GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,779
Erlang
36
GitHub Actions
29
Go
2,337
Maven
5,000+
npm
3,972
NuGet
714
pip
3,769
Pub
12
RubyGems
923
Rust
976
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
122,243 advisories
Filter by severity
A vulnerability in Universal Disk Format (UDF) processing of ClamAV could allow an...
Moderate
Unreviewed
CVE-2025-20234
was published
Jun 18, 2025
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0...
Moderate
Unreviewed
CVE-2025-1349
was published
Jun 18, 2025
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0...
Moderate
Unreviewed
CVE-2024-54183
was published
Jun 18, 2025
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0...
Moderate
Unreviewed
CVE-2024-54172
was published
Jun 18, 2025
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0...
Moderate
Unreviewed
CVE-2025-1348
was published
Jun 18, 2025
Improper Input Validation vulnerability in Profisee on Windows (filesystem modules) allows Path...
Moderate
Unreviewed
CVE-2025-6240
was published
Jun 18, 2025
A cross-site scripting (XSS) vulnerability in miniTCG v1.3.1 beta allows attackers to execute...
Moderate
Unreviewed
CVE-2025-45661
was published
Jun 18, 2025
The Target Video Easy Publish plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Moderate
Unreviewed
CVE-2025-5237
was published
Jun 18, 2025
Missing Authorization vulnerability in Cloudways Breeze allows Exploiting Incorrectly Configured...
Moderate
Unreviewed
CVE-2025-23999
was published
Jun 18, 2025
Arbitrary file write as the OSV-SCALIBR user on the host system via a path traversal...
Moderate
Unreviewed
CVE-2025-5981
was published
Jun 18, 2025
The NVIDIA NVDebug tool contains a vulnerability that may allow an actor to gain access to...
Moderate
Unreviewed
CVE-2025-23252
was published
Jun 18, 2025
A link following vulnerability in Trend Micro Deep Security 20.0 agents could allow a local...
Moderate
Unreviewed
CVE-2025-30642
was published
Jun 17, 2025
Trend Micro Password Manager (Consumer) version 5.0.0.1266 and below is vulnerable to a Link...
Moderate
Unreviewed
CVE-2025-48443
was published
Jun 17, 2025
A binary in the BoKS Server Agent component of Fortra's Core Privileged Access Manager (BoKS) on...
Moderate
Unreviewed
CVE-2025-5141
was published
Jun 17, 2025
A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (on-premise)...
Moderate
Unreviewed
CVE-2025-30679
was published
Jun 17, 2025
An uncontrolled search path vulnerability in the Trend Micro Worry-Free Business Security...
Moderate
Unreviewed
CVE-2025-49487
was published
Jun 17, 2025
A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (on-premise)...
Moderate
Unreviewed
CVE-2025-30678
was published
Jun 17, 2025
SQL Injection vulnerability in SeaCMS v.12.9 allows a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2024-40570
was published
Jun 17, 2025
An uncontrolled search path vulnerability in the Trend Micro Apex One security agent could allow...
Moderate
Unreviewed
CVE-2025-49158
was published
Jun 17, 2025
A cross-site scripting (XSS) vulnerability in the data resource management function of Miliaris...
Moderate
Unreviewed
CVE-2025-45880
was published
Jun 17, 2025
A cross-site scripting (XSS) vulnerability in the report manager function of Miliaris Amigdala v2...
Moderate
Unreviewed
CVE-2025-45878
was published
Jun 17, 2025
A cross-site scripting (XSS) vulnerability in the e-mail manager function of Miliaris Amigdala v2...
Moderate
Unreviewed
CVE-2025-45879
was published
Jun 17, 2025
An unrestricted file upload vulnerability in a Trend Micro Apex Central widget below version 8.0...
Moderate
Unreviewed
CVE-2025-47866
was published
Jun 17, 2025
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in FunnelKit Automation By...
Moderate
Unreviewed
CVE-2025-49868
was published
Jun 17, 2025
Server-Side Request Forgery (SSRF) vulnerability in Metagauss ProfileGrid allows Server Side...
Moderate
Unreviewed
CVE-2025-49877
was published
Jun 17, 2025
ProTip!
Advisories are also available from the
GraphQL API