GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
112 advisories
Filter by severity
An authentication bypass using an alternate path or channel [CWE-288] vulnerability in Fortinet...
High
Unreviewed
CVE-2024-26009
was published
Aug 12, 2025
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions), RUGGEDCOM ROX...
High
Unreviewed
CVE-2025-40761
was published
Aug 12, 2025
A vulnerability has been identified in SINUMERIK 828D PPU.4 (All versions < V4.95 SP5), SINUMERIK...
High
Unreviewed
CVE-2025-40743
was published
Aug 12, 2025
An issue was discovered in AlertEnterprise Guardian 4.1.14.2.2.1. One can bypass manager approval...
High
Unreviewed
CVE-2025-31512
was published
Jul 22, 2025
Authentication Bypass Using an Alternate Path or Channel vulnerability in WPExperts Post SMTP...
High
Unreviewed
CVE-2025-24000
was published
Aug 7, 2025
An authentication vulnerability exists in the LG Innotek camera model LNV5110R firmware that...
High
Unreviewed
CVE-2025-7742
was published
Jul 25, 2025
The Orion Login with SMS plugin for WordPress is vulnerable to Authentication Bypass in all...
High
Unreviewed
CVE-2025-7692
was published
Jul 22, 2025
The Nokri - Job Board WordPress Theme theme for WordPress is vulnerable to privilege escalation...
High
Unreviewed
CVE-2025-1313
was published
Jul 12, 2025
Nokia Single RAN AirScale baseband allows an authenticated administrative user access to all...
High
Unreviewed
CVE-2025-24332
was published
Jul 2, 2025
Authentication Bypass Using an Alternate Path or Channel vulnerability in ThemesGrove WP SmartPay...
High
Unreviewed
CVE-2025-25171
was published
Jun 27, 2025
Authentication Bypass Using an Alternate Path or Channel vulnerability in miniOrange Password...
High
Unreviewed
CVE-2025-31019
was published
Jun 9, 2025
The Browse As plugin for WordPress is vulnerable to authentication bypass in versions up to, and...
High
Unreviewed
CVE-2025-5190
was published
May 30, 2025
In Teltonika Networks Remote Management System (RMS), it is possible to perform account pre...
High
Unreviewed
CVE-2025-4687
was published
May 29, 2025
Authentication Bypass Using an Alternate Path or Channel vulnerability in mediaticus Subaccounts...
High
Unreviewed
CVE-2025-47461
was published
May 23, 2025
The MStore API – Create Native Android & iOS Apps On The Cloud plugin for WordPress is vulnerable...
High
Unreviewed
CVE-2024-7628
was published
Aug 15, 2024
The TYPO3 CMS Backend has Broken Authentication in Backend MFA
High
CVE-2025-47941
was published
for
typo3/cms-backend
(Composer)
May 20, 2025
Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Enterprise MFA -...
High
Unreviewed
CVE-2025-47710
was published
May 14, 2025
Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Enterprise MFA -...
High
Unreviewed
CVE-2025-47707
was published
May 14, 2025
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions with...
High
Unreviewed
CVE-2025-40581
was published
May 13, 2025
A potential security vulnerability has been identified in HPE Integrated Lights-Out 5 (iLO 5) and...
High
Unreviewed
CVE-2023-50272
was published
Dec 19, 2023
Inedo ProGet through 2024.22 allows remote attackers to reach restricted functionality through...
High
Unreviewed
CVE-2025-47244
was published
May 4, 2025
Drupal Two-factor Authentication (TFA) Vulnerable to Forceful Browsing
High
CVE-2025-31694
was published
for
drupal/tfa
(Composer)
Apr 1, 2025
Authentication Bypass Using an Alternate Path or Channel vulnerability in appsbd Vitepos allows...
High
Unreviewed
CVE-2025-39535
was published
Apr 17, 2025
Authentication Bypass Using an Alternate Path or Channel vulnerability in appsbd Vitepos allows...
High
Unreviewed
CVE-2025-22277
was published
Apr 1, 2025
VMware Tools for Windows contains an authentication bypass vulnerability due to improper access...
High
Unreviewed
CVE-2025-22230
was published
Mar 25, 2025
ProTip!
Advisories are also available from the
GraphQL API