GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,748
Erlang
35
GitHub Actions
29
Go
2,321
Maven
5,000+
npm
3,955
NuGet
712
pip
3,736
Pub
12
RubyGems
921
Rust
972
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,598 advisories
Filter by severity
Web sessions in the web interface of Palo Alto Networks Prisma® Cloud Compute Edition do not...
Low
Unreviewed
CVE-2025-0138
was published
May 14, 2025
Uncontrolled resource consumption for some Edge Orchestrator software for Intel(R) Tiber™ Edge...
Low
Unreviewed
CVE-2025-20616
was published
May 13, 2025
Protection mechanism failure for some Edge Orchestrator software for Intel(R) Tiber™ Edge...
Low
Unreviewed
CVE-2025-21081
was published
May 13, 2025
Improper access control for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may...
Low
Unreviewed
CVE-2025-20076
was published
May 13, 2025
Exposure of sensitive information to an unauthorized actor for some Edge Orchestrator software...
Low
Unreviewed
CVE-2025-20030
was published
May 13, 2025
An improper isolation or compartmentalization vulnerability [CWE-653] in FortiClientMac version 7...
Low
Unreviewed
CVE-2024-35281
was published
May 13, 2025
Improper Check for Unusual or Exceptional Conditions vulnerability in Phoenix SecureCore...
Low
Unreviewed
CVE-2024-12533
was published
May 13, 2025
A vulnerability has been identified in Mendix OIDC SSO (Mendix 10 compatible) (All versions < V4...
Low
Unreviewed
CVE-2025-40571
was published
May 13, 2025
Cloud Foundry UAA release versions from v77.21.0 to v7.31.0 are vulnerable to a private key...
Low
Unreviewed
CVE-2025-22246
was published
May 13, 2025
The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) uses a deprecated java...
Low
Unreviewed
CVE-2025-30012
was published
May 13, 2025
A use-after-free issue was addressed with improved memory management. This issue is fixed in...
Low
Unreviewed
CVE-2025-31239
was published
May 13, 2025
An authenticated user attempting to change their password could do so without using the current...
Low
Unreviewed
CVE-2025-46748
was published
May 12, 2025
An authenticated administrator could modify the Created By username for a user account
Low
Unreviewed
CVE-2025-46744
was published
May 12, 2025
A vulnerability, which was classified as problematic, has been found in Freeebird Hotel 酒店管理系统...
Low
Unreviewed
CVE-2025-4542
was published
May 11, 2025
A vulnerability was found in yangzongzhuan RuoYi-Vue up to 3.8.9 and classified as problematic....
Low
Unreviewed
CVE-2025-4537
was published
May 11, 2025
libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause an spvxml-helpers.c...
Low
Unreviewed
CVE-2025-47816
was published
May 11, 2025
Rapid7 Corporate Website prior to May 2nd 2025, suffered from a URL Redirection to Untrusted Site...
Low
Unreviewed
CVE-2025-4132
was published
May 8, 2025
The TeleMessage archiving backend through 2025-05-05 holds cleartext copies of messages from TM...
Low
Unreviewed
CVE-2025-47729
was published
May 8, 2025
Use of implicit intent for sensitive communication in translation in Samsung Notes prior to...
Low
Unreviewed
CVE-2025-20977
was published
May 7, 2025
Out-of-bounds Read vulnerability in unpack_response (conn.c) in libplctag from 2.0 through 2.6.3...
Low
Unreviewed
CVE-2025-1400
was published
May 7, 2025
Out-of-bounds Read vulnerability in unpack_response (session.c) in libplctag from 2.0 through 2.6...
Low
Unreviewed
CVE-2025-1399
was published
May 7, 2025
Dell Storage Center - Dell Storage Manager, version(s) 21.0.20, contain(s) an Improper...
Low
Unreviewed
CVE-2025-23379
was published
May 6, 2025
Dell Storage Center - Dell Storage Manager, version(s) 20.0.21, contain(s) an Improper Limitation...
Low
Unreviewed
CVE-2025-22479
was published
May 6, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in pre...
Low
Unreviewed
CVE-2025-27132
was published
May 6, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer...
Low
Unreviewed
CVE-2025-27248
was published
May 6, 2025
ProTip!
Advisories are also available from the
GraphQL API