GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,792
Erlang
36
GitHub Actions
29
Go
2,377
Maven
5,000+
npm
4,002
NuGet
720
pip
3,802
Pub
12
RubyGems
927
Rust
984
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
80 advisories
Filter by severity
In ConnectWise PSA versions older than 2025.9, a
vulnerability exists where authenticated users...
Moderate
Unreviewed
CVE-2025-7204
was published
Jul 9, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in ZealousWeb Accept Authorize...
Moderate
Unreviewed
CVE-2025-53322
was published
Jun 27, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in ZealousWeb Accept Stripe...
Moderate
Unreviewed
CVE-2025-53309
was published
Jun 27, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in MultiVendorX MultiVendorX...
High
Unreviewed
CVE-2025-48261
was published
Jun 9, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in CodeRevolution Crawlomatic...
Moderate
Unreviewed
CVE-2025-49294
was published
Jun 6, 2025
The Modern Events Calendar Lite plugin for WordPress is vulnerable to Full Path Disclosure in all...
Moderate
Unreviewed
CVE-2025-5733
was published
Jun 6, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in Vanquish WooCommerce Orders &...
High
Unreviewed
CVE-2025-48331
was published
May 30, 2025
An unauthenticated HTTP GET request to the /client.php endpoint will disclose the default...
High
Unreviewed
CVE-2025-48045
was published
May 29, 2025
Netwrix Directory Manager (formerly Imanami GroupID) v11.0.0.0 and before & after v.11.1.25134.03...
Critical
Unreviewed
CVE-2025-48749
was published
May 28, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in Spotlight Spotlight - Social...
Moderate
Unreviewed
CVE-2025-39498
was published
May 26, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in WPFunnels Mail Mint allows...
High
Unreviewed
CVE-2025-47541
was published
May 23, 2025
O2 UK through 2025-05-17 allows subscribers to determine the Cell ID of other subscribers by...
Low
Unreviewed
CVE-2025-48219
was published
May 18, 2025
The WordPress Simple Shopping Cart plugin for WordPress is vulnerable to Sensitive Information...
High
Unreviewed
CVE-2025-3529
was published
Apr 23, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in WPMinds Simple WP Events...
High
Unreviewed
CVE-2025-32594
was published
Apr 17, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in Hive Support Hive Support...
High
Unreviewed
CVE-2025-32635
was published
Apr 17, 2025
Some Dahua software products have a vulnerability of sensitive information leakage. After...
Low
Unreviewed
CVE-2022-45428
was published
Dec 27, 2022
Dell PowerProtect Cyber Recovery, versions prior to 19.18.0.2, contains an Insertion of Sensitive...
Moderate
Unreviewed
CVE-2025-26335
was published
Apr 11, 2025
AssetView and AssetView CLOUD contain an issue with acquiring sensitive information from sent...
Moderate
Unreviewed
CVE-2025-27244
was published
Apr 2, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in viralloops Viral Loops WP...
Moderate
Unreviewed
CVE-2025-31842
was published
Apr 1, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in Shipmondo Shipmondo – A...
Moderate
Unreviewed
CVE-2025-27001
was published
Mar 28, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in AppExperts AppExperts –...
Moderate
Unreviewed
CVE-2025-30609
was published
Mar 24, 2025
Insecure permissions in TSplus Remote Access v17.30 allow attackers to retrieve a list of all...
Critical
Unreviewed
CVE-2025-26318
was published
Mar 4, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in ExtremePACS Extreme XDS allows...
High
Unreviewed
CVE-2024-7872
was published
Mar 6, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in brandtoss WP Mailster allows...
Moderate
Unreviewed
CVE-2025-24567
was published
Feb 14, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in GREYS Korea for WooCommerce...
Moderate
Unreviewed
CVE-2025-24639
was published
Feb 3, 2025
ProTip!
Advisories are also available from the
GraphQL API