GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,968
Erlang
39
GitHub Actions
38
Go
2,618
Maven
5,000+
npm
4,255
NuGet
760
pip
4,042
Pub
12
RubyGems
953
Rust
1,050
Swift
45
Unreviewed advisories
All unreviewed
5,000+
27,347 advisories
Filter by severity
The Noo JobMonster theme for WordPress is vulnerable to Authentication Bypass in all versions up...
Critical
Unreviewed
CVE-2025-5397
was published
Oct 31, 2025
A vulnerability in the Mount service of Veeam Backup & Replication, which allows for remote code...
Critical
Unreviewed
CVE-2025-48983
was published
Oct 31, 2025
Nagios XI versions prior to 2024R2 contain a command injection vulnerability in the WinRM plugin....
Critical
Unreviewed
CVE-2025-34284
was published
Oct 31, 2025
A malicious actor with access to the management network could exploit a misconfiguration in UniFi...
Critical
Unreviewed
CVE-2025-52665
was published
Oct 31, 2025
Nagios XI versions prior to 2026R1 contain a remote code execution vulnerability in the Core...
Critical
Unreviewed
CVE-2025-34286
was published
Oct 31, 2025
Nagios Log Server versions prior to 2024R2.0.3 contain an execution with unnecessary privileges...
Critical
Unreviewed
CVE-2025-34274
was published
Oct 31, 2025
Nagios Log Server versions prior to 2024R1.3.1 contain a code injection vulnerability where...
Critical
Unreviewed
CVE-2025-34277
was published
Oct 31, 2025
Nagios XI versions prior to 2024R1.2 are vulnerable to remote code execution (RCE) through its...
Critical
Unreviewed
CVE-2024-14003
was published
Oct 31, 2025
Nagios XI versions prior to 2024R1.0.1 contain a privilege escalation vulnerability in the System...
Critical
Unreviewed
CVE-2024-14009
was published
Oct 31, 2025
Nagios XI versions prior to 2024R1.2 contain a command injection vulnerability in the Docker...
Critical
Unreviewed
CVE-2024-14005
was published
Oct 31, 2025
Nagios XI versions prior to 2024R1.3.2 contain a remote command execution vulnerability in the...
Critical
Unreviewed
CVE-2024-14008
was published
Oct 31, 2025
Nagios XI versions prior to 2024R1.4.2 contain a remote code execution vulnerability in the...
Critical
Unreviewed
CVE-2025-34134
was published
Oct 31, 2025
Nagios Fusion versions prior to 2024R2.1 contain a brute-force bypass in the Two-Factor...
Critical
Unreviewed
CVE-2025-34249
was published
Oct 31, 2025
Anheng Mingyu Operation and Maintenance Audit and Risk Control System up to 2023-08-10 contains a...
Critical
Unreviewed
CVE-2023-7325
was published
Oct 31, 2025
Nagios XI versions prior to 2024R1 contain a missing access control vulnerability via the Web SSH...
Critical
Unreviewed
CVE-2023-7317
was published
Oct 31, 2025
Nagios XI versions prior to 2024R1.1.3 did not invalidate all other active sessions for a user...
Critical
Unreviewed
CVE-2024-13996
was published
Oct 31, 2025
Seeyon Zhiyuan OA Web Application System versions up to and including 7.0 SP1 improperly decode...
Critical
Unreviewed
CVE-2021-4461
was published
Oct 31, 2025
Nagios XI versions prior to 5.6.14 contain an authenticated remote command execution...
Critical
Unreviewed
CVE-2020-36856
was published
Oct 31, 2025
HCL DRYiCE
AEX product is impacted by lack of input validation vulnerability in a particular web...
Critical
Unreviewed
CVE-2024-30110
was published
Oct 30, 2025
Lack of Graceful Error Handling - HTTP 5xx ErrorThis issue affects BLU-IC2: through 1.19.5; BLU...
Critical
Unreviewed
CVE-2025-12516
was published
Oct 30, 2025
Systemic Internal Server Errors - HTTP 500 ResponseThis issue affects BLU-IC2: through 1.19.5;...
Critical
Unreviewed
CVE-2025-12515
was published
Oct 30, 2025
A critical severity vulnerability has been identified in the ALPR Manager role of Security Center...
Critical
Unreviewed
CVE-2025-43027
was published
Oct 30, 2025
A Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability...
Critical
Unreviewed
CVE-2025-53883
was published
Oct 30, 2025
DNN Insufficient Access Control - Image Upload allows for Site Content Overwrite
Critical
CVE-2025-64095
was published
for
DNN.PLATFORM
(NuGet)
Oct 29, 2025
D-Link DNS-343 ShareCenter devices running firmware versions up to and including 1.05 contain a...
Critical
Unreviewed
CVE-2018-25120
was published
Oct 29, 2025
ProTip!
Advisories are also available from the
GraphQL API