GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,373
Erlang
33
GitHub Actions
22
Go
2,135
Maven
5,000+
npm
3,797
NuGet
687
pip
3,478
Pub
12
RubyGems
896
Rust
897
Swift
38
Unreviewed advisories
All unreviewed
5,000+
103,834 advisories
Filter by severity
An issue was discovered in Atos Eviden BullSequana XH2140 BMC before C4EM-125: OMF_C4E 101.05...
High
Unreviewed
CVE-2024-46933
was published
Feb 20, 2025
IBM Security Verify Access Appliance 10.0.0.0 through 10.0.0.9 and 11.0.0.0 could allow a local...
High
Unreviewed
CVE-2025-0161
was published
Feb 20, 2025
In (TBD) of (TBD), there is a possible way to boot with a hidden debug policy due to a missing...
High
Unreviewed
CVE-2023-21068
was published
Mar 24, 2023
Product: AndroidVersions: Android kernelAndroid ID: A-229255400References: N/A
High
Unreviewed
CVE-2023-21061
was published
Mar 24, 2023
Product: AndroidVersions: Android kernelAndroid ID: A-254114726References: N/A
High
Unreviewed
CVE-2023-21067
was published
Mar 24, 2023
Buffer Overflow vulnerability in Bento4 v.1.6.0-641 allows a local attacker to execute arbitrary...
High
Unreviewed
CVE-2025-25944
was published
Feb 20, 2025
Buffer Overflow vulnerability in Bento4 v.1.6.0-641 allows a local attacker to execute arbitrary...
High
Unreviewed
CVE-2025-25943
was published
Feb 20, 2025
PHPJabbers Hotel Booking System v4.0 is vulnerable to CSV Injection vulnerability which allows an...
High
Unreviewed
CVE-2023-51302
was published
Feb 19, 2025
The Lenix Elementor Leads addon plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
High
Unreviewed
CVE-2025-1039
was published
Feb 20, 2025
Improper access control in some Intel(R) Optane(TM) PMem 100 Series Management Software before...
High
Unreviewed
CVE-2023-22311
was published
Feb 20, 2025
Improper access control in some Intel(R) Optane(TM) PMem software before versions 01.00.00.3547,...
High
Unreviewed
CVE-2023-27517
was published
Feb 20, 2025
A lack of rate limiting in the "Login Section, Forgot Email" feature of PHPJabbers Hotel Booking...
High
Unreviewed
CVE-2023-51301
was published
Feb 19, 2025
The LTL Freight Quotes – GlobalTranz Edition plugin for WordPress is vulnerable to SQL Injection...
High
Unreviewed
CVE-2024-13476
was published
Feb 20, 2025
The Ultimate Classified Listings plugin for WordPress is vulnerable to Cross-Site Request Forgery...
High
Unreviewed
CVE-2024-13753
was published
Feb 20, 2025
The WooCommerce Food - Restaurant Menu & Food ordering plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2024-13792
was published
Feb 20, 2025
IBM OpenPages with Watson 8.3 and 9.0 IBM OpenPages is vulnerable to an XML external entity...
High
Unreviewed
CVE-2024-49781
was published
Feb 20, 2025
The WPMobile.App plugin for WordPress is vulnerable to Open Redirect in all versions up to, and...
High
Unreviewed
CVE-2024-13888
was published
Feb 20, 2025
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue...
High
Unreviewed
CVE-2025-26856
was published
Feb 20, 2025
A Remote Code Execution (RCE) vulnerabilty exists in LimeSurvey 5.2.4 via the upload and install...
High
Unreviewed
CVE-2021-44967
was published
Feb 25, 2022
Bundle Protocol and CBOR dissector crashes in Wireshark 4.4.0 to 4.4.3 and 4.2.0 to 4.2.10 allows...
High
Unreviewed
CVE-2025-1492
was published
Feb 20, 2025
An authentication bypass in the Palo Alto Networks PAN-OS software enables an unauthenticated...
High
Unreviewed
CVE-2025-0108
was published
Feb 12, 2025
A flaw was found in the rsync daemon which could be triggered when rsync compares file checksums....
High
Unreviewed
CVE-2024-12085
was published
Jan 14, 2025
Dino before 0.2.3, 0.3.x before 0.3.2, and 0.4.x before 0.4.2 allows attackers to modify the...
High
Unreviewed
CVE-2023-28686
was published
Mar 24, 2023
Server-Side Request Forgery (SSRF) vulnerability in Salesforce Tableau Server allows...
High
Unreviewed
CVE-2025-26494
was published
Feb 11, 2025
An improper access control vulnerability in Power Pages allows an unauthorized attacker to...
High
Unreviewed
CVE-2025-24989
was published
Feb 20, 2025
ProTip!
Advisories are also available from the
GraphQL API