GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,662
Maven
5,000+
npm
4,292
NuGet
760
pip
4,070
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
277,725 advisories
Filter by severity
A vulnerability was detected in Tenda CH22 1.0.0.1. Affected is the function formWrlExtraGet of...
High
Unreviewed
CVE-2025-13400
was published
Nov 19, 2025
Tenda AC21 V16.03.08.16 is vulnerable to Buffer Overflow via the deviceId parameter in /goform...
Moderate
Unreviewed
CVE-2025-65226
was published
Nov 20, 2025
In the Linux kernel, the following vulnerability has been resolved:
net: prevent a NULL deref in...
Moderate
Unreviewed
CVE-2025-38271
was published
Jul 10, 2025
In the Linux kernel, the following vulnerability has been resolved:
net: dsa: b53: do not enable...
Moderate
Unreviewed
CVE-2025-38272
was published
Jul 10, 2025
Tenda AC21 V16.03.08.16 is vulnerable to Buffer Overflow in: /goform/SetVirtualServerCfg via the...
Moderate
Unreviewed
CVE-2025-65220
was published
Nov 20, 2025
An issue was discovered in bridgetech probes VB220 IP Network Probe,VB120 Embedded IP + RF Probe,...
High
Unreviewed
CVE-2025-63205
was published
Nov 19, 2025
Windu CMS is vulnerable to Cross-Site Request Forgery in user editing functionality. Implemented...
Moderate
Unreviewed
CVE-2025-59110
was published
Nov 18, 2025
An issue was discovered in bridgetech VB288 Objective QoE Content Extractor, firmware version 5.6...
High
Unreviewed
CVE-2025-63208
was published
Nov 19, 2025
D-Link Router DIR-868L A1 FW106KRb01.bin has an unauthenticated remote code execution...
High
Unreviewed
CVE-2025-63932
was published
Nov 19, 2025
The R.V.R Elettronica TEX product (firmware TEXL-000400, Web GUI TLAN-000400) is vulnerable to...
Critical
Unreviewed
CVE-2025-63207
was published
Nov 19, 2025
Tenda AC21 V16.03.08.16 is vulnerable to Buffer Overflow via the rebootTime parameter of /goform...
Moderate
Unreviewed
CVE-2025-65222
was published
Nov 20, 2025
Tenda AC21 V16.03.08.16 is vulnerable to Buffer Overflow via the urls parameter of /goform...
Moderate
Unreviewed
CVE-2025-65223
was published
Nov 20, 2025
The Axel Technology StreamerMAX MK II devices (firmware versions 0.8.5 to 1.0.3) are vulnerable...
Critical
Unreviewed
CVE-2025-63223
was published
Nov 19, 2025
Tenda AC21 V16.03.08.16 is vulnerable to Buffer Overflow via the list parameter of /goform...
Moderate
Unreviewed
CVE-2025-65221
was published
Nov 20, 2025
A stored cross-site scripting (XSS) vulnerability is found in the text sharing feature of...
Moderate
Unreviewed
CVE-2025-51662
was published
Nov 19, 2025
An OS command injection vulnerability exists in MiniDVBLinux version 5.4 and earlier. The system...
Critical
Unreviewed
CVE-2025-25038
was published
Jun 20, 2025
In the Linux kernel, the following vulnerability has been resolved:
net: drv: netdevsim: don't...
High
Unreviewed
CVE-2025-38270
was published
Jul 10, 2025
In the Linux kernel, the following vulnerability has been resolved:
usb: typec: tcpm: move...
Moderate
Unreviewed
CVE-2025-38268
was published
Jul 10, 2025
The Sound4 FIRST web-based management interface is vulnerable to Remote Code Execution (RCE) via...
High
Unreviewed
CVE-2025-63220
was published
Nov 19, 2025
Windu CMS is vulnerable to Broken Access Control in user editing functionality. Malicious...
Moderate
Unreviewed
CVE-2025-59111
was published
Nov 18, 2025
An OS command injection vulnerability exists in the Edimax EW-7438RPn firmware version 1.13 and...
Critical
Unreviewed
CVE-2025-34024
was published
Jun 20, 2025
In the Linux kernel, the following vulnerability has been resolved:
btrfs: exit after state...
Moderate
Unreviewed
CVE-2025-38269
was published
Jul 10, 2025
An authentication bypass issue was discovered in Dasan Switch DS2924 web based interface,...
Critical
Unreviewed
CVE-2025-63206
was published
Nov 19, 2025
Cross Site Scripting vulnerability in Ilevia EVE X1 Server Firmware Version<= 4.7.18.0.eden:Logic...
Unknown
Unreviewed
CVE-2025-60737
was published
Nov 20, 2025
SOPlanning is vulnerable to Predictable Generation of Password Recovery Token. Due to weak...
High
Unreviewed
CVE-2025-62294
was published
Nov 20, 2025
ProTip!
Advisories are also available from the
GraphQL API