GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,778
Erlang
36
GitHub Actions
29
Go
2,336
Maven
5,000+
npm
3,969
NuGet
713
pip
3,767
Pub
12
RubyGems
923
Rust
976
Swift
38
Unreviewed advisories
All unreviewed
5,000+
113 advisories
Filter by severity
Protection mechanism failure in Windows DHCP Server allows an unauthorized attacker to deny...
High
Unreviewed
CVE-2025-32725
was published
Jun 10, 2025
Protection mechanism failure in Windows DHCP Server allows an unauthorized attacker to deny...
High
Unreviewed
CVE-2025-33050
was published
Jun 10, 2025
Microsoft Excel Security Feature Bypass Vulnerability.
High
Unreviewed
CVE-2022-33631
was published
Aug 10, 2022
A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-31189
was published
May 30, 2025
A logic issue was addressed with improved state management. This issue is fixed in iTunes 12.12.4...
High
Unreviewed
CVE-2022-26774
was published
May 27, 2022
This issue was addressed with improved environment sanitization. This issue is fixed in macOS...
High
Unreviewed
CVE-2022-26696
was published
Sep 21, 2022
A logic issue was addressed with improved checks. This issue is fixed in iOS 15.6 and iPadOS 15.6...
High
Unreviewed
CVE-2022-32802
was published
Sep 21, 2022
There is a possible bypass of carrier restrictions due to an unusual root cause. This could lead...
High
Unreviewed
CVE-2025-27700
was published
May 27, 2025
Insufficient policy enforcement in iOS Security UI in Google Chrome prior to 121.0.6167.85...
High
Unreviewed
CVE-2024-0804
was published
Jan 24, 2024
The HISP module has a vulnerability of bypassing the check of the data transferred in the kernel...
High
Unreviewed
CVE-2022-39011
was published
Oct 14, 2022
A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-31244
was published
May 13, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.6,...
High
Unreviewed
CVE-2025-31224
was published
May 13, 2025
Agent-to-controller security bypass vulnerabilities in Jenkins Compuware Topaz for Total Test Plugin
High
CVE-2022-43428
was published
for
com.compuware.jenkins:compuware-topaz-for-total-test
(Maven)
Oct 19, 2022
Jenkins Compuware Topaz for Total Test Plugin vulnerable to Protection Mechanism Failure
High
CVE-2022-43429
was published
for
com.compuware.jenkins:compuware-topaz-for-total-test
(Maven)
Oct 19, 2022
The use of `module.constructor.createRequire()` can bypass the policy mechanism and require...
High
Unreviewed
CVE-2023-32006
was published
Aug 15, 2023
In the Linux kernel before 6.6.7, an untrusted VMM can trigger int80 syscall handling at any...
High
Unreviewed
CVE-2024-25744
was published
Feb 12, 2024
A logic issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.6.8,...
High
Unreviewed
CVE-2022-32910
was published
Nov 2, 2022
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7...
High
Unreviewed
CVE-2013-2465
was published
May 14, 2022
A logic issue was addressed with improved checks. This issue is fixed in tvOS 16.1, iOS 15.7.1...
High
Unreviewed
CVE-2022-42801
was published
Nov 2, 2022
A logic issue was addressed with improved checks. This issue is fixed in iOS 16.2 and iPadOS 16.2...
High
Unreviewed
CVE-2022-42848
was published
Dec 15, 2022
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations...
High
Unreviewed
CVE-2017-10952
was published
May 13, 2022
Siemens SINUMERIK Integrate Operate Clients between 2.0.3.00.016 (including) and 2.0.6 (excluding...
High
Unreviewed
CVE-2017-2685
was published
May 13, 2022
Rockwell Automation FactoryTalk Services Platform v6.11 and earlier, if FactoryTalk Security is...
High
Unreviewed
CVE-2021-32960
was published
Apr 3, 2022
Web-accessible extension pages (pages with a moz-extension:// scheme) were not correctly...
High
Unreviewed
CVE-2022-22761
was published
Dec 22, 2022
The memory management module has a logic bypass vulnerability.Successful exploitation of this...
High
Unreviewed
CVE-2022-46762
was published
Jan 6, 2023
ProTip!
Advisories are also available from the
GraphQL API