GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,318
Maven
5,000+
npm
3,950
NuGet
711
pip
3,729
Pub
12
RubyGems
920
Rust
965
Swift
38
Unreviewed advisories
All unreviewed
5,000+
11,995 advisories
Filter by severity
Improper Check for Unusual or Exceptional Conditions vulnerability in Phoenix SecureCore...
Low
Unreviewed
CVE-2024-12533
was published
May 13, 2025
An improper isolation or compartmentalization vulnerability [CWE-653] in FortiClientMac version 7...
Low
Unreviewed
CVE-2024-35281
was published
May 13, 2025
sudo-rs Allows Low Privilege Users to Discover the Existence of Files in Inaccessible Folders
Low
CVE-2025-46717
was published
for
sudo-rs
(Rust)
May 13, 2025
A vulnerability has been identified in Mendix OIDC SSO (Mendix 10 compatible) (All versions < V4...
Low
Unreviewed
CVE-2025-40571
was published
May 13, 2025
Cloud Foundry UAA release versions from v77.21.0 to v7.31.0 are vulnerable to a private key...
Low
Unreviewed
CVE-2025-22246
was published
May 13, 2025
The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) uses a deprecated java...
Low
Unreviewed
CVE-2025-30012
was published
May 13, 2025
A use-after-free issue was addressed with improved memory management. This issue is fixed in...
Low
Unreviewed
CVE-2025-31239
was published
May 13, 2025
An authenticated user attempting to change their password could do so without using the current...
Low
Unreviewed
CVE-2025-46748
was published
May 12, 2025
An authenticated administrator could modify the Created By username for a user account
Low
Unreviewed
CVE-2025-46744
was published
May 12, 2025
A vulnerability, which was classified as problematic, has been found in Freeebird Hotel 酒店管理系统...
Low
Unreviewed
CVE-2025-4542
was published
May 11, 2025
A vulnerability was found in yangzongzhuan RuoYi-Vue up to 3.8.9 and classified as problematic....
Low
Unreviewed
CVE-2025-4537
was published
May 11, 2025
libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause an spvxml-helpers.c...
Low
Unreviewed
CVE-2025-47816
was published
May 11, 2025
Apache Commons Configuration Uncontrolled Resource Consumption
Low
CVE-2025-46392
was published
for
commons-configuration:commons-configuration
(Maven)
May 9, 2025
trailer mishandles allocating with a size of zero
Low
CVE-2025-47737
was published
for
trailer
(Rust)
May 9, 2025
libsql-sqlite3-parser crash due to invalid UTF-8 input
Low
CVE-2025-47736
was published
for
libsql-sqlite3-parser
(Rust)
May 9, 2025
Rapid7 Corporate Website prior to May 2nd 2025, suffered from a URL Redirection to Untrusted Site...
Low
Unreviewed
CVE-2025-4132
was published
May 8, 2025
OpenStack Ironic fails to restrict paths used for file:// image URLs
Low
CVE-2025-44021
was published
for
ironic
(pip)
May 8, 2025
The TeleMessage archiving backend through 2025-05-05 holds cleartext copies of messages from TM...
Low
Unreviewed
CVE-2025-47729
was published
May 8, 2025
Trix vulnerable to Cross-site Scripting on copy & paste
Low
CVE-2025-46812
was published
for
trix
(npm)
May 8, 2025
scanner has a Public API without sufficient bounds checking
Low
GHSA-79m9-55jc-p6mw
was published
for
scanner
(Rust)
May 7, 2025
Use of implicit intent for sensitive communication in translation in Samsung Notes prior to...
Low
Unreviewed
CVE-2025-20977
was published
May 7, 2025
Out-of-bounds Read vulnerability in unpack_response (conn.c) in libplctag from 2.0 through 2.6.3...
Low
Unreviewed
CVE-2025-1400
was published
May 7, 2025
Out-of-bounds Read vulnerability in unpack_response (session.c) in libplctag from 2.0 through 2.6...
Low
Unreviewed
CVE-2025-1399
was published
May 7, 2025
Redox UEFI Safe API can cause heap-buffer-overflow
Low
GHSA-58xc-hpvq-8473
was published
for
redox_uefi_std
(Rust)
May 6, 2025
ProTip!
Advisories are also available from the
GraphQL API