GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,465
Erlang
33
GitHub Actions
22
Go
2,164
Maven
5,000+
npm
3,821
NuGet
696
pip
3,503
Pub
12
RubyGems
909
Rust
904
Swift
38
Unreviewed advisories
All unreviewed
5,000+
269,255 advisories
Filter by severity
A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an...
High
Unreviewed
CVE-2025-1650
was published
Mar 13, 2025
Optigo Networks Visual BACnet Capture Tool and Optigo Visual Networks Capture Tool version 3.1...
Critical
Unreviewed
CVE-2025-2080
was published
Mar 13, 2025
Optigo Networks Visual BACnet Capture Tool and Optigo Visual Networks Capture Tool version 3.1...
High
Unreviewed
CVE-2025-2079
was published
Mar 13, 2025
HCL AppScan Traffic Recorder fails to adequately neutralize special characters within the...
Moderate
Unreviewed
CVE-2024-30143
was published
Mar 13, 2025
Espressif Esp idf v5.3.0 is vulnerable to Insecure Permissions resulting in Authentication bypass...
Unknown
Unreviewed
CVE-2024-53406
was published
Mar 13, 2025
This CVE affects only Windows worker nodes. Your worker node is vulnerable to this issue if it is...
Moderate
Unreviewed
CVE-2024-9042
was published
Mar 13, 2025
During login to the web server in "Sante PACS Server.exe", OpenSSL function EVP_DecryptUpdate is...
Critical
Unreviewed
CVE-2025-2263
was published
Mar 13, 2025
A maliciously crafted MODEL file, when parsed through Autodesk AutoCAD, can force a Heap-Based...
High
Unreviewed
CVE-2025-1429
was published
Mar 13, 2025
Delta Electronics CNCSoft-G2 Version 2.1.0.16 and prior lacks proper
validation of the length of...
High
Unreviewed
CVE-2024-12858
was published
Mar 13, 2025
A HTML Injection vulnerability was found in loginsystem/edit-profile.php of the PHPGurukul User...
Unknown
Unreviewed
CVE-2025-28015
was published
Mar 13, 2025
In the Linux kernel, the following vulnerability has been resolved:
net: Add rx_skb of kfree_skb...
Moderate
Unreviewed
CVE-2025-21852
was published
Mar 12, 2025
In the Linux kernel, the following vulnerability has been resolved:
nvmet: Fix crash when a...
Moderate
Unreviewed
CVE-2025-21850
was published
Mar 12, 2025
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix softlockup in...
Low
Unreviewed
CVE-2025-21851
was published
Mar 12, 2025
In the Linux kernel, the following vulnerability has been resolved:
drm/i915/gt: Use...
Moderate
Unreviewed
CVE-2025-21849
was published
Mar 12, 2025
VMware Aria Operations for Logs contains an information disclosure vulnerability. A malicious...
High
Unreviewed
CVE-2025-22218
was published
Jan 30, 2025
A vulnerability in Veeam Backup & Replication allows a low-privileged user with certain roles to...
High
Unreviewed
CVE-2024-40717
was published
Dec 4, 2024
Out of bounds memory access in V8 in Google Chrome prior to 131.0.6778.204 allowed a remote...
High
Unreviewed
CVE-2024-12693
was published
Dec 19, 2024
Denial of service in DNS-over-QUIC in Technitium DNS Server <= v13.2.2 allows remote attackers to...
Moderate
Unreviewed
CVE-2024-56946
was published
Feb 3, 2025
VMware Aria Operations for Logs contains a stored cross-site scripting vulnerability. A malicious...
Moderate
Unreviewed
CVE-2025-22219
was published
Jan 30, 2025
In affected versions of Octopus Server it was possible for a user with sufficient access to set...
Moderate
Unreviewed
CVE-2025-0588
was published
Feb 11, 2025
Qualys discovered that needrestart, before version 3.8, allows local attackers to execute...
High
Unreviewed
CVE-2024-48991
was published
Nov 19, 2024
ZTE NH8091 product has an improper permission control vulnerability. Due to improper permission...
Moderate
Unreviewed
CVE-2024-22067
was published
Nov 18, 2024
CRMEB <=5.4.0 is vulnerable to Incorrect Access Control. Users can bypass the front-end...
High
Unreviewed
CVE-2024-50653
was published
Nov 15, 2024
Trend Micro Antivirus One versions 3.10.4 and below (Consumer) is vulnerable to an Arbitrary...
High
Unreviewed
CVE-2024-45334
was published
Oct 22, 2024
Trend Micro VPN, version 5.8.1012 and below is vulnerable to an arbitrary file overwrite under...
High
Unreviewed
CVE-2024-41183
was published
Oct 22, 2024
ProTip!
Advisories are also available from the
GraphQL API