GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,819
Erlang
36
GitHub Actions
32
Go
2,410
Maven
5,000+
npm
4,046
NuGet
723
pip
3,842
Pub
12
RubyGems
933
Rust
1,003
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,833 advisories
Filter by severity
The modelscope/ms-swift library thru 2.6.1 is vulnerable to arbitrary code execution through...
Critical
Unreviewed
CVE-2025-50472
was published
Aug 1, 2025
MS SWIFT Deserialization RCE Vulnerability
Moderate
GHSA-r54c-2xmf-2cf3
was published
for
ms-swift
(pip)
Jul 31, 2025
MS SWIFT Remote Code Execution via unsafe PyYAML deserialization
Low
CVE-2025-50460
was published
for
ms-swift
(pip)
Jul 31, 2025
CVE-2025-49083 is a vulnerability in the management console
of Absolute Secure Access after...
High
Unreviewed
CVE-2025-49083
was published
Jul 31, 2025
Deserialization of Untrusted Data in Samsung DMS(Data Management Server) allows attackers to...
High
Unreviewed
CVE-2025-53078
was published
Jul 29, 2025
A vulnerability was found in yanyutao0402 ChanCMS up to 3.1.2. It has been declared as critical....
Moderate
Unreviewed
CVE-2025-8227
was published
Jul 27, 2025
SolarWinds Observability Self-Hosted is susceptible to Deserialization of Untrusted Data Local...
High
Unreviewed
CVE-2025-26397
was published
Jul 25, 2025
Medtronic MyCareLink Patient Monitor has an internal service that deserializes data, which allows...
Moderate
Unreviewed
CVE-2025-4393
was published
Jul 25, 2025
A potential security vulnerability has been identified in the Poly Clariti Manager for versions...
Low
Unreviewed
CVE-2025-43489
was published
Jul 23, 2025
WinMatrix3 developed by Simopro Technology has an Insecure Deserialization vulnerability,...
Critical
Unreviewed
CVE-2025-7916
was published
Jul 21, 2025
Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an...
Critical
Unreviewed
CVE-2025-53770
was published
Jul 20, 2025
The Integration for Pipedrive and Contact Form 7, WPForms, Elementor, Ninja Forms plugin for...
Critical
Unreviewed
CVE-2025-7696
was published
Jul 19, 2025
The Integration for Google Sheets and Contact Form 7, WPForms, Elementor, Ninja Forms plugin for...
Critical
Unreviewed
CVE-2025-7697
was published
Jul 19, 2025
A local privilege escalation vulnerability in Sophos Intercept X for Windows with Central Device...
High
Unreviewed
CVE-2025-7433
was published
Jul 17, 2025
Deserialization of Untrusted Data vulnerability in designthemes Visual Art | Gallery WordPress...
High
Unreviewed
CVE-2025-31422
was published
Jul 16, 2025
Deserialization of Untrusted Data vulnerability in Codexpert, Inc CoSchool LMS allows Object...
Critical
Unreviewed
CVE-2025-30973
was published
Jul 16, 2025
Deserialization of Untrusted Data vulnerability in NooTheme Yogi allows Object Injection. This...
High
Unreviewed
CVE-2025-24779
was published
Jul 16, 2025
Deserialization of Untrusted Data vulnerability in awethemes Hillter allows Object Injection....
High
Unreviewed
CVE-2025-24777
was published
Jul 16, 2025
Deserialization of Untrusted Data vulnerability in Md Yeasin Ul Haider URL Shortener allows...
Critical
Unreviewed
CVE-2025-28961
was published
Jul 16, 2025
Deserialization of Untrusted Data vulnerability in Guru Team Site Chat on Telegram allows Object...
Critical
Unreviewed
CVE-2025-30949
was published
Jul 16, 2025
Deserialization of Untrusted Data vulnerability in jetmonsters JetFormBuilder allows Object...
High
Unreviewed
CVE-2025-53990
was published
Jul 16, 2025
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE ...
Moderate
Unreviewed
CVE-2025-30761
was published
Jul 15, 2025
The Friends plugin for WordPress is vulnerable to PHP Object Injection in version 3.5.1 via...
High
Unreviewed
CVE-2025-7504
was published
Jul 12, 2025
The communication protocol used between client and server had a flaw that could lead to an...
Critical
Unreviewed
CVE-2025-30023
was published
Jul 11, 2025
The communication protocol used between the
server process and the service control had a flaw...
Moderate
Unreviewed
CVE-2025-30025
was published
Jul 11, 2025
ProTip!
Advisories are also available from the
GraphQL API