GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,778
Erlang
36
GitHub Actions
29
Go
2,336
Maven
5,000+
npm
3,970
NuGet
713
pip
3,767
Pub
12
RubyGems
923
Rust
976
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
100,488 advisories
Filter by severity
The WP STAGING WordPress Backup Plugin before 3.1.3 and WP STAGING Pro WordPress Backup Plugin...
High
Unreviewed
CVE-2023-6113
was published
Jan 1, 2024
Real Estate Management 1.0 is vulnerable to Cross Site Scripting (XSS) in /store/index.php.
High
Unreviewed
CVE-2025-45786
was published
Jun 18, 2025
The Ultra Addons for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads...
High
Unreviewed
CVE-2025-6220
was published
Jun 18, 2025
The CSV Me plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file...
High
Unreviewed
CVE-2025-6086
was published
Jun 18, 2025
KDE Konsole before 25.04.2 allows remote code execution in a certain scenario. It supports...
High
Unreviewed
CVE-2025-49091
was published
Jun 11, 2025
The Pixabay Images plugin for WordPress is vulnerable to arbitrary file uploads due to missing...
High
Unreviewed
CVE-2025-4413
was published
Jun 18, 2025
GStreamer H265 Codec Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2025-3887
was published
May 22, 2025
Improper input validation was discovered in UsbCoreDxe in Insyde InsydeH2O kernel 5.4 before 05...
High
Unreviewed
CVE-2024-55567
was published
Jun 12, 2025
A vulnerability classified as critical was found in Tenda FH1205 2.0.0.7(775). This vulnerability...
High
Unreviewed
CVE-2025-6111
was published
Jun 16, 2025
There is a memory management vulnerability in Absolute
Secure Access server versions 9.0 to 13.54...
High
Unreviewed
CVE-2025-49080
was published
Jun 12, 2025
An infinite loop issue discovered in Mathtex 1.05 and before allows a remote attackers to consume...
High
Unreviewed
CVE-2023-51890
was published
Jan 24, 2024
Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful...
High
Unreviewed
CVE-2023-44117
was published
Jan 16, 2024
Trend Micro Security 17.8 (Consumer) is vulnerable to a link following local privilege escalation...
High
Unreviewed
CVE-2025-49384
was published
Jun 17, 2025
An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could...
High
Unreviewed
CVE-2025-49214
was published
Jun 17, 2025
A SQL injection vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an...
High
Unreviewed
CVE-2025-49211
was published
Jun 17, 2025
Fuji Electric Smart Editor is vulnerable to a stack-based buffer overflow, which may allow an...
High
Unreviewed
CVE-2025-41388
was published
Jun 17, 2025
H3C GR2200 MiniGR1A0V100R014 was discovered to contain a command injection vulnerability via the...
High
Unreviewed
CVE-2022-36510
was published
Aug 26, 2022
D-Link DIR-1960 firmware DIR-1960_A1_1.11 was discovered to contain a buffer overflow via srtcat...
High
Unreviewed
CVE-2022-31414
was published
Sep 8, 2022
Sitecore Experience Manager (XM) and Experience Platform (XP) versions 10.1 to 10.1.4 rev. 011974...
High
Unreviewed
CVE-2025-34509
was published
Jun 17, 2025
Sitecore Experience Manager (XM), Experience Platform (XP), and Experience Commerce (XC) versions...
High
Unreviewed
CVE-2025-34510
was published
Jun 17, 2025
A link following vulnerability in the Trend Micro Apex One scan engine could allow a local...
High
Unreviewed
CVE-2025-49156
was published
Jun 17, 2025
A link following vulnerability in the Trend Micro Apex One Damage Cleanup Engine could allow a...
High
Unreviewed
CVE-2025-49157
was published
Jun 17, 2025
An uncontrolled search path vulnerability in the Trend Micro Apex One Data Loss Prevention module...
High
Unreviewed
CVE-2025-49155
was published
Jun 17, 2025
An Out-of-bounds Write vulnerability exists within the parsing of PRJ files. The issues result...
High
Unreviewed
CVE-2025-49848
was published
Jun 17, 2025
Fuji Electric Smart Editor is vulnerable to an out-of-bounds read, which may allow an attacker to...
High
Unreviewed
CVE-2025-32412
was published
Jun 17, 2025
ProTip!
Advisories are also available from the
GraphQL API