GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,768
Erlang
35
GitHub Actions
29
Go
2,332
Maven
5,000+
npm
3,965
NuGet
713
pip
3,748
Pub
12
RubyGems
921
Rust
975
Swift
38
Unreviewed advisories
All unreviewed
5,000+
4,624 advisories
Filter by severity
Drupal Quick Node Block Missing Authorization vulnerability
Moderate
CVE-2025-48013
was published
for
drupal/quick_node_block
(Composer)
Jun 11, 2025
Drupal Quick Node Block Missing Authorization vulnerability
Moderate
CVE-2025-48444
was published
for
drupal/quick_node_block
(Composer)
Jun 11, 2025
SunGrow's back end users system iSolarCloud https://isolarcloud.com uses an MQTT service to...
High
Unreviewed
CVE-2025-29756
was published
Jun 11, 2025
A vulnerability in the K7RKScan.sys driver, part of the K7 Security Anti-Malware suite, allows a...
Moderate
Unreviewed
CVE-2025-1055
was published
Jun 11, 2025
GeoServer Missing Authorization on REST API Index
Moderate
CVE-2025-27505
was published
for
org.geoserver.web:gs-web-app
(Maven)
Jun 10, 2025
Missing Authorization vulnerability in Roland Beaussant Audio Editor & Recorder allows Exploiting...
Moderate
Unreviewed
CVE-2025-49509
was published
Jun 10, 2025
SAP S/4HANA Manage Central Purchase Contract does not perform necessary authorization checks for...
Moderate
Unreviewed
CVE-2025-42984
was published
Jun 10, 2025
SAP Manage Processing Rules (For Bank Statement) allows an attacker with basic privileges to edit...
Moderate
Unreviewed
CVE-2025-42987
was published
Jun 10, 2025
SAP S/4HANA (Bank Account Application) does not perform necessary authorization checks. This...
Moderate
Unreviewed
CVE-2025-42991
was published
Jun 10, 2025
Due to a missing authorization check vulnerability in SAP S/4HANA (Enterprise Event Enablement),...
Moderate
Unreviewed
CVE-2025-42993
was published
Jun 10, 2025
RFC inbound processing�does not perform necessary authorization checks for an authenticated user,...
Critical
Unreviewed
CVE-2025-42989
was published
Jun 10, 2025
SAP GRC allows a non-administrative user to access and initiate transaction which could allow...
High
Unreviewed
CVE-2025-42982
was published
Jun 10, 2025
SAP Business Warehouse and SAP Plug-In Basis allows an authenticated attacker to drop arbitrary...
High
Unreviewed
CVE-2025-42983
was published
Jun 10, 2025
Backend.AI Missing Authorization vulnerability
High
CVE-2025-49651
was published
for
backend.ai
(pip)
Jun 9, 2025
Missing Authorization vulnerability in relentlo StyleAI allows Accessing Functionality Not...
Moderate
Unreviewed
CVE-2025-48139
was published
Jun 9, 2025
Missing Authorization vulnerability in WP Swings Membership For WooCommerce allows Accessing...
High
Unreviewed
CVE-2025-49265
was published
Jun 9, 2025
Missing Authorization vulnerability in Crypto Cloud CryptoCloud - Crypto Payment Gateway allows...
Moderate
Unreviewed
CVE-2025-48147
was published
Jun 9, 2025
Missing Authorization vulnerability in Fahad Mahmood Stock Locations for WooCommerce allows...
High
Unreviewed
CVE-2025-47463
was published
Jun 9, 2025
Missing Authorization vulnerability in Icegram Icegram Collect – Easy Form, Lead Collection and...
High
Unreviewed
CVE-2025-47527
was published
Jun 9, 2025
Missing Authorization vulnerability in looks_awesome Team Builder allows Exploiting Incorrectly...
High
Unreviewed
CVE-2025-32308
was published
Jun 9, 2025
Smart Parking Management System from Honding Technology has a Missing Authorization vulnerability...
High
Unreviewed
CVE-2025-5894
was published
Jun 9, 2025
The Profiler – What Slowing Down Your WP plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2025-5814
was published
Jun 7, 2025
Missing Authorization vulnerability in Christiaan Pieterse MaxiBlocks allows Privilege Escalation...
High
Unreviewed
CVE-2025-47601
was published
Jun 7, 2025
Missing Authorization vulnerability in WP Map Plugins Interactive Regional Map of Florida allows...
Moderate
Unreviewed
CVE-2025-49441
was published
Jun 6, 2025
Missing Authorization vulnerability in fraudlabspro FraudLabs Pro for WooCommerce allows...
Moderate
Unreviewed
CVE-2025-49320
was published
Jun 6, 2025
ProTip!
Advisories are also available from the
GraphQL API