GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,683
Erlang
34
GitHub Actions
26
Go
2,274
Maven
5,000+
npm
3,928
NuGet
706
pip
3,693
Pub
12
RubyGems
916
Rust
948
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
254,464 advisories
Filter by severity
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Crestron Automate VX...
Moderate
Unreviewed
CVE-2025-47418
was published
May 6, 2025
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Crestron Automate VX...
Moderate
Unreviewed
CVE-2025-47417
was published
May 6, 2025
Incorrect JSON input stringification in Google's Tensorflow serving versions up to 2.18.0 allows...
High
Unreviewed
CVE-2025-0649
was published
May 6, 2025
Cleartext Transmission of Sensitive Information vulnerability in Crestron Automate VX allows...
Critical
Unreviewed
CVE-2025-47419
was published
May 6, 2025
SeaCMS v13.3 was discovered to contain a SQL injection vulnerability via the component...
Unknown
Unreviewed
CVE-2025-44073
was published
May 6, 2025
Libxmp through 4.6.2 has a stack-based buffer overflow in depack_pha in loaders/prowizard/pha.c...
Moderate
Unreviewed
CVE-2025-47256
was published
May 6, 2025
A vulnerability was found in Quarkus in the quarkus-security-webauthn module. The Quarkus...
Critical
Unreviewed
CVE-2024-12225
was published
May 6, 2025
There is a stack overflow vulnerability in Tenda RX3 V1.0br_V16.03.13.11 In the...
Unknown
Unreviewed
CVE-2025-44899
was published
May 6, 2025
Improper certificate validation in Logstash's TCP output could lead to a man-in-the-middle (MitM)...
Moderate
Unreviewed
CVE-2025-37730
was published
May 6, 2025
In Tenda RX3 V1.0br_V16.03.13.11 in the GetParentControlInfo function of the web url /goform...
Moderate
Unreviewed
CVE-2025-44900
was published
May 6, 2025
Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper...
Moderate
Unreviewed
CVE-2025-22476
was published
May 6, 2025
Real Estate Management System v1.0 was discovered to contain a SQL injection vulnerability via...
Unknown
Unreviewed
CVE-2023-33770
was published
May 6, 2025
A Prototype pollution vulnerability in Kibana leads to arbitrary code execution via crafted HTTP...
Critical
Unreviewed
CVE-2025-25014
was published
May 6, 2025
In Optigo Networks ONS NC600 versions 4.2.1-084 through 4.7.2-330, an attacker could connect with...
Critical
Unreviewed
CVE-2025-4041
was published
May 6, 2025
MrDoc v0.95 and before is vulnerable to Server-Side Request Forgery (SSRF) in the validate_url...
Moderate
Unreviewed
CVE-2025-45250
was published
May 6, 2025
An issue in the component /internals/functions of R-fx Networks Linux Malware Detect v1.6.5...
Moderate
Unreviewed
CVE-2025-26262
was published
May 6, 2025
Dell Storage Center - Dell Storage Manager, version(s) 20.0.21, contain(s) an Improper Limitation...
Low
Unreviewed
CVE-2025-22479
was published
May 6, 2025
Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper...
High
Unreviewed
CVE-2025-22478
was published
May 6, 2025
Dell Storage Center - Dell Storage Manager, version(s) 21.0.20, contain(s) an Improper...
Low
Unreviewed
CVE-2025-23379
was published
May 6, 2025
A vulnerability, which was classified as critical, was found in Tenda AC8 16.03.34.06. Affected...
High
Unreviewed
CVE-2025-4368
was published
May 6, 2025
The MQTT add-on of PcVue fails to verify that a remote device’s certificate has not already...
Moderate
Unreviewed
CVE-2025-4384
was published
May 6, 2025
A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management...
Moderate
Unreviewed
CVE-2025-4363
was published
May 6, 2025
Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the...
Unknown
Unreviewed
CVE-2025-45491
was published
May 6, 2025
Netgear EX8000 V1.0.0.126 is vulnerable to Command Injection via the Iface parameter in the...
Moderate
Unreviewed
CVE-2025-45492
was published
May 6, 2025
Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the...
Moderate
Unreviewed
CVE-2025-45489
was published
May 6, 2025
ProTip!
Advisories are also available from the
GraphQL API