GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,889
Erlang
37
GitHub Actions
38
Go
2,546
Maven
5,000+
npm
4,215
NuGet
744
pip
3,991
Pub
12
RubyGems
950
Rust
1,038
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
128,850 advisories
Filter by severity
A vulnerability classified as critical was found in fcba_zzm ics-park Smart Park Management...
Moderate
Unreviewed
CVE-2025-3135
was published
Apr 3, 2025
Open Web Analytics (OWA) before 1.8.1 allows SQL injection.
Moderate
Unreviewed
CVE-2025-59397
was published
Sep 15, 2025
A vulnerability was determined in code-projects E-Commerce Website 1.0. This affects an unknown...
Moderate
Unreviewed
CVE-2025-11513
was published
Oct 9, 2025
The vulnerability exists in the EJBCA service, version 8.0 Enterprise. By making a small change...
Moderate
Unreviewed
CVE-2025-3027
was published
Mar 31, 2025
Apache Flink CDC version 3.4.0 was vulnerable to a SQL injection via maliciously crafted...
Moderate
Unreviewed
CVE-2025-62228
was published
Oct 9, 2025
IBM Aspera Faspex 5.0.0 through 5.0.13.1 uses a cross-domain policy file that includes domains...
Moderate
Unreviewed
CVE-2023-37401
was published
Oct 9, 2025
IBM Aspera 5.0.0 through 5.0.13.1
could disclose sensitive user information from the system to...
Moderate
Unreviewed
CVE-2025-36225
was published
Oct 9, 2025
IBM Aspera Faspex 5.0.0 through 5.0.13.1 could allow a privileged user to cause a denial of...
Moderate
Unreviewed
CVE-2025-36171
was published
Oct 9, 2025
The vulnerability exists in the EJBCA service, version 8.0 Enterprise. Not tested in higher...
Moderate
Unreviewed
CVE-2025-3026
was published
Mar 31, 2025
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 5.2 prior to 18.2.8,...
Moderate
Unreviewed
CVE-2025-2934
was published
Oct 9, 2025
The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘page_title’...
Moderate
Unreviewed
CVE-2025-9371
was published
Oct 9, 2025
The Slider Revolution plugin for WordPress is vulnerable to unauthorized access and modification...
Moderate
Unreviewed
CVE-2025-10249
was published
Oct 9, 2025
A weakness has been identified in code-projects Online Complaint Site 1.0. Affected is an unknown...
Moderate
Unreviewed
CVE-2025-11530
was published
Oct 9, 2025
Information disclosure while processing batch command execution in Video driver.
Moderate
Unreviewed
CVE-2025-27045
was published
Oct 9, 2025
Transient DOS while processing IOCTL call for image encoding.
Moderate
Unreviewed
CVE-2025-27049
was published
Oct 9, 2025
Transient DOS while processing video packets received from video firmware.
Moderate
Unreviewed
CVE-2025-27041
was published
Oct 9, 2025
Information disclosure may occur while processing the hypervisor log.
Moderate
Unreviewed
CVE-2025-27040
was published
Oct 9, 2025
Memory corruption may occur while processing IOCTL call for DMM/WARPNCC CONFIG request.
Moderate
Unreviewed
CVE-2025-27039
was published
Oct 9, 2025
The WP Go Maps (formerly WP Google Maps) plugin for WordPress is vulnerable to Cross-Site Request...
Moderate
Unreviewed
CVE-2025-11166
was published
Oct 9, 2025
A vulnerability was detected in Tenda AC7 15.03.06.44. This vulnerability affects unknown code of...
Moderate
Unreviewed
CVE-2025-11523
was published
Oct 9, 2025
A security flaw has been discovered in ChurchCRM up to 5.18.0. This impacts the function...
Moderate
Unreviewed
CVE-2025-11529
was published
Oct 9, 2025
A weakness has been identified in code-projects Online Complaint Site 1.0. Impacted is an unknown...
Moderate
Unreviewed
CVE-2025-11516
was published
Oct 9, 2025
A vulnerability was identified in code-projects Online Complaint Site 1.0. This vulnerability...
Moderate
Unreviewed
CVE-2025-11514
was published
Oct 9, 2025
A security flaw has been discovered in code-projects Online Complaint Site 1.0. This issue...
Moderate
Unreviewed
CVE-2025-11515
was published
Oct 9, 2025
A weakness has been identified in PHPGurukul Beauty Parlour Management System 1.1. The impacted...
Moderate
Unreviewed
CVE-2025-11507
was published
Oct 9, 2025
ProTip!
Advisories are also available from the
GraphQL API