GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,757
Erlang
35
GitHub Actions
29
Go
2,327
Maven
5,000+
npm
3,960
NuGet
712
pip
3,741
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
808 advisories
Filter by severity
Deserialization of Untrusted Data vulnerability in PickPlugins Accordion allows Object Injection....
High
Unreviewed
CVE-2025-32143
was published
Apr 11, 2025
Deserialization of untrusted data issue exists in BizRobo! all versions. If this vulnerability is...
High
Unreviewed
CVE-2025-31932
was published
Apr 11, 2025
Deserialization of Untrusted Data vulnerability in turitop TuriTop Booking System allows Object...
High
Unreviewed
CVE-2025-32571
was published
Apr 17, 2025
Deserialization of Untrusted Data vulnerability in PickPlugins Question Answer allows Object...
High
Unreviewed
CVE-2025-32647
was published
Apr 17, 2025
Deserialization of Untrusted Data vulnerability in Stylemix uListing allows Object Injection....
High
Unreviewed
CVE-2025-32662
was published
Apr 17, 2025
Deserialization of Untrusted Data vulnerability in WP Speedo Team Members allows Object Injection...
High
Unreviewed
CVE-2025-32686
was published
Apr 17, 2025
Deserialization of Untrusted Data vulnerability in bestwebsoft Rating by BestWebSoft allows...
High
Unreviewed
CVE-2025-39527
was published
Apr 17, 2025
Infinite loop condition in Amazon.IonDotnet
High
CVE-2025-3857
was published
for
Amazon.IonDotnet
(NuGet)
Apr 21, 2025
NVIDIA NeMo Framework contains a vulnerability where a user could cause a deserialization of...
High
Unreviewed
CVE-2025-23249
was published
Apr 22, 2025
Deserialization of Untrusted Data vulnerability in djjmz Social Counter allows Object Injection....
High
Unreviewed
CVE-2025-46473
was published
Apr 24, 2025
Deserialization of Untrusted Data vulnerability in Michael Cannon Flickr Shortcode Importer...
High
Unreviewed
CVE-2025-46481
was published
Apr 24, 2025
The Jupiter X Core plugin for WordPress is vulnerable to PHP Object Injection in all versions up...
High
Unreviewed
CVE-2025-2105
was published
Apr 26, 2025
GFI MailEssentials prior to version 21.8 is vulnerable to a local privilege escalation issue. A...
High
Unreviewed
CVE-2025-34489
was published
Apr 28, 2025
GFI MailEssentials prior to version 21.8 is vulnerable to a .NET deserialization issue. A remote...
High
Unreviewed
CVE-2025-34491
was published
Apr 28, 2025
NVIDIA TensorRT-LLM for any platform contains a vulnerability in python executor where an...
High
Unreviewed
CVE-2025-23254
was published
May 1, 2025
Remote Code Execution Vulnerability in vLLM Multi-Node Cluster Configuration
High
CVE-2025-30165
was published
for
vllm
(pip)
May 6, 2025
Deserialization of Untrusted Data vulnerability in Mario Peshev WP-CRM System allows Object...
High
Unreviewed
CVE-2025-47629
was published
May 7, 2025
Deserialization of Untrusted Data vulnerability in Florent Maillefaud WP Maintenance allows...
High
Unreviewed
CVE-2025-47683
was published
May 7, 2025
Microsoft Dataverse Remote Code Execution Vulnerability
High
Unreviewed
CVE-2025-47732
was published
May 9, 2025
Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker...
High
Unreviewed
CVE-2025-30378
was published
May 13, 2025
Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker...
High
Unreviewed
CVE-2025-30382
was published
May 13, 2025
Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker...
High
Unreviewed
CVE-2025-30384
was published
May 13, 2025
The Uncanny Automator plugin for WordPress is vulnerable to PHP Object Injection in all versions...
High
Unreviewed
CVE-2025-3623
was published
May 14, 2025
Deserialization of Untrusted Data vulnerability in ShapedPlugin LLC WP Tabs allows Object...
High
Unreviewed
CVE-2025-48134
was published
May 16, 2025
An authenticated user can modify application state data.
High
Unreviewed
CVE-2025-48018
was published
May 20, 2025
ProTip!
Advisories are also available from the
GraphQL API