GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,680
Maven
5,000+
npm
4,308
NuGet
760
pip
4,081
Pub
12
RubyGems
958
Rust
1,061
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
1,495 advisories
Filter by severity
BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP...
Moderate
Unreviewed
CVE-2025-60876
was published
Nov 10, 2025
A vulnerability was identified in projectworlds Online Notes Sharing Platform 1.0. Affected by...
Moderate
Unreviewed
CVE-2025-12862
was published
Nov 7, 2025
There is an arbitrary file download vulnerability in GuoMinJim PersonManage thru commit...
Moderate
Unreviewed
CVE-2025-63686
was published
Nov 7, 2025
Improper access control in Devolutions Server 2025.3.5.0 and earlier allows a View-only user to...
Moderate
Unreviewed
CVE-2025-12808
was published
Nov 6, 2025
A vulnerability in the XiaozhangBang Voluntary Like System V8.8 allows remote attackers to...
Moderate
Unreviewed
CVE-2025-60784
was published
Nov 5, 2025
This issue was addressed by restricting options offered on a locked device. This issue is fixed...
Moderate
Unreviewed
CVE-2025-43418
was published
Nov 5, 2025
This issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.2. An...
Moderate
Unreviewed
CVE-2025-43481
was published
Nov 4, 2025
An authorization issue was addressed with improved state management. This issue is fixed in iOS...
Moderate
Unreviewed
CVE-2025-43498
was published
Nov 4, 2025
A privacy issue was addressed with improved private data redaction for log entries. This issue is...
Moderate
Unreviewed
CVE-2025-43477
was published
Nov 4, 2025
This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sonoma...
Moderate
Unreviewed
CVE-2025-43499
was published
Nov 4, 2025
A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2025-43412
was published
Nov 4, 2025
A permissions issue was addressed with improved validation. This issue is fixed in macOS Sonoma...
Moderate
Unreviewed
CVE-2025-43414
was published
Nov 4, 2025
This issue was addressed with improved validation of symlinks. This issue is fixed in visionOS 26...
Moderate
Unreviewed
CVE-2025-43448
was published
Nov 4, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.8.2,...
Moderate
Unreviewed
CVE-2025-43396
was published
Nov 4, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.8.2,...
Moderate
Unreviewed
CVE-2025-43322
was published
Nov 4, 2025
This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sonoma...
Moderate
Unreviewed
CVE-2025-43334
was published
Nov 4, 2025
The issue was addressed by adding additional logic. This issue is fixed in macOS Sonoma 14.8.2,...
Moderate
Unreviewed
CVE-2025-43335
was published
Nov 4, 2025
A vulnerability was identified in code-projects Simple Online Hotel Reservation System 2.0. The...
Moderate
Unreviewed
CVE-2025-12593
was published
Nov 2, 2025
Summer Pearl Group Vacation Rental Management Platform prior to v1.0.2 suffers from insufficient...
Moderate
Unreviewed
CVE-2025-63562
was published
Oct 31, 2025
A security flaw has been discovered in code-projects Simple Food Ordering System 1.0. This issue...
Moderate
Unreviewed
CVE-2025-12378
was published
Oct 28, 2025
A vulnerability has been found in Yonyou U8 Cloud up to 5.1sp. The impacted element is an unknown...
Moderate
Unreviewed
CVE-2025-12344
was published
Oct 28, 2025
A flaw has been found in MaxSite CMS up to 109. This issue affects some unknown processing of the...
Moderate
Unreviewed
CVE-2025-12347
was published
Oct 28, 2025
A vulnerability was detected in MaxSite CMS up to 109. This vulnerability affects unknown code of...
Moderate
Unreviewed
CVE-2025-12346
was published
Oct 28, 2025
A weakness has been identified in Willow CMS up to 1.4.0. Impacted is an unknown function of the...
Moderate
Unreviewed
CVE-2025-12331
was published
Oct 28, 2025
IDOR vulnerability in Educare ERP 1.0 (2025-04-22) allows unauthorized access to sensitive data...
Moderate
Unreviewed
CVE-2025-60982
was published
Oct 27, 2025
ProTip!
Advisories are also available from the
GraphQL API