published
Aug 5, 2025
A vulnerability has been found in Kehua Charging Pile Cloud Platform 1.0 and classified as...
Moderate
Unreviewed
CVE-2025-8348
was published
Jul 31, 2025
Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft...
Moderate
Unreviewed
CVE-2025-53771
was published
Jul 21, 2025
A vulnerability was found in harry0703 MoneyPrinterTurbo up to 1.2.6 and classified as critical....
Moderate
Unreviewed
CVE-2025-7897
was published
Jul 20, 2025
A vulnerability classified as critical has been found in Metasoft 美特软件 MetaCRM up to 6.4.2. This...
Moderate
Unreviewed
CVE-2025-7875
was published
Jul 20, 2025
ProTip!
Advisories are also available from the
GraphQL API