GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,810
Erlang
36
GitHub Actions
31
Go
2,395
Maven
5,000+
npm
4,030
NuGet
721
pip
3,820
Pub
12
RubyGems
932
Rust
988
Swift
38
Unreviewed advisories
All unreviewed
5,000+
109,805 advisories
Filter by severity
Improper access control in secure message component in Devolutions Server allows an authenticated...
High
Unreviewed
CVE-2025-6741
was published
Jul 22, 2025
The JsonToBinaryStream() function is part of the protocol buffers C++ implementation and is used...
High
Unreviewed
CVE-2024-2410
was published
May 3, 2024
An issue was discovered in AlertEnterprise Guardian 4.1.14.2.2.1. One can bypass manager approval...
High
Unreviewed
CVE-2025-31511
was published
Jul 22, 2025
An issue was discovered in AlertEnterprise Guardian 4.1.14.2.2.1. One can bypass manager approval...
High
Unreviewed
CVE-2025-31512
was published
Jul 22, 2025
A command injection vulnerability exists that can be exploited after authentication in VIGI...
High
Unreviewed
CVE-2025-7723
was published
Jul 22, 2025
Podman Improper Certificate Validation; machine missing TLS verification
High
CVE-2025-6032
was published
for
github.com/containers/podman/v4
(Go)
Jun 25, 2025
In Netgear R7000 V1.3.1.64_10.1.36 and EAX80 V1.0.1.70_1.0.2, the USERLIMIT_GLOBAL option is set...
High
Unreviewed
CVE-2025-44650
was published
Jul 21, 2025
In TRENDnet TEW-WLC100P 2.03b03, the i_dont_care_about_security_and_use_aggressive_mode_psk...
High
Unreviewed
CVE-2025-44647
was published
Jul 21, 2025
In TRENDnet TPL-430AP FW1.0, the USERLIMIT_GLOBAL option is set to 0 in the bftpd-related...
High
Unreviewed
CVE-2025-44651
was published
Jul 21, 2025
In Netgear RAX30 V1.0.10.94_3, the USERLIMIT_GLOBAL option is set to 0 in multiple bftpd-related...
High
Unreviewed
CVE-2025-44652
was published
Jul 21, 2025
In H3C GR2200 MiniGR1A0V100R016, the USERLIMIT_GLOBAL option is set to 0 in the /etc/bftpd.conf....
High
Unreviewed
CVE-2025-44653
was published
Jul 21, 2025
An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139...
High
Unreviewed
CVE-2025-46118
was published
Jul 21, 2025
Ai2 playground web service (playground.allenai.org) LLM chat through 2025-06-03 is vulnerable to...
High
Unreviewed
CVE-2025-51865
was published
Jul 22, 2025
parse_string in cJSON.c in cJSON before 2016-10-02 has a buffer over-read, as demonstrated by a...
High
Unreviewed
CVE-2016-10749
was published
May 24, 2022
In BlackBerry QNX Software Development Platform (SDP) 6.6.0, the default configuration of the QNX...
High
Unreviewed
CVE-2017-3893
was published
May 17, 2022
With the aid of the diagnostics_channel utility, an event can be hooked into whenever a worker...
High
Unreviewed
CVE-2025-23083
was published
Jan 22, 2025
A null pointer dereference vulnerability exists in the CDB2SQLQUERY protocol buffer message...
High
Unreviewed
CVE-2025-35966
was published
Jul 22, 2025
A null pointer dereference vulnerability exists in the net_connectmsg Protocol Buffer Message...
High
Unreviewed
CVE-2025-36520
was published
Jul 22, 2025
A null pointer dereference vulnerability exists in the Distributed Transaction component of...
High
Unreviewed
CVE-2025-48498
was published
Jul 22, 2025
A denial of service vulnerability exists in the Distributed Transaction Commit/Abort Operation...
High
Unreviewed
CVE-2025-46354
was published
Jul 22, 2025
A denial of service vulnerability exists in the Bloomberg Comdb2 8.1 database when handling a...
High
Unreviewed
CVE-2025-36512
was published
Jul 22, 2025
Path Traversal in restore_run_backup() in AIM 3.28.0 allows remote attackers to write arbitrary...
High
Unreviewed
CVE-2025-51463
was published
Jul 22, 2025
Path Traversal vulnerability in onnx.external_data_helper.save_external_data in ONNX 1.17.0...
High
Unreviewed
CVE-2025-51480
was published
Jul 22, 2025
Remote Code Execution in letta.server.rest_api.routers.v1.tools.run_tool_from_source in letta-ai...
High
Unreviewed
CVE-2025-51482
was published
Jul 22, 2025
A maliciously crafted RFA file, when parsed through Autodesk Revit, can force an Out-of-Bounds...
High
Unreviewed
CVE-2025-5042
was published
Jul 22, 2025
ProTip!
Advisories are also available from the
GraphQL API