GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,790
Erlang
36
GitHub Actions
29
Go
2,370
Maven
5,000+
npm
3,994
NuGet
720
pip
3,783
Pub
12
RubyGems
927
Rust
982
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,083 advisories
Filter by severity
Improper Access Control vulnerability in Wikimedia Foundation Mediawiki - Scribunto Extension...
High
Unreviewed
CVE-2025-53501
was published
Jul 3, 2025
Misconfigured settings in IITB SSO v1.1.0 allow attackers to access sensitive application data.
High
Unreviewed
CVE-2025-45081
was published
Jul 1, 2025
Mikrotik RouterOS VXLAN Source IP Improper Access Control Vulnerability. This vulnerability...
High
Unreviewed
CVE-2025-6443
was published
Jun 26, 2025
An issue in NCR Terminal Handler v1.5.1 allows low-level privileged authenticated attackers to...
High
Unreviewed
CVE-2023-47294
was published
Jun 23, 2025
ACL configured in ip_allow.config or remap.config does not use IP addresses that are provided by...
High
Unreviewed
CVE-2025-31698
was published
Jun 19, 2025
An insecure access control vulnerability in Trend Micro Apex One and Trend Micro Worry-Free...
High
Unreviewed
CVE-2025-49154
was published
Jun 17, 2025
Dell iDRAC Tools, version(s) prior to 11.3.0.0, contain(s) an Improper Access Control...
High
Unreviewed
CVE-2025-27689
was published
Jun 12, 2025
Improper access control in Windows SDK allows an authorized attacker to elevate privileges locally.
High
Unreviewed
CVE-2025-47962
was published
Jun 10, 2025
Improper access control in Windows SMB allows an authorized attacker to elevate privileges over a...
High
Unreviewed
CVE-2025-33073
was published
Jun 10, 2025
Improper access control in Windows Installer allows an authorized attacker to elevate privileges...
High
Unreviewed
CVE-2025-32714
was published
Jun 10, 2025
Improper access control in Microsoft Local Security Authority Server (lsasrv) allows an...
High
Unreviewed
CVE-2025-33056
was published
Jun 10, 2025
Adobe Commerce versions 2.4.8, 2.4.7-p5, 2.4.6-p10, 2.4.5-p12, 2.4.4-p13 and earlier are affected...
High
Unreviewed
CVE-2025-43586
was published
Jun 10, 2025
Memory corruption may occur while attaching VM when the HLOS retains access to VM.
High
Unreviewed
CVE-2024-53010
was published
Jun 3, 2025
Improper access control in user group management in Devolutions Server 2025.1.7.0 and earlier...
High
Unreviewed
CVE-2025-4433
was published
May 30, 2025
When installing Tenable Network Monitor to a non-default location on a Windows host, Tenable...
High
Unreviewed
CVE-2025-24916
was published
May 23, 2025
In Tenable Network Monitor versions prior to 6.5.1 on a Windows host, it was found that a non...
High
Unreviewed
CVE-2025-24917
was published
May 23, 2025
This High severity PrivEsc (Privilege Escalation) vulnerability was introduced in versions:
9.12...
High
Unreviewed
CVE-2025-22157
was published
May 20, 2025
Microsoft Defender for Endpoint Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2025-47161
was published
May 15, 2025
Improper access control in the memory controller configurations for some Intel(R) Xeon(R) 6...
High
Unreviewed
CVE-2025-20100
was published
May 13, 2025
Improper access control in Azure File Sync allows an authorized attacker to elevate privileges...
High
Unreviewed
CVE-2025-29973
was published
May 13, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-31260
was published
May 13, 2025
A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura...
High
Unreviewed
CVE-2025-31247
was published
May 13, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.6,...
High
Unreviewed
CVE-2025-31232
was published
May 13, 2025
An integer overflow was addressed with improved input validation. This issue is fixed in watchOS...
High
Unreviewed
CVE-2025-31221
was published
May 13, 2025
This issue was addressed through improved state management. This issue is fixed in watchOS 11.5,...
High
Unreviewed
CVE-2025-31212
was published
May 13, 2025
ProTip!
Advisories are also available from the
GraphQL API