GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,750
Erlang
35
GitHub Actions
29
Go
2,323
Maven
5,000+
npm
3,956
NuGet
712
pip
3,739
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
493 advisories
Filter by severity
Deserialization of Untrusted Data vulnerability in Potenzaglobalsolutions CiyaShop allows Object...
Critical
Unreviewed
CVE-2025-39349
was published
May 19, 2025
Deserialization of Untrusted Data vulnerability in ThemeGoods Grand Restaurant WordPress allows...
Critical
Unreviewed
CVE-2025-39348
was published
May 19, 2025
Deserialization of Untrusted Data vulnerability in ThemeGoods Grand Conference allows Object...
Critical
Unreviewed
CVE-2025-39354
was published
May 19, 2025
Deserialization of Untrusted Data vulnerability in Chimpstudio FoodBakery allows Object Injection...
Critical
Unreviewed
CVE-2025-32927
was published
May 19, 2025
Deserialization of Untrusted Data vulnerability in Elbisnero WordPress Events Calendar...
Critical
Unreviewed
CVE-2025-47581
was published
May 19, 2025
Deserialization of Untrusted Data vulnerability in themegusta Smart Sections Theme Builder -...
Critical
Unreviewed
CVE-2025-39410
was published
May 19, 2025
Deserialization of Untrusted Data vulnerability in QuantumCloud WPBot Pro Wordpress Chatbot...
Critical
Unreviewed
CVE-2025-47582
was published
May 19, 2025
SAP NetWeaver Visual Composer Metadata Uploader is vulnerable when a privileged user can upload...
Critical
Unreviewed
CVE-2025-42999
was published
May 13, 2025
The PGS Core plugin for WordPress is vulnerable to PHP Object Injection in all versions up to,...
Critical
Unreviewed
CVE-2025-0855
was published
May 7, 2025
Deserialization of Untrusted Data vulnerability in Mahmudul Hasan Arif FluentBoards allows Object...
Critical
Unreviewed
CVE-2025-39551
was published
Apr 17, 2025
Deserialization of Untrusted Data vulnerability in Shahjahan Jewel FluentCommunity allows Object...
Critical
Unreviewed
CVE-2025-39550
was published
Apr 17, 2025
Deserialization of Untrusted Data vulnerability in bdthemes Ultimate Store Kit Elementor Addons...
Critical
Unreviewed
CVE-2025-39588
was published
Apr 17, 2025
Deserialization of Untrusted Data vulnerability in wpWax HelpGent allows Object Injection. This...
Critical
Unreviewed
CVE-2025-32658
was published
Apr 17, 2025
Deserialization of Untrusted Data vulnerability in Climax Themes Kata Plus allows Object...
Critical
Unreviewed
CVE-2025-32572
was published
Apr 17, 2025
Deserialization of Untrusted Data vulnerability in ssvadim SS Quiz allows Object Injection. This...
Critical
Unreviewed
CVE-2025-27287
was published
Apr 17, 2025
Deserialization of Untrusted Data vulnerability in saoshyant1994 Saoshyant Slider allows Object...
Critical
Unreviewed
CVE-2025-27286
was published
Apr 17, 2025
Deserialization of Untrusted Data vulnerability in NotFound GNUCommerce allows Object Injection....
Critical
Unreviewed
CVE-2025-30985
was published
Apr 15, 2025
The Everest Forms – Contact Form, Quiz, Survey, Newsletter & Payment Form Builder for WordPress...
Critical
Unreviewed
CVE-2025-3439
was published
Apr 11, 2025
Deserialization of Untrusted Data vulnerability in magepeopleteam WpBookingly allows Object...
Critical
Unreviewed
CVE-2025-32607
was published
Apr 11, 2025
Deserialization of Untrusted Data vulnerability in RealMag777 TableOn – WordPress Posts Table...
Critical
Unreviewed
CVE-2025-32569
was published
Apr 11, 2025
Deserialization of Untrusted Data vulnerability in empik EmpikPlace for Woocommerce allows Object...
Critical
Unreviewed
CVE-2025-32568
was published
Apr 11, 2025
ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a Deserialization of...
Critical
Unreviewed
CVE-2025-24447
was published
Apr 8, 2025
A vulnerability in the sendMailFromRemoteSource method in Emails.php as used in Bitdefender...
Critical
Unreviewed
CVE-2025-2244
was published
Apr 4, 2025
Deserialization of Untrusted Data vulnerability in Sabuj Kundu CBX Poll allows Object Injection....
Critical
Unreviewed
CVE-2025-31612
was published
Apr 1, 2025
Deserialization of Untrusted Data vulnerability in sunshinephotocart Sunshine Photo Cart allows...
Critical
Unreviewed
CVE-2025-31084
was published
Apr 1, 2025
ProTip!
Advisories are also available from the
GraphQL API