GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,757
Erlang
35
GitHub Actions
29
Go
2,327
Maven
5,000+
npm
3,960
NuGet
712
pip
3,741
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
8,528 advisories
Filter by severity
This issue was addressed with additional entitlement checks. This issue is fixed in visionOS 2.4,...
Critical
Unreviewed
CVE-2025-30426
was published
Apr 1, 2025
A library injection issue was addressed with additional restrictions. This issue is fixed in...
Moderate
Unreviewed
CVE-2025-24282
was published
Apr 1, 2025
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-24278
was published
Apr 1, 2025
This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Ventura...
Critical
Unreviewed
CVE-2025-24253
was published
Apr 1, 2025
A privacy issue was addressed with improved private data redaction for log entries. This issue is...
Moderate
Unreviewed
CVE-2025-24262
was published
Apr 1, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.5, macOS...
Moderate
Unreviewed
CVE-2025-24261
was published
Apr 1, 2025
A privacy issue was addressed by moving sensitive data to a protected location. This issue is...
Critical
Unreviewed
CVE-2025-24263
was published
Apr 1, 2025
A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in...
Critical
Unreviewed
CVE-2025-24239
was published
Apr 1, 2025
An injection issue was addressed with improved validation. This issue is fixed in macOS Ventura...
Critical
Unreviewed
CVE-2025-24246
was published
Apr 1, 2025
This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia...
Critical
Unreviewed
CVE-2025-24242
was published
Apr 1, 2025
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.7...
Moderate
Unreviewed
CVE-2025-24244
was published
Apr 1, 2025
This issue was addressed with improved access restrictions. This issue is fixed in macOS Ventura...
Critical
Unreviewed
CVE-2025-24250
was published
Apr 1, 2025
This issue was addressed with improved redaction of sensitive information. This issue is fixed in...
Moderate
Unreviewed
CVE-2025-24217
was published
Apr 1, 2025
The issue was addressed with improved checks. This issue is fixed in Xcode 16.3. A malicious app...
Moderate
Unreviewed
CVE-2025-24226
was published
Apr 1, 2025
This issue was addressed through improved state management. This issue is fixed in macOS Ventura...
Critical
Unreviewed
CVE-2025-24232
was published
Apr 1, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4. An app...
Critical
Unreviewed
CVE-2025-24204
was published
Apr 1, 2025
The issue was addressed with improved handling of protocols. This issue is fixed in macOS Ventura...
Critical
Unreviewed
CVE-2024-40864
was published
Apr 1, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.5,...
Moderate
Unreviewed
CVE-2025-24164
was published
Apr 1, 2025
The DAP to Autoresponders Email Syncing plugin for WordPress is vulnerable to Sensitive...
Moderate
Unreviewed
CVE-2025-2840
was published
Mar 29, 2025
SaTECH BCU in its firmware version 2.1.3, allows an authenticated attacker to access information...
Moderate
Unreviewed
CVE-2025-2860
was published
Mar 28, 2025
An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE...
Moderate
Unreviewed
CVE-2021-24008
was published
Mar 28, 2025
The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-2578
was published
Mar 28, 2025
libming v0.4.8 was discovered to contain a memory leak via the parseSWF_MORPHFILLSTYLES function.
Moderate
Unreviewed
CVE-2025-29497
was published
Mar 27, 2025
libming v0.4.8 was discovered to contain a memory leak via the parseSWF_PLACEOBJECT3 function.
Moderate
Unreviewed
CVE-2025-29486
was published
Mar 27, 2025
libming v0.4.8 was discovered to contain a memory leak via the parseSWF_INITACTION function.
Moderate
Unreviewed
CVE-2025-29488
was published
Mar 27, 2025
ProTip!
Advisories are also available from the
GraphQL API