GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,343
Erlang
31
GitHub Actions
22
Go
2,107
Maven
5,000+
npm
3,764
NuGet
679
pip
3,452
Pub
12
RubyGems
892
Rust
886
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
95,399 advisories
Filter by severity
A Credential Exposure Vulnerability exists in the above-mentioned product and version. The...
High
Unreviewed
CVE-2025-0631
was published
Jan 28, 2025
A denial-of-service vulnerability exists in the affected products. The vulnerability could allow...
High
Unreviewed
CVE-2025-24478
was published
Jan 28, 2025
A Local Code Execution Vulnerability exists in the product and version listed above. The...
High
Unreviewed
CVE-2025-24479
was published
Jan 28, 2025
In TBD of TBD, there is a possible use-after-free due to a logic error in the code. This could...
High
Unreviewed
CVE-2024-40649
was published
Jan 28, 2025
In TdlsexRxFrameHandle of the MTK WLAN driver, there is a possible out of bounds write due to a...
High
Unreviewed
CVE-2018-9373
was published
Jan 28, 2025
An attacker can bypass the sandboxing of Nasal scripts and arbitrarily write to any file path...
High
Unreviewed
CVE-2025-0781
was published
Jan 28, 2025
In JetBrains ReSharper before 2024.3.4, 2024.2.8, and 2024.1.7, Rider before 2024.3.4, 2024.2.8,...
High
Unreviewed
CVE-2025-23385
was published
Jan 28, 2025
A path
traversal vulnerability exists in the Rockwell Automation DataEdge Platform DataMosaix...
High
Unreviewed
CVE-2025-0659
was published
Jan 28, 2025
Improper Neutralization of Argument Delimiters in the TeamViewer_service.exe component of...
High
Unreviewed
CVE-2025-0065
was published
Jan 28, 2025
The WS Form LITE – Drag & Drop Contact Form Builder for WordPress plugin for WordPress is...
High
Unreviewed
CVE-2024-13509
was published
Jan 28, 2025
The Eventer plugin for WordPress is vulnerable to SQL Injection via the 'event' parameter in the ...
High
Unreviewed
CVE-2024-11135
was published
Jan 28, 2025
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a malicious guest...
High
Unreviewed
CVE-2024-0146
was published
Jan 28, 2025
NVIDIA GPU display driver for Windows and Linux contains a vulnerability where data is written...
High
Unreviewed
CVE-2024-0150
was published
Jan 28, 2025
NVIDIA Container Toolkit contains an improper isolation vulnerability where a specially crafted...
High
Unreviewed
CVE-2024-0136
was published
Jan 28, 2025
NVIDIA Container Toolkit contains an improper isolation vulnerability where a specially crafted...
High
Unreviewed
CVE-2024-0135
was published
Jan 28, 2025
Credentials provided via the new GOAUTH feature were not being properly segmented by domain,...
High
Unreviewed
CVE-2024-45340
was published
Jan 28, 2025
Using ParsePKCS1PrivateKey to parse a RSA key that is missing the CRT values would panic when...
High
Unreviewed
CVE-2025-22865
was published
Jan 28, 2025
CMSimple 5.16 allows the user to read cms source code through manipulation of the file name in...
High
Unreviewed
CVE-2024-57549
was published
Jan 28, 2025
In AXESS ACS (Auto Configuration Server) through 5.2.0, unsanitized user input in the TR069 API...
High
Unreviewed
CVE-2024-56316
was published
Jan 28, 2025
Insecure Permissions vulnerability in CMSimple v.5.16 allows a remote attacker to obtain...
High
Unreviewed
CVE-2024-57547
was published
Jan 28, 2025
An issue in CMSimple v.5.16 allows a remote attacker to obtain sensitive information via a...
High
Unreviewed
CVE-2024-57546
was published
Jan 28, 2025
Cross Site Request Forgery vulnerability in LifestyleStore v.1.0 allows a remote attacker to...
High
Unreviewed
CVE-2024-57373
was published
Jan 28, 2025
A validation issue was addressed with improved logic. This issue is fixed in iPadOS 17.7.4, macOS...
High
Unreviewed
CVE-2025-24159
was published
Jan 28, 2025
A permissions issue was addressed with improved validation. This issue is fixed in macOS Ventura...
High
Unreviewed
CVE-2025-24176
was published
Jan 28, 2025
A null pointer dereference was addressed with improved input validation. This issue is fixed in...
High
Unreviewed
CVE-2025-24177
was published
Jan 28, 2025
ProTip!
Advisories are also available from the
GraphQL API