GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,826
Erlang
36
GitHub Actions
32
Go
2,426
Maven
5,000+
npm
4,058
NuGet
723
pip
3,848
Pub
12
RubyGems
934
Rust
1,006
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
4,699 advisories
Filter by severity
A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure...
Moderate
Unreviewed
CVE-2025-20184
was published
Feb 5, 2025
VMware ESXi (7.0 prior to ESXi70U1c-17325551), VMware Workstation (16.x prior to 16.0 and 15.x...
Moderate
Unreviewed
CVE-2020-3999
was published
May 24, 2022
Insufficient validation of untrusted input in Core in Google Chrome prior to 139.0.7258.66...
Moderate
Unreviewed
CVE-2025-8582
was published
Aug 7, 2025
A vulnerability in QCMS version 6.0.5 allows authenticated users to read arbitrary files from the...
Moderate
Unreviewed
CVE-2025-50233
was published
Aug 6, 2025
A vulnerability in a certain REST API endpoint of Cisco Data Center Network Manager (DCNM)...
Moderate
Unreviewed
CVE-2020-3538
was published
Nov 18, 2024
Issue of buffer overflow caused by insufficient data verification in the kernel acceleration...
Moderate
Unreviewed
CVE-2025-54641
was published
Aug 6, 2025
Issue of buffer overflow caused by insufficient data verification in the kernel gyroscope module....
Moderate
Unreviewed
CVE-2025-54642
was published
Aug 6, 2025
Issue of buffer overflow caused by insufficient data verification in the kernel drop detection...
Moderate
Unreviewed
CVE-2025-54636
was published
Aug 6, 2025
Input verification vulnerability in the home screen module.
Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2025-54614
was published
Aug 6, 2025
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center ...
Moderate
Unreviewed
CVE-2024-20274
was published
Oct 23, 2024
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could...
Moderate
Unreviewed
CVE-2021-1465
was published
Nov 18, 2024
A vulnerability was found in yanyutao0402 ChanCMS up to 3.1.2. It has been declared as critical....
Moderate
Unreviewed
CVE-2025-8227
was published
Jul 27, 2025
Dell PowerProtect Data Manager, versions prior to 19.19, contain(s) an Improper Input Validation...
Moderate
Unreviewed
CVE-2025-30480
was published
Jul 30, 2025
An issue existed in the handling of environment variables. This issue was addressed with improved...
Moderate
Unreviewed
CVE-2025-43195
was published
Jul 30, 2025
The vulnerability was identified in the code developed specifically for Lenovo. Please visit ...
Moderate
Unreviewed
CVE-2025-4424
was published
Jul 30, 2025
A vulnerability has been found in yanyutao0402 ChanCMS up to 3.1.2 and classified as critical....
Moderate
Unreviewed
CVE-2025-8266
was published
Jul 28, 2025
The WoodMart theme for WordPress is vulnerable to Improper Input Validation in all versions up to...
Moderate
Unreviewed
CVE-2025-8097
was published
Jul 26, 2025
Multiple vulnerabilities in the API of Cisco DNA Center Software could allow an authenticated,...
Moderate
Unreviewed
CVE-2023-20182
was published
May 18, 2023
Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft...
Moderate
Unreviewed
CVE-2025-53771
was published
Jul 21, 2025
A vulnerability classified as critical was found in Metasoft 美特软件 MetaCRM up to 6.4.2. This...
Moderate
Unreviewed
CVE-2025-7876
was published
Jul 20, 2025
Improper input validation in Microsoft Edge (Chromium-based) allows an authorized attacker to...
Moderate
Unreviewed
CVE-2025-47182
was published
Jul 11, 2025
Emerson ValveLink products
receive input or data, but it do not validate or incorrectly ...
Moderate
Unreviewed
CVE-2025-53471
was published
Jul 11, 2025
Realtek RTL8762EKF-EVB RTL8762E SDK V1.4.0 was discovered to utilize insufficient permission...
Moderate
Unreviewed
CVE-2025-44526
was published
Jul 9, 2025
A reflected cross-site scripting (XSS) vulnerability exists in the Moodle LMS Jmol plugin version...
Moderate
Unreviewed
CVE-2025-34032
was published
Jun 26, 2025
An improper Input Validation vulnerability allows injecting arbitrary values of the NAS...
Moderate
Unreviewed
CVE-2025-7378
was published
Jul 9, 2025
ProTip!
Advisories are also available from the
GraphQL API