GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,714
Erlang
34
GitHub Actions
28
Go
2,300
Maven
5,000+
npm
3,942
NuGet
708
pip
3,711
Pub
12
RubyGems
920
Rust
960
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
256,750 advisories
Filter by severity
Ecovacs Home Android and iOS Mobile Applications up to version 3.3.0 contained embedded access...
Moderate
Unreviewed
CVE-2025-2394
was published
May 23, 2025
PrinterShare Android application allows the capture of Gmail authentication tokens that can be...
Unknown
Unreviewed
CVE-2025-5098
was published
May 23, 2025
An Out of Bounds Write occurs when the native library attempts PDF rendering, which can be...
Unknown
Unreviewed
CVE-2025-5099
was published
May 23, 2025
A double-free condition occurs during the cleanup of temporary image files, which can be...
Unknown
Unreviewed
CVE-2025-5100
was published
May 23, 2025
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Unknown
Unreviewed
CVE-2025-4562
was published
May 23, 2025
Improper link resolution before file access ('link following') in Microsoft Edge (Chromium-based)...
High
Unreviewed
CVE-2025-47181
was published
May 23, 2025
When a notification relating to low battery appears for a user with whom the device has been...
Moderate
Unreviewed
CVE-2025-4975
was published
May 23, 2025
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Unknown
Unreviewed
CVE-2025-4642
was published
May 23, 2025
Actors can use a maliciously crafted JavaScript object notation (JSON) web token (JWT) to perform...
Moderate
Unreviewed
CVE-2025-4692
was published
May 23, 2025
Lantronix Device installer is vulnerable to XML external entity (XXE) attacks in configuration...
Moderate
Unreviewed
CVE-2025-4338
was published
May 23, 2025
Insecure permissions in measure-cold-start v1.4.1 allows attackers to escalate privileges and...
High
Unreviewed
CVE-2025-45471
was published
May 22, 2025
A vulnerability in SeedDMS 6.0.32 allows an attacker with admin privileges to execute arbitrary...
High
Unreviewed
CVE-2025-45752
was published
May 21, 2025
Use of Hard-coded Credentials vulnerability in ABB ASPECT-Enterprise, ABB NEXUS Series, ABB...
Critical
Unreviewed
CVE-2024-51547
was published
Feb 6, 2025
The Slide Anything WordPress plugin before 2.3.47 does not properly sanitize or escape the slide...
Moderate
Unreviewed
CVE-2022-2413
was published
Jan 16, 2024
This issue was addressed with improved checks. This issue is fixed in tvOS 15.5, watchOS 8.6, iOS...
High
Unreviewed
CVE-2022-32790
was published
Sep 25, 2022
A race condition issue discovered in Samsung Mobile Processor Exynos 9820, 980, 1080, 2100, 2200,...
Moderate
Unreviewed
CVE-2023-45864
was published
Dec 13, 2023
The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.5...
Moderate
Unreviewed
CVE-2022-32818
was published
Sep 25, 2022
An integer underflow in WhatsApp could have caused remote code execution when receiving a crafted...
High
Unreviewed
CVE-2022-27492
was published
Sep 25, 2022
The calling logic for WhatsApp for Android prior to v2.21.23, WhatsApp Business for Android prior...
Critical
Unreviewed
CVE-2021-24042
was published
Jan 5, 2022
Medtronic MyCareLink Smart 25000 all versions are vulnerable when an attacker who gains auth runs...
Critical
Unreviewed
CVE-2020-25187
was published
May 24, 2022
Medtronic Valleylab Exchange Client version 3.4 and below, Valleylab FT10 Energy Platform ...
Moderate
Unreviewed
CVE-2019-13543
was published
May 24, 2022
In Medtronic MinMed 508 and Medtronic Minimed Paradigm Insulin Pumps, Versions, MiniMed 508 pump ...
High
Unreviewed
CVE-2019-10964
was published
May 24, 2022
Medtronic MyCareLink Smart 25000 all versions contain an authentication protocol vuln where the...
High
Unreviewed
CVE-2020-25183
was published
May 24, 2022
In Medtronic Valleylab FT10 Energy Platform (VLFT10GEN) version 2.1.0 and lower and version 2.0.3...
Low
Unreviewed
CVE-2019-13535
was published
May 24, 2022
The screen lock module has a Stack-based Buffer Overflow vulnerability.Successful exploitation of...
Critical
Unreviewed
CVE-2021-39990
was published
Jan 4, 2022
ProTip!
Advisories are also available from the
GraphQL API