GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,779
Erlang
36
GitHub Actions
29
Go
2,338
Maven
5,000+
npm
3,973
NuGet
714
pip
3,769
Pub
12
RubyGems
923
Rust
976
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
80 advisories
Filter by severity
An information disclosure vulnerability in the SD-WAN feature of Palo Alto Networks PAN-OS®...
Moderate
Unreviewed
CVE-2025-4229
was published
Jun 13, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-49419
was published
Jun 6, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-23969
was published
Jun 6, 2025
An application "com.pri.applock", which is pre-loaded on Kruger&Matz smartphones, allows a user...
Moderate
Unreviewed
CVE-2024-13916
was published
May 30, 2025
Exposure of file path, file size or file existence vulnerabilities in ASPECT provide attackers...
Moderate
Unreviewed
CVE-2025-30170
was published
May 22, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Solid...
Moderate
Unreviewed
CVE-2025-39394
was published
May 19, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-32299
was published
May 16, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-31062
was published
May 16, 2025
In BlueWave Checkmate before 2.1, an authenticated regular user can access sensitive application...
Moderate
Unreviewed
CVE-2025-48024
was published
May 15, 2025
A flaw was found in libsoup. When libsoup clients encounter an HTTP redirect, they mistakenly...
Moderate
Unreviewed
CVE-2025-46421
was published
Apr 24, 2025
The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) uses a deprecated java...
Moderate
Unreviewed
CVE-2025-30011
was published
May 13, 2025
An authenticated user without user-management permissions could identify other user accounts.
Moderate
Unreviewed
CVE-2025-46747
was published
May 12, 2025
Files to be deployed with agents are accessible without authentication in Checkmk 2.1.0, Checkmk...
Moderate
Unreviewed
CVE-2025-3506
was published
May 8, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-47540
was published
May 7, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-39439
was published
Apr 17, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-39589
was published
Apr 16, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-39556
was published
Apr 16, 2025
IBM Aspera Console 3.4.0 through 3.4.4 could disclose sensitive information in HTTP headers that...
Moderate
Unreviewed
CVE-2022-43852
was published
Apr 14, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in WP...
Moderate
Unreviewed
CVE-2025-32228
was published
Apr 10, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-32164
was published
Apr 8, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in J....
Moderate
Unreviewed
CVE-2025-32251
was published
Apr 4, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-32255
was published
Apr 4, 2025
HCL Traveler is affected by an internal path disclosure in a Windows application when the...
Moderate
Unreviewed
CVE-2025-0278
was published
Apr 4, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Beee...
Moderate
Unreviewed
CVE-2025-31832
was published
Apr 1, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-30802
was published
Apr 1, 2025
ProTip!
Advisories are also available from the
GraphQL API