GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,714
Erlang
34
GitHub Actions
28
Go
2,301
Maven
5,000+
npm
3,942
NuGet
711
pip
3,711
Pub
12
RubyGems
920
Rust
960
Swift
38
Unreviewed advisories
All unreviewed
5,000+
269 advisories
Filter by severity
Spring Security authorization bypass for method security annotations on private methods
Critical
CVE-2025-41232
was published
for
org.springframework.security:spring-security-aspects
(Maven)
May 21, 2025
Protection mechanism failure for some Edge Orchestrator software for Intel(R) Tiber™ Edge...
Low
Unreviewed
CVE-2025-21081
was published
May 13, 2025
A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-31244
was published
May 13, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.6,...
High
Unreviewed
CVE-2025-31224
was published
May 13, 2025
@misskey-dev/summaly Redirect Filter Bypass
Low
CVE-2025-46553
was published
for
@misskey-dev/summaly
(npm)
May 5, 2025
uTLS ServerHellos are accepted without checking TLS 1.3 downgrade canaries
Moderate
GHSA-pmc3-p9hx-jq96
was published
for
github.com/refraction-networking/utls
(Go)
Apr 23, 2025
Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to...
Moderate
Unreviewed
CVE-2025-27472
was published
Apr 8, 2025
Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a...
Moderate
Unreviewed
CVE-2025-26637
was published
Apr 8, 2025
An authenticated attacker can exploit an Server-Side Request Forgery (SSRF) vulnerability in...
High
Unreviewed
CVE-2025-21384
was published
Apr 1, 2025
Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to...
High
Unreviewed
CVE-2025-24061
was published
Mar 11, 2025
A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC IPC BX-21A ...
High
Unreviewed
CVE-2024-56181
was published
Mar 11, 2025
A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC Field PG M6 ...
High
Unreviewed
CVE-2024-56182
was published
Mar 11, 2025
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923...
Critical
Unreviewed
CVE-2025-27665
was published
Mar 5, 2025
The WP Ghost (Hide My WP Ghost) – Security & Firewall plugin for WordPress is vulnerable to Login...
Moderate
Unreviewed
CVE-2024-13794
was published
Feb 12, 2025
7-Zip Mark-of-the-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypass...
High
Unreviewed
CVE-2025-0411
was published
Jan 25, 2025
A vulnerability has been found in Union Bank of India Vyom 8.0.34 on Android and classified as...
Low
Unreviewed
CVE-2025-0575
was published
Jan 20, 2025
Microsoft Office Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2025-21346
was published
Jan 14, 2025
Secure Boot Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2025-21211
was published
Jan 14, 2025
Denial of Service in Keycloak Server via Security Headers
Moderate
CVE-2024-11734
was published
for
org.keycloak:keycloak-quarkus-server
(Maven)
Jan 13, 2025
Access control vulnerability in the identity authentication module
Impact: Successful...
High
Unreviewed
CVE-2024-56439
was published
Jan 8, 2025
Jinja has a sandbox breakout through indirect reference to format method
Moderate
CVE-2024-56326
was published
for
jinja2
(pip)
Dec 23, 2024
WinZip Mark-of-the-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypass...
High
Unreviewed
CVE-2024-8811
was published
Nov 22, 2024
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could...
Moderate
Unreviewed
CVE-2021-1494
was published
Nov 15, 2024
Protection mechanism failure in the SPP for some Intel(R) Xeon(R) processor family (E-Core) may...
Low
Unreviewed
CVE-2024-38660
was published
Nov 13, 2024
ProTip!
Advisories are also available from the
GraphQL API