GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,951
Erlang
39
GitHub Actions
38
Go
2,607
Maven
5,000+
npm
4,251
NuGet
757
pip
4,017
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
299,661 advisories
Filter by severity
Multiple stored cross-site scripting (XSS) vulnerabilities in Audi UTR 2.0 Universal Traffic...
Moderate
Unreviewed
CVE-2025-45585
was published
Sep 12, 2025
Vulnerability in SK Hynix DDR5 on x86 allows a local attacker to trigger Rowhammer bit flips...
High
Unreviewed
CVE-2025-6202
was published
Sep 15, 2025
Incorrect access control in the FTP protocol of Audi UTR 2.0 Universal Traffic Recorder 2.0...
Critical
Unreviewed
CVE-2025-45583
was published
Sep 12, 2025
Incorrect access control in the web service of Audi UTR 2.0 Universal Traffic Recorder 2.0 allows...
High
Unreviewed
CVE-2025-45584
was published
Sep 12, 2025
A stack overflow in the FTP service of Audi UTR 2.0 Universal Traffic Recorder 2.0 allows...
High
Unreviewed
CVE-2025-45587
was published
Sep 12, 2025
An issue in Audi UTR 2.0 Universal Traffic Recorder 2.0 allows attackers to arbitrarily overwrite...
High
Unreviewed
CVE-2025-45586
was published
Sep 12, 2025
TOTOLINK X6000R V9.4.0cu.1360_B20241207 was found to contain a command injection vulnerability in...
Critical
Unreviewed
CVE-2025-52053
was published
Sep 15, 2025
A vulnerability was found in BoyunCMS up to 1.4.20. It has been classified as critical. This...
Moderate
Unreviewed
CVE-2025-7101
was published
Jul 7, 2025
A vulnerability was found in BoyunCMS up to 1.4.20. It has been declared as critical. This...
Moderate
Unreviewed
CVE-2025-7102
was published
Jul 7, 2025
A vulnerability has been found in BoyunCMS up to 1.21 on PHP7 and classified as critical....
Moderate
Unreviewed
CVE-2025-7099
was published
Jul 7, 2025
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: limit repeated...
Unknown
Unreviewed
CVE-2025-38501
was published
Aug 16, 2025
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Critical
Unreviewed
CVE-2024-30080
was published
Jun 11, 2024
A Denial of Service in CLFS.sys in Microsoft Windows 10, Windows 11, Windows Server 2016, Windows...
Moderate
Unreviewed
CVE-2024-6768
was published
Aug 12, 2024
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was...
Unknown
Unreviewed
CVE-2025-55777
was published
Sep 15, 2025
IBM OpenPages 9.0 and 9.1 allows web page cache to be stored locally which can be read by another...
Moderate
Unreviewed
CVE-2025-36082
was published
Sep 15, 2025
Multiple Cross Site Scripting (XSS) vulnerabilities in input fields in Explorance Blue 8.1.2...
Moderate
Unreviewed
CVE-2025-52344
was published
Sep 15, 2025
The MongoDB Windows installation MSI may leave ACLs unset on custom installation directories...
High
Unreviewed
CVE-2025-10491
was published
Sep 15, 2025
Relative path traversal vulnerability due to improper input validation in Digilent WaveForms that...
High
Unreviewed
CVE-2025-10203
was published
Sep 15, 2025
A vulnerability was detected in ZKEACMS 4.3. Impacted is the function Proxy of the file src...
Moderate
Unreviewed
CVE-2025-10471
was published
Sep 15, 2025
A null pointer dereference vulnerability was discovered in SumatraPDF 3.5.2 during the processing...
High
Unreviewed
CVE-2025-57248
was published
Sep 15, 2025
Improper link resolution before file access ('link following') in Windows Update Service allows...
High
Unreviewed
CVE-2025-48799
was published
Jul 8, 2025
Heap-based buffer overflow in Windows SPNEGO Extended Negotiation allows an unauthorized attacker...
Critical
Unreviewed
CVE-2025-47981
was published
Jul 8, 2025
FUSE-Rust: Uninitalized memory read and leak caused by fuser crate
High
GHSA-cvmj-47v9-35m9
was published
for
fuser
(Rust)
Sep 15, 2025
ProTip!
Advisories are also available from the
GraphQL API