GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,680
Maven
5,000+
npm
4,308
NuGet
760
pip
4,081
Pub
12
RubyGems
958
Rust
1,061
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
124 advisories
Filter by severity
Primakon Pi Portal 1.0.18 /api/v2/users endpoint is vulnerable to unauthorized data exposure due...
Moderate
Unreviewed
CVE-2025-64061
was published
Nov 25, 2025
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.7 and 6.2.0.0...
Moderate
Unreviewed
CVE-2025-36112
was published
Nov 24, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-66056
was published
Nov 21, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Craig...
Moderate
Unreviewed
CVE-2025-66059
was published
Nov 21, 2025
IBM Concert 1.0.0 through 2.0.0 could disclose sensitive server information from HTTP response...
Moderate
Unreviewed
CVE-2025-36160
was published
Nov 21, 2025
IQ-Support developed by IQ Service International has a Exposure of Sensitive Information...
Moderate
Unreviewed
CVE-2025-13160
was published
Nov 14, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-64267
was published
Nov 13, 2025
IBM OpenPages 9.0 and 9.1 is vulnerable to information disclosure of sensitive information due to...
Moderate
Unreviewed
CVE-2025-27368
was published
Nov 12, 2025
Nagios XI versions prior to 2024R1.1.3, under certain circumstances, disclose sensitive user...
Moderate
Unreviewed
CVE-2024-13998
was published
Nov 4, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-64228
was published
Oct 29, 2025
A GUI dialog of an application allows to view what files are in the file system without proper...
Moderate
Unreviewed
CVE-2025-43024
was published
Oct 28, 2025
Tibbo AggreGate Network Manager < 6.40.05 exposes sensitive system information through an...
Moderate
Unreviewed
CVE-2025-34156
was published
Oct 23, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-59575
was published
Oct 22, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-52752
was published
Oct 22, 2025
HCL Unica 12.1.10 can expose sensitive system information. An attacker could use this...
Moderate
Unreviewed
CVE-2025-52616
was published
Oct 12, 2025
An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an...
Moderate
Unreviewed
CVE-2025-4614
was published
Oct 9, 2025
Multiple endpoints with sensitive information do not require authentication, making the...
Moderate
Unreviewed
CVE-2025-58585
was published
Oct 6, 2025
Due to a lack of authentication, it is possible for an unauthenticated user to request data from...
Moderate
Unreviewed
CVE-2025-58579
was published
Oct 6, 2025
The application provides access to a login protected H2 database for caching purposes....
Moderate
Unreviewed
CVE-2025-58583
was published
Oct 6, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-60167
was published
Sep 26, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-60119
was published
Sep 26, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-60092
was published
Sep 26, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-59582
was published
Sep 22, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-58007
was published
Sep 22, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Ays...
Moderate
Unreviewed
CVE-2025-58015
was published
Sep 22, 2025
ProTip!
Advisories are also available from the
GraphQL API