GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,877
Erlang
37
GitHub Actions
38
Go
2,538
Maven
5,000+
npm
4,198
NuGet
743
pip
3,971
Pub
12
RubyGems
947
Rust
1,030
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,945 advisories
Filter by severity
Rapid7 AppSpider Pro versions below 7.5.021 suffer from a project name validation vulnerability,...
Low
Unreviewed
CVE-2025-11195
was published
Sep 30, 2025
NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an...
Low
Unreviewed
CVE-2025-23291
was published
Sep 30, 2025
The EKEN video doorbell T6 BT60PLUS_MAIN_V1.0_GC1084_20230531 periodically sends debug logs to...
Low
Unreviewed
CVE-2025-56675
was published
Sep 30, 2025
IBM Lakehouse (watsonx.data 2.2) stores potentially sensitive information in log files that could...
Low
Unreviewed
CVE-2025-36144
was published
Sep 27, 2025
IBM Cognos Controller 11.0.0 through 11.0.1, and IBM Controller 11.1.0 through 11.1.1 could allow...
Low
Unreviewed
CVE-2025-36326
was published
Sep 26, 2025
An issue has been discovered in GitLab CE/EE affecting all versions from 17.10 before 18.2.7, 18...
Low
Unreviewed
CVE-2025-5069
was published
Sep 26, 2025
An issue has been discovered in GitLab CE/EE affecting all versions from 17.4 before 18.2.7, 18.3...
Low
Unreviewed
CVE-2025-10868
was published
Sep 26, 2025
An issue has been discovered in GitLab EE affecting all versions from 16.6 before 18.2.7, 18.3...
Low
Unreviewed
CVE-2025-10871
was published
Sep 26, 2025
A username enumeration vulnerability exists in multiple WSO2 products when Multi-Attribute Login...
Low
Unreviewed
CVE-2025-1396
was published
Sep 26, 2025
An issue has been discovered in GitLab CE/EE affecting all versions from 18.1 before 18.2.7, 18.3...
Low
Unreviewed
CVE-2025-10867
was published
Sep 26, 2025
The ShopEngine Elementor WooCommerce Builder Addon – All in One WooCommerce Solution plugin for...
Low
Unreviewed
CVE-2025-10173
was published
Sep 26, 2025
A vulnerability was identified in JeecgBoot up to 3.8.2. Impacted is an unknown function of the...
Low
Unreviewed
CVE-2025-10977
was published
Sep 26, 2025
A vulnerability was determined in JeecgBoot up to 3.8.2. This issue affects some unknown...
Low
Unreviewed
CVE-2025-10976
was published
Sep 26, 2025
glib-networking's OpenSSL backend fails to properly check the return value of memory allocation...
Low
Unreviewed
CVE-2025-60019
was published
Sep 25, 2025
ZohoCorp ManageEngine Endpoint Central was impacted by an improper privilege management issue in...
Low
Unreviewed
CVE-2025-5494
was published
Sep 25, 2025
Rapid7 Appspider Pro versions below 7.5.021, suffer from a broken access control vulnerability in...
Low
Unreviewed
CVE-2025-36857
was published
Sep 25, 2025
Ericsson
Indoor Connect 8855 contains a vulnerability where server-side security can be
bypassed...
Low
Unreviewed
CVE-2025-40838
was published
Sep 25, 2025
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the nvdisasm binary where a...
Low
Unreviewed
CVE-2025-23340
was published
Sep 24, 2025
NVIDIA CUDA Toolkit contains a vulnerability in cuobjdump, where an unprivileged user can cause a...
Low
Unreviewed
CVE-2025-23346
was published
Sep 24, 2025
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the nvdisasm binary where a...
Low
Unreviewed
CVE-2025-23248
was published
Sep 24, 2025
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the cuobjdump binary where a...
Low
Unreviewed
CVE-2025-23255
was published
Sep 24, 2025
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the nvdisasm binary where a...
Low
Unreviewed
CVE-2025-23271
was published
Sep 24, 2025
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvJPEG where a local...
Low
Unreviewed
CVE-2025-23273
was published
Sep 24, 2025
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm where a user may cause...
Low
Unreviewed
CVE-2025-23338
was published
Sep 24, 2025
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm where an attacker may...
Low
Unreviewed
CVE-2025-23308
was published
Sep 24, 2025
ProTip!
Advisories are also available from the
GraphQL API