GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,467
Erlang
33
GitHub Actions
23
Go
2,172
Maven
5,000+
npm
3,832
NuGet
696
pip
3,508
Pub
12
RubyGems
910
Rust
907
Swift
38
Unreviewed advisories
All unreviewed
5,000+
104,840 advisories
Filter by severity
Adobe Commerce Path Traversal
High
CVE-2025-24406
was published
for
magento/community-edition
(Composer)
Feb 11, 2025
Adobe Commerce Improper Authorization vulnerability
High
CVE-2025-24409
was published
for
magento/community-edition
(Composer)
Feb 11, 2025
pgadmin4 vulnerable to Code Injection
High
CVE-2022-4223
was published
for
pgadmin4
(pip)
Dec 13, 2022
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
High
CVE-2025-24813
was published
for
org.apache.tomcat.embed:tomcat-embed-core
(Maven)
Mar 10, 2025
In Tenda AC9 v1.0 V15.03.05.14_multi, the wanSpeed parameter of /goform/AdvSetMacMtuWan has a...
High
Unreviewed
CVE-2025-29387
was published
Mar 14, 2025
A session hijacking vulnerability exists in the web-based management interface of GatesAir Maxiva...
High
Unreviewed
CVE-2025-22960
was published
Feb 14, 2025
Wazuh SIEM version 4.8.2 is affected by a broken access control vulnerability. This issue allows...
High
Unreviewed
CVE-2024-57378
was published
Feb 14, 2025
An issue in the shiroFilter function of White-Jotter project v0.2.2 allows attackers to execute a...
High
Unreviewed
CVE-2024-57176
was published
Feb 21, 2025
Korenix Jetwave 4200 Series 1.3.0 and JetWave 3000 Series 1.6.0 are vulnerable to Command...
High
Unreviewed
CVE-2023-23295
was published
Feb 24, 2023
In the Linux kernel, the following vulnerability has been resolved:
clk: visconti: prevent array...
High
Unreviewed
CVE-2022-49186
was published
Mar 17, 2025
The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.4,...
High
Unreviewed
CVE-2024-23226
was published
Mar 8, 2024
Openshift Hive Exposes VCenter Credentials via ClusterProvision
High
CVE-2025-2241
was published
for
github.com/openshift/hive
(Go)
Mar 17, 2025
zip Incorrectly Canonicalizes Paths during Archive Extraction Leading to Arbitrary File Write
High
CVE-2025-29787
was published
for
zip
(Rust)
Mar 17, 2025
Memory Exhaustion in Expr Parser with Unrestricted Input
High
CVE-2025-29786
was published
for
github.com/expr-lang/expr
(Go)
Mar 17, 2025
A stack overflow vulnerability exists in the libexpat library due to the way it handles recursive...
High
Unreviewed
CVE-2024-8176
was published
Mar 14, 2025
FS Inc S3150-8T2F prior to version S3150-8T2F_2.2.0D_135103 is vulnerable to Cross Site Scripting...
High
Unreviewed
CVE-2025-25612
was published
Mar 17, 2025
In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritance grants unintended access...
High
Unreviewed
CVE-2024-48651
was published
Nov 29, 2024
Netgear EX6120 v1.0.0.68, Netgear EX6100 v1.0.2.28, and Netgear EX3700 v1.0.0.96 are vulnerable...
High
Unreviewed
CVE-2024-35519
was published
Oct 15, 2024
The issue was addressed with improved memory handling. This issue is fixed in tvOS 17.4, iOS 17.4...
High
Unreviewed
CVE-2024-0258
was published
Mar 8, 2024
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_ct: sanitize...
High
Unreviewed
CVE-2024-26673
was published
Apr 2, 2024
In the Linux kernel, the following vulnerability has been resolved:
afs: Increase buffer size in...
High
Unreviewed
CVE-2024-26736
was published
Apr 3, 2024
In the Linux kernel, the following vulnerability has been resolved:
x86/lib: Revert to...
High
Unreviewed
CVE-2024-26674
was published
Apr 2, 2024
Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an...
High
Unreviewed
CVE-2025-22472
was published
Mar 17, 2025
Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an...
High
Unreviewed
CVE-2024-49559
was published
Mar 17, 2025
Dell SmartFabric OS10 Software, version(s) 10.5.6.x, contain(s) a Use of Hard-coded Password...
High
Unreviewed
CVE-2024-48831
was published
Mar 17, 2025
ProTip!
Advisories are also available from the
GraphQL API