GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
40
Go
2,974
Maven
5,000+
npm
4,621
NuGet
788
pip
4,317
Pub
12
RubyGems
984
Rust
1,131
Swift
49
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
232 advisories
Filter by severity
The Agentspace service was affected by a vulnerability that exposed sensitive information due to...
Critical
Unreviewed
CVE-2026-1727
was published
Feb 7, 2026
Access control settings for forum post custom fields are not applied to the JSON output type,...
Critical
Unreviewed
CVE-2026-21626
was published
Feb 6, 2026
Insufficient policy enforcement in Network in Google Chrome prior to 144.0.7559.59 allowed an...
Critical
Unreviewed
CVE-2026-0905
was published
Jan 20, 2026
The vulnerability exists in BLUVOYIX due to the exposure of sensitive internal API documentation....
Critical
Unreviewed
CVE-2026-22237
was published
Jan 14, 2026
The vulnerability exists in BLUVOYIX due to an improper password storage implementation and...
Critical
Unreviewed
CVE-2026-22240
was published
Jan 14, 2026
An exposure of sensitive information to an unauthorized actor [CWE-200] vulnerability in Fortinet...
Critical
Unreviewed
CVE-2025-47855
was published
Jan 13, 2026
A vulnerability has been identified in the ServiceNow AI Platform that could enable an...
Critical
Unreviewed
CVE-2025-12420
was published
Jan 13, 2026
This vulnerability allows a Backup or Tape Operator to write files as root.
Critical
Unreviewed
CVE-2025-59469
was published
Jan 8, 2026
The Export WP Page to Static HTML & PDF plugin for WordPress is vulnerable to Sensitive...
Critical
Unreviewed
CVE-2025-11693
was published
Dec 13, 2025
An issue was discovered in Meatmeet Android Mobile Application 1.1.2.0. An exported activity can...
Critical
Unreviewed
CVE-2025-65820
was published
Dec 10, 2025
An issue was discovered on Thermo Fisher Ion Torrent OneTouch 2 INS1005527 devices. When they are...
Critical
Unreviewed
CVE-2025-54304
was published
Dec 4, 2025
An issue was discovered in Syrotech SY-GPON-1110-WDONT SYRO_3.7L_3.1.02-240517 allowing attackers...
Critical
Unreviewed
CVE-2025-63729
was published
Nov 25, 2025
MILLENSYS Vision Tools Workspace 6.5.0.2585 exposes a sensitive configuration endpoint (...
Critical
Unreviewed
CVE-2025-63958
was published
Nov 24, 2025
Photo Station 5.4.1 & 5.2.7 include the security fix for the vulnerability related to the XMR...
Critical
Unreviewed
CVE-2017-20210
was published
Nov 11, 2025
The AI Engine plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Critical
Unreviewed
CVE-2025-11749
was published
Nov 5, 2025
Incorrect access control in the realtime.cgi endpoint of Deep Sea Electronics devices DSE855 v1.1...
Critical
Unreviewed
CVE-2025-29270
was published
Oct 31, 2025
Email Password Disclosure.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
Critical
Unreviewed
CVE-2025-12363
was published
Oct 27, 2025
An issue in MikroTik RouterOS v.7.14.2 and SwitchOS v.2.18 allows a remote attacker to execute...
Critical
Unreviewed
CVE-2025-61481
was published
Oct 27, 2025
A compromised web process using malicious IPC messages could have caused the privileged browser...
Critical
Unreviewed
CVE-2025-11710
was published
Oct 14, 2025
When switching between Android apps using the card carousel Firefox shows a black screen as its...
Critical
Unreviewed
CVE-2025-11717
was published
Oct 14, 2025
The RestroPress – Online Food Ordering System plugin for WordPress is vulnerable to...
Critical
Unreviewed
CVE-2025-9209
was published
Oct 3, 2025
The Blackmagic ATEM Mini Pro 2.7 exposes sensitive device and stream configuration information...
Critical
Unreviewed
CVE-2025-57441
was published
Sep 22, 2025
The Blackmagic Web Presenter HD firmware version 3.3 exposes sensitive information via an...
Critical
Unreviewed
CVE-2025-57437
was published
Sep 22, 2025
The issue was addressed with improved checks. This issue is fixed in iOS 18.7 and iPadOS 18.7,...
Critical
Unreviewed
CVE-2025-43362
was published
Sep 16, 2025
OPSI before 4.3 allows any client to retrieve any ProductPropertyState, including those of other...
Critical
Unreviewed
CVE-2025-22956
was published
Sep 8, 2025
ProTip!
Advisories are also available from the
GraphQL API