GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,894
Erlang
38
GitHub Actions
38
Go
2,552
Maven
5,000+
npm
4,224
NuGet
746
pip
3,999
Pub
12
RubyGems
953
Rust
1,041
Swift
45
Unreviewed advisories
All unreviewed
5,000+
884 advisories
Filter by severity
Insecure deserialization in Ivanti Endpoint Manager allows a local authenticated attacker to...
High
Unreviewed
CVE-2025-11622
was published
Oct 13, 2025
Deserialization of Untrusted Data vulnerability in awesomesupport Awesome Support allows Object...
High
Unreviewed
CVE-2025-58662
was published
Sep 22, 2025
Deserialization of Untrusted Data vulnerability in raoinfotech GSheets Connector allows Object...
High
Unreviewed
CVE-2025-53465
was published
Sep 22, 2025
Deserialization of Untrusted Data vulnerability in ConveyThis Language Translate Widget for...
High
Unreviewed
CVE-2025-57919
was published
Sep 22, 2025
Keras is vulnerable to Deserialization of Untrusted Data
High
CVE-2025-9906
was published
for
keras
(pip)
Sep 19, 2025
A Java deserialisation vulnerability has been discovered in Jaspersoft Library. Improper handling...
High
Unreviewed
CVE-2025-10492
was published
Sep 16, 2025
Monai: Unsafe use of Pickle deserialization may lead to RCE
High
CVE-2025-58757
was published
for
monai
(pip)
Sep 9, 2025
MONAI: Unsafe torch usage may lead to arbitrary code execution
High
CVE-2025-58756
was published
for
monai
(pip)
Sep 9, 2025
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to...
High
Unreviewed
CVE-2025-54897
was published
Sep 9, 2025
Deserialization of Untrusted Data vulnerability in ThemeMove ThemeMove Core allows Object...
High
Unreviewed
CVE-2025-53303
was published
Sep 9, 2025
Deserialization of Untrusted Data vulnerability in webdevstudios Constant Contact for WordPress...
High
Unreviewed
CVE-2025-48101
was published
Sep 9, 2025
An unauthenticated attacker can trick a local user into executing arbitrary commands by opening a...
High
Unreviewed
CVE-2025-41701
was published
Sep 9, 2025
In createIntentsList of PackageParser.java , there is a possible way to bypass lazy bundle...
High
Unreviewed
CVE-2025-32312
was published
Sep 5, 2025
Deserialization of Untrusted Data vulnerability in aThemeArt Translations eDS Responsive Menu...
High
Unreviewed
CVE-2025-58839
was published
Sep 5, 2025
Deserialization of Untrusted Data vulnerability in Rubel Miah Aitasi Coming Soon allows Object...
High
Unreviewed
CVE-2025-58815
was published
Sep 5, 2025
In assertSafeToStartCustomActivity of AppRestrictionsFragment.java , there is a possible way to...
High
Unreviewed
CVE-2025-48535
was published
Sep 4, 2025
Deserialization of Untrusted Data vulnerability in enituretechnology LTL Freight Quotes – Day &...
High
Unreviewed
CVE-2025-58642
was published
Sep 3, 2025
Deserialization of Untrusted Data vulnerability in enituretechnology LTL Freight Quotes - TQL...
High
Unreviewed
CVE-2025-58644
was published
Sep 3, 2025
Deserialization of Untrusted Data vulnerability in enituretechnology LTL Freight Quotes –...
High
Unreviewed
CVE-2025-58643
was published
Sep 3, 2025
Deserialization of Untrusted Data vulnerability in Sitecore Experience Manager (XM), Sitecore...
High
Unreviewed
CVE-2025-53691
was published
Sep 3, 2025
Anritsu ShockLine CHX File Parsing Deserialization of Untrusted Data Remote Code Execution...
High
Unreviewed
CVE-2025-7976
was published
Sep 2, 2025
There is a deserialization of untrusted data vulnerability in Digilent DASYLab. This...
High
Unreviewed
CVE-2025-9188
was published
Sep 2, 2025
Deserialization of Untrusted Data vulnerability in magepeopleteam WpEvently allows Object...
High
Unreviewed
CVE-2025-54742
was published
Aug 28, 2025
Deserialization of Untrusted Data vulnerability in emarket-design Employee Spotlight allows...
High
Unreviewed
CVE-2025-53583
was published
Aug 28, 2025
Deserialization of Untrusted Data vulnerability in emarket-design WP Ticket Customer Service...
High
Unreviewed
CVE-2025-53584
was published
Aug 28, 2025
ProTip!
Advisories are also available from the
GraphQL API