GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,780
Erlang
36
GitHub Actions
29
Go
2,338
Maven
5,000+
npm
3,973
NuGet
715
pip
3,769
Pub
12
RubyGems
923
Rust
976
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
64 advisories
Filter by severity
A crafted HTML email using mailbox:/// links can trigger automatic, unsolicited downloads of .pdf...
Moderate
Unreviewed
CVE-2025-5986
was published
Jun 11, 2025
Inappropriate implementation in Messages in Google Chrome on Android prior to 137.0.7151.55...
Moderate
Unreviewed
CVE-2025-5066
was published
May 27, 2025
Inappropriate implementation in FileSystemAccess API in Google Chrome prior to 137.0.7151.55...
Moderate
Unreviewed
CVE-2025-5065
was published
May 27, 2025
User interface (ui) misrepresentation of critical information in Microsoft Edge (Chromium-based)...
Moderate
Unreviewed
CVE-2025-29825
was published
May 2, 2025
Websites directing users to long URLs that caused eliding to occur in the location view could...
Moderate
Unreviewed
CVE-2025-3859
was published
Apr 30, 2025
A specially crafted filename containing a large number of encoded newline characters could...
Moderate
Unreviewed
CVE-2025-4086
was published
Apr 29, 2025
When an email contains multiple attachments with external links via the X-Mozilla-External...
Moderate
Unreviewed
CVE-2025-3523
was published
Apr 15, 2025
User interface (ui) misrepresentation of critical information in Microsoft Edge for iOS allows an...
Moderate
Unreviewed
CVE-2025-29796
was published
Apr 4, 2025
Inappropriate implementation in Downloads in Google Chrome prior to 135.0.7049.52 allowed a...
Moderate
Unreviewed
CVE-2025-3074
was published
Apr 2, 2025
Inappropriate implementation in Autofill in Google Chrome prior to 135.0.7049.52 allowed a remote...
Moderate
Unreviewed
CVE-2025-3073
was published
Apr 2, 2025
Inappropriate implementation in Custom Tabs in Google Chrome prior to 135.0.7049.52 allowed a...
Moderate
Unreviewed
CVE-2025-3072
was published
Apr 2, 2025
The issue was addressed with improved checks. This issue is fixed in Safari 18.4, iOS 18.4 and...
Moderate
Unreviewed
CVE-2025-30467
was published
Apr 1, 2025
Inappropriate implementation in Selection in Google Chrome on Android prior to 134.0.6998.35...
Moderate
Unreviewed
CVE-2025-1922
was published
Mar 5, 2025
A web page could trick a user into setting that site as the default handler for a custom URL...
Moderate
Unreviewed
CVE-2025-1935
was published
Mar 4, 2025
Microsoft Outlook Spoofing Vulnerability
Moderate
Unreviewed
CVE-2025-21259
was published
Feb 11, 2025
Microsoft Edge for IOS and Android Spoofing Vulnerability
Moderate
Unreviewed
CVE-2025-21253
was published
Feb 7, 2025
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Moderate
Unreviewed
CVE-2025-21404
was published
Feb 7, 2025
IBM ApplinX 11.1 could allow a remote attacker to hijack the clicking action of the victim. By...
Moderate
Unreviewed
CVE-2024-49796
was published
Feb 6, 2025
Inappropriate implementation in Extensions API in Google Chrome prior to 133.0.6943.53 allowed a...
Moderate
Unreviewed
CVE-2025-0451
was published
Feb 4, 2025
A vulnerability was found in TP-Link TL-SG108E 1.0.0 Build 20201208 Rel. 40304. It has been rated...
Moderate
Unreviewed
CVE-2025-0729
was published
Jan 27, 2025
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Moderate
Unreviewed
CVE-2025-21262
was published
Jan 25, 2025
Inappropriate implementation in Extensions in Google Chrome prior to 132.0.6834.83 allowed a...
Moderate
Unreviewed
CVE-2025-0446
was published
Jan 15, 2025
Inappropriate implementation in Navigation in Google Chrome on Android prior to 132.0.6834.83...
Moderate
Unreviewed
CVE-2025-0435
was published
Jan 15, 2025
Windows SmartScreen Spoofing Vulnerability
Moderate
Unreviewed
CVE-2025-21314
was published
Jan 14, 2025
IBM PowerHA SystemMirror for i 7.4 and 7.5 contains improper restrictions when rendering content...
Moderate
Unreviewed
CVE-2024-55896
was published
Jan 4, 2025
ProTip!
Advisories are also available from the
GraphQL API