GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,785
Erlang
36
GitHub Actions
29
Go
2,358
Maven
5,000+
npm
3,979
NuGet
720
pip
3,777
Pub
12
RubyGems
924
Rust
981
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
56 advisories
Filter by severity
A vulnerability, which was classified as problematic, has been found in Fengoffice Feng Office 3...
Moderate
Unreviewed
CVE-2025-5877
was published
Jun 9, 2025
A vulnerability, which was classified as problematic, has been found in ywoa up to 2024.07.03....
Moderate
Unreviewed
CVE-2025-1225
was published
Feb 12, 2025
CloudLinux
CageFS 7.0.8-2 or below insufficiently restricts file paths supplied to
the sendmail...
Moderate
Unreviewed
CVE-2020-36772
was published
Jan 22, 2024
External control of file name or path in Microsoft Defender for Endpoint allows an authorized...
Moderate
Unreviewed
CVE-2025-26684
was published
May 13, 2025
In certain highly specific configurations of the host system and MongoDB server binary...
Moderate
Unreviewed
CVE-2024-8207
was published
Aug 27, 2024
The PSFTPd 10.0.4 Build 729 server does not prevent FTP bounce scans by default. These can be...
Moderate
Unreviewed
CVE-2017-15269
was published
May 13, 2022
An elevation of privilege vulnerability exists in Windows 10, Windows 8.1, Windows RT 8.1,...
Moderate
Unreviewed
CVE-2017-0211
was published
May 13, 2022
In onPreferenceClick of AccountTypePreferenceLoader.java, there is a possible way to retrieve...
Moderate
Unreviewed
CVE-2022-20515
was published
Dec 20, 2022
Netskope Client on Mac OS is impacted by a vulnerability in which the postinstall script does not...
Moderate
Unreviewed
CVE-2024-13177
was published
Apr 15, 2025
A vulnerability, which was classified as problematic, was found in zhangyanbo2007 youkefu up to 4...
Moderate
Unreviewed
CVE-2025-3241
was published
Apr 4, 2025
A vulnerability, which was classified as problematic, has been found in crmeb_java up to 1.3.4....
Moderate
Unreviewed
CVE-2025-2365
was published
Mar 17, 2025
A externally controlled reference to a resource in another sphere in Fortinet FortiManager before...
Moderate
Unreviewed
CVE-2022-23439
was published
Jan 22, 2025
A file overwrite vulnerability exists in gaizhenbiao/chuanhuchatgpt versions <= 20240410. This...
Moderate
Unreviewed
CVE-2024-5823
was published
Oct 29, 2024
A vulnerability was found in SourceCodester Simple Online Bidding System 1.0. It has been...
Moderate
Unreviewed
CVE-2024-7911
was published
Aug 18, 2024
A vulnerability exists in the Rockwell Automation Emulate3D™, which could be leveraged to execute...
Moderate
Unreviewed
CVE-2024-6079
was published
Aug 13, 2024
Dell Command | Update, Dell Update, and Alienware Update UWP, versions prior to 5.4, contain an...
Moderate
Unreviewed
CVE-2024-28962
was published
Aug 6, 2024
Windows Distributed Transaction Coordinator Remote Code Execution Vulnerability
Moderate
Unreviewed
CVE-2024-38049
was published
Jul 9, 2024
The WireGuard client 0.5.3 on Windows insecurely configures the operating system and firewall...
Moderate
Unreviewed
CVE-2023-35838
was published
Aug 10, 2023
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with...
Moderate
Unreviewed
CVE-2023-37856
was published
Aug 9, 2023
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with...
Moderate
Unreviewed
CVE-2023-37855
was published
Aug 9, 2023
A vulnerability exists in Palo Alto Networks PAN-OS software that enables an authenticated...
Moderate
Unreviewed
CVE-2023-38046
was published
Jul 12, 2023
A file disclosure vulnerability in Palo Alto Networks PAN-OS software enables an authenticated...
Moderate
Unreviewed
CVE-2023-0008
was published
May 10, 2023
When receiving an HTML email that contained an <code>iframe</code> element, which used a <code...
Moderate
Unreviewed
CVE-2022-3032
was published
Dec 22, 2022
A file disclosure vulnerability in the Palo Alto Networks Cortex XSOAR server software enables an...
Moderate
Unreviewed
CVE-2023-0003
was published
Feb 8, 2023
A vulnerability classified as problematic was found in ForU CMS up to 2020-06-23. Affected by...
Moderate
Unreviewed
CVE-2024-0728
was published
Jan 19, 2024
ProTip!
Advisories are also available from the
GraphQL API