GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,753
Erlang
35
GitHub Actions
29
Go
2,326
Maven
5,000+
npm
3,956
NuGet
712
pip
3,740
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,609 advisories
Filter by severity
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer...
Low
Unreviewed
CVE-2025-25217
was published
Jun 8, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through...
Low
Unreviewed
CVE-2025-26693
was published
Jun 8, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through improper input.
Low
Unreviewed
CVE-2025-27242
was published
Jun 8, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through...
Low
Unreviewed
CVE-2025-27563
was published
Jun 8, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause apps crash through type...
Low
Unreviewed
CVE-2025-20063
was published
Jun 8, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause apps crash through type...
Low
Unreviewed
CVE-2025-21082
was published
Jun 8, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through out-of-bounds...
Low
Unreviewed
CVE-2025-23235
was published
Jun 8, 2025
A cross-site scripting (XSS) vulnerability has been reported to affect License Center. If...
Low
Unreviewed
CVE-2024-50406
was published
Jun 6, 2025
A use of externally-controlled format string vulnerability has been reported to affect Qsync...
Low
Unreviewed
CVE-2025-22482
was published
Jun 6, 2025
An out-of-bounds read vulnerability has been reported to affect File Station 5. If a local ...
Low
Unreviewed
CVE-2025-29871
was published
Jun 6, 2025
A command injection vulnerability has been reported to affect QHora. If an attacker gains local...
Low
Unreviewed
CVE-2024-13087
was published
Jun 6, 2025
A vulnerability was found in Signal App 7.41.4 on Android. It has been declared as problematic....
Low
Unreviewed
CVE-2025-5715
was published
Jun 6, 2025
A vulnerability was found in Radare2 5.9.9. It has been classified as problematic. Affected is...
Low
Unreviewed
CVE-2025-5648
was published
Jun 5, 2025
A vulnerability has been found in Radare2 5.9.9 and classified as problematic. This vulnerability...
Low
Unreviewed
CVE-2025-5646
was published
Jun 5, 2025
A vulnerability was found in Radare2 5.9.9 and classified as problematic. This issue affects the...
Low
Unreviewed
CVE-2025-5647
was published
Jun 5, 2025
A vulnerability classified as problematic has been found in Radare2 5.9.9. Affected is the...
Low
Unreviewed
CVE-2025-5642
was published
Jun 5, 2025
A vulnerability, which was classified as problematic, has been found in Radare2 5.9.9. Affected...
Low
Unreviewed
CVE-2025-5644
was published
Jun 5, 2025
A vulnerability, which was classified as problematic, was found in Radare2 5.9.9. This affects...
Low
Unreviewed
CVE-2025-5645
was published
Jun 5, 2025
A vulnerability was found in Radare2 5.9.9. It has been rated as problematic. This issue affects...
Low
Unreviewed
CVE-2025-5641
was published
Jun 5, 2025
A vulnerability classified as problematic was found in Radare2 5.9.9. Affected by this...
Low
Unreviewed
CVE-2025-5643
was published
Jun 5, 2025
A vulnerability in the web-based management interface of Cisco Unified CCX could allow an...
Low
Unreviewed
CVE-2025-20277
was published
Jun 4, 2025
A vulnerability in the web-based management interface of Cisco Unified CCX could allow an...
Low
Unreviewed
CVE-2025-20276
was published
Jun 4, 2025
setDeferredReply in networking.c in Valkey through 8.1.1 has an integer underflow for prev->size ...
Low
Unreviewed
CVE-2025-49112
was published
Jun 2, 2025
The TeleMessage service through 2025-05-05 stores certain cleartext information in memory, even...
Low
Unreviewed
CVE-2025-48930
was published
May 28, 2025
The TeleMessage service through 2025-05-05 relies on MD5 for password hashing, which opens up...
Low
Unreviewed
CVE-2025-48931
was published
May 28, 2025
ProTip!
Advisories are also available from the
GraphQL API