GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,706
Erlang
34
GitHub Actions
28
Go
2,292
Maven
5,000+
npm
3,942
NuGet
708
pip
3,711
Pub
12
RubyGems
919
Rust
959
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,566 advisories
Filter by severity
Cloud Foundry UAA release versions from v77.21.0 to v7.31.0 are vulnerable to a private key...
Low
Unreviewed
CVE-2025-22246
was published
May 13, 2025
The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) uses a deprecated java...
Low
Unreviewed
CVE-2025-30012
was published
May 13, 2025
A use-after-free issue was addressed with improved memory management. This issue is fixed in...
Low
Unreviewed
CVE-2025-31239
was published
May 13, 2025
An authenticated user attempting to change their password could do so without using the current...
Low
Unreviewed
CVE-2025-46748
was published
May 12, 2025
An authenticated administrator could modify the Created By username for a user account
Low
Unreviewed
CVE-2025-46744
was published
May 12, 2025
A vulnerability, which was classified as problematic, has been found in Freeebird Hotel 酒店管理系统...
Low
Unreviewed
CVE-2025-4542
was published
May 11, 2025
A vulnerability was found in yangzongzhuan RuoYi-Vue up to 3.8.9 and classified as problematic....
Low
Unreviewed
CVE-2025-4537
was published
May 11, 2025
libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause an spvxml-helpers.c...
Low
Unreviewed
CVE-2025-47816
was published
May 11, 2025
Rapid7 Corporate Website prior to May 2nd 2025, suffered from a URL Redirection to Untrusted Site...
Low
Unreviewed
CVE-2025-4132
was published
May 8, 2025
The TeleMessage archiving backend through 2025-05-05 holds cleartext copies of messages from TM...
Low
Unreviewed
CVE-2025-47729
was published
May 8, 2025
Use of implicit intent for sensitive communication in translation in Samsung Notes prior to...
Low
Unreviewed
CVE-2025-20977
was published
May 7, 2025
Out-of-bounds Read vulnerability in unpack_response (session.c) in libplctag from 2.0 through 2.6...
Low
Unreviewed
CVE-2025-1399
was published
May 7, 2025
Out-of-bounds Read vulnerability in unpack_response (conn.c) in libplctag from 2.0 through 2.6.3...
Low
Unreviewed
CVE-2025-1400
was published
May 7, 2025
Dell Storage Center - Dell Storage Manager, version(s) 20.0.21, contain(s) an Improper Limitation...
Low
Unreviewed
CVE-2025-22479
was published
May 6, 2025
Dell Storage Center - Dell Storage Manager, version(s) 21.0.20, contain(s) an Improper...
Low
Unreviewed
CVE-2025-23379
was published
May 6, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in pre...
Low
Unreviewed
CVE-2025-27132
was published
May 6, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer...
Low
Unreviewed
CVE-2025-27241
was published
May 6, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer...
Low
Unreviewed
CVE-2025-25218
was published
May 6, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release...
Low
Unreviewed
CVE-2025-22886
was published
May 6, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through buffer overflow.
Low
Unreviewed
CVE-2025-25052
was published
May 6, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer...
Low
Unreviewed
CVE-2025-27248
was published
May 6, 2025
Vulnerability in Best Practical Solutions, LLC's Request Tracker v5.0.7, where the Triple DES ...
Low
Unreviewed
CVE-2025-2545
was published
May 5, 2025
The Newsletter WordPress plugin before 8.7.1 does not sanitise and escape some of its settings,...
Low
Unreviewed
CVE-2025-3583
was published
May 5, 2025
libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a denial of service ...
Low
Unreviewed
CVE-2025-47229
was published
May 3, 2025
A vulnerability was found in gorhill uBlock Origin up to 1.63.3b16. It has been classified as...
Low
Unreviewed
CVE-2025-4215
was published
May 2, 2025
ProTip!
Advisories are also available from the
GraphQL API