GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,819
Erlang
36
GitHub Actions
32
Go
2,410
Maven
5,000+
npm
4,046
NuGet
723
pip
3,842
Pub
12
RubyGems
933
Rust
1,003
Swift
38
Unreviewed advisories
All unreviewed
5,000+
134,738 advisories
Filter by severity
In bootloader, there is a possible out of bounds write due to a missing bounds check. This could...
Moderate
Unreviewed
CVE-2025-31716
was published
Aug 1, 2025
A vulnerability was found in projectworlds Online Admission System 1.0. It has been rated as...
Moderate
Unreviewed
CVE-2025-8436
was published
Aug 1, 2025
A vulnerability was found in code-projects Online Movie Streaming 1.0. It has been declared as...
Moderate
Unreviewed
CVE-2025-8435
was published
Aug 1, 2025
A vulnerability was found in code-projects Online Movie Streaming 1.0. It has been classified as...
Moderate
Unreviewed
CVE-2025-8434
was published
Aug 1, 2025
A vulnerability was found in code-projects Document Management System 1.0 and classified as...
Moderate
Unreviewed
CVE-2025-8433
was published
Aug 1, 2025
The Stratum – Elementor Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2025-7845
was published
Aug 1, 2025
In Sipwise rtpengine before 13.4.1.1, an origin-validation error in the endpoint-learning logic...
Moderate
Unreviewed
CVE-2025-53399
was published
Aug 1, 2025
Quantum SuperLoader 3 V94.0 005E.0h devices allow attackers to access the hardcoded fa account...
Moderate
Unreviewed
CVE-2019-19145
was published
Aug 1, 2025
A vulnerability has been found in PHPGurukul Boat Booking System 1.0 and classified as critical....
Moderate
Unreviewed
CVE-2025-8431
was published
Aug 1, 2025
Sielox AnyWare v2.1.2 was discovered to contain a SQL injection vulnerability via the email...
Moderate
Unreviewed
CVE-2024-34327
was published
Jul 31, 2025
CloudClassroom-PHP-Project 1.0 contains a reflected Cross-site Scripting (XSS) vulnerability in...
Moderate
Unreviewed
CVE-2025-50866
was published
Jul 31, 2025
Improper Privilege Management vulnerability in Cloudflare WARP on Windows allows File...
Moderate
Unreviewed
CVE-2025-0651
was published
Jan 22, 2025
ActiveMQ Artemis AMQ Broker Operator Starting Credentials Reuse
Moderate
CVE-2025-4057
was published
for
github.com/arkmq-org/activemq-artemis-operator
(Go)
May 26, 2025
NVIDIA Omniverse Launcher for Windows and Linux contains a vulnerability in the launcher logs,...
Moderate
Unreviewed
CVE-2025-23289
was published
Jul 31, 2025
A vulnerability was discovered in the storage policy for certain sets of encryption keys in the...
Moderate
Unreviewed
CVE-2025-37112
was published
Jul 31, 2025
A vulnerability was discovered in the storage policy for certain sets of sensitive credential...
Moderate
Unreviewed
CVE-2025-37110
was published
Jul 31, 2025
A vulnerability was discovered in the storage policy for certain sets of authentication keys in...
Moderate
Unreviewed
CVE-2025-37111
was published
Jul 31, 2025
A SQL Injection vulnerability exists in the takeassessment2.php endpoint of the CloudClassroom...
Moderate
Unreviewed
CVE-2025-50867
was published
Jul 31, 2025
A file upload vulnerability was discovered in CS Cart 4.18.3, allows attackers to execute...
Moderate
Unreviewed
CVE-2025-50848
was published
Jul 31, 2025
Cross Site Request Forgery (CSRF) vulnerability in CS Cart 4.18.3, allows attackers to add...
Moderate
Unreviewed
CVE-2025-50847
was published
Jul 31, 2025
A stored Cross Site Scripting (xss) vulnerability in the "content management" feature in AnQiCMS...
Moderate
Unreviewed
CVE-2025-50270
was published
Jul 31, 2025
A cross-site scripting (XSS) vulnerability exists in the LB-Link BL-CPE300M 01.01.02P42U14_06...
Moderate
Unreviewed
CVE-2025-51569
was published
Jul 31, 2025
An open redirect in Sielox AnyWare v2.1.2 allows attackers to execute a man-in-the-middle attack...
Moderate
Unreviewed
CVE-2024-34328
was published
Jul 31, 2025
ExaGrid EX10 6.3 - 7.0.1.P08 is vulnerable to Incorrect Access Control in the MailConfiguration...
Moderate
Unreviewed
CVE-2025-29557
was published
Jul 31, 2025
A weak hashing algorithm and small sizes of seeds/secrets in Google's gVisor allowed for a remote...
Moderate
Unreviewed
CVE-2024-10026
was published
Jan 30, 2025
ProTip!
Advisories are also available from the
GraphQL API