GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,700
Maven
5,000+
npm
4,328
NuGet
761
pip
4,100
Pub
12
RubyGems
958
Rust
1,064
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
4,776 advisories
Filter by severity
In Splunk Enterprise versions below 10.0.2, 9.4.6, 9.3.8, and 9.2.10, and versions below 3.9.10,...
Moderate
Unreviewed
CVE-2025-20389
was published
Dec 3, 2025
Improper input validation in the BitstreamWriter::write_bits() function of Tempus Ex hello-video...
Moderate
Unreviewed
CVE-2025-63095
was published
Dec 1, 2025
Improper Input Validation vulnerability in CyberArk CyberArk Secure Web Sessions Extension on...
Moderate
Unreviewed
CVE-2025-13762
was published
Nov 27, 2025
NVIDIA DGX Spark GB10 contains a vulnerability in OSROOT firmware, where an attacker could cause...
Moderate
Unreviewed
CVE-2025-33191
was published
Nov 25, 2025
Improper input validation in the TLS 1.3 KeyShareEntry parsing in wolfSSL v5.8.2 on multiple...
Moderate
Unreviewed
CVE-2025-11936
was published
Nov 22, 2025
The Booking Plugin for WordPress Appointments – Time Slot plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-12842
was published
Nov 19, 2025
Improper input validation for some Intel(R) oneAPI Math Kernel Library before version 2025.2...
Moderate
Unreviewed
CVE-2025-31948
was published
Nov 11, 2025
Improper input validation for some Intel QuickAssist Technology software before version 2.6.0...
Moderate
Unreviewed
CVE-2025-30509
was published
Nov 11, 2025
Improper input validation for some Intel(R) PROSet/Wireless WiFi Software for Windows before...
Moderate
Unreviewed
CVE-2025-24512
was published
Nov 11, 2025
Improper input validation for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001...
Moderate
Unreviewed
CVE-2025-24847
was published
Nov 11, 2025
Improper input validation for some Intel VTune Profiler before version 2025.1 within Ring 3: User...
Moderate
Unreviewed
CVE-2025-20056
was published
Nov 11, 2025
Improper Input Validation vulnerability in NETGEAR R6260 and NETGEAR R6850 allows unauthenticated...
Moderate
Unreviewed
CVE-2025-12942
was published
Nov 11, 2025
Improper input validation
in NETGEAR DGN2200v4 (N300 Wireless ADSL2+ Modem Router) allows...
Moderate
Unreviewed
CVE-2025-12944
was published
Nov 11, 2025
Improper input validation in OneFlow v0.9.0 allows attackers to cause a segmentation fault via...
Moderate
Unreviewed
CVE-2025-63397
was published
Nov 11, 2025
Insufficient validation of untrusted input in Downloads in Google Chrome on Android prior to 140...
Moderate
Unreviewed
CVE-2025-12908
was published
Nov 8, 2025
A DOM-based Cross-Site Scripting (XSS) vulnerability exists in the text editor feature of the...
Moderate
Unreviewed
CVE-2025-63785
was published
Nov 7, 2025
CVE-2025-59596 is a denial-of-service vulnerability in Secure Access
Windows client versions 12...
Moderate
Unreviewed
CVE-2025-59596
was published
Nov 5, 2025
An issue was discovered in VTS in Samsung Mobile Processor and Wearable Processor Exynos 1280,...
Moderate
Unreviewed
CVE-2025-54327
was published
Nov 4, 2025
This issue was addressed through improved state management. This issue is fixed in Safari 26.1,...
Moderate
Unreviewed
CVE-2025-43458
was published
Nov 4, 2025
This issue was addressed through improved state management. This issue is fixed in iOS 26.1 and...
Moderate
Unreviewed
CVE-2025-43427
was published
Nov 4, 2025
This issue was addressed through improved state management. This issue is fixed in Safari 26.1,...
Moderate
Unreviewed
CVE-2025-43430
was published
Nov 4, 2025
A logic issue was addressed with improved validation. This issue is fixed in macOS Sonoma 14.8.2,...
Moderate
Unreviewed
CVE-2025-43348
was published
Nov 4, 2025
A vulnerability was found in quequnlong shiyi-blog up to 1.2.1. This impacts an unknown function...
Moderate
Unreviewed
CVE-2025-12305
was published
Oct 27, 2025
Logout Functionality not Working.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1...
Moderate
Unreviewed
CVE-2025-12278
was published
Oct 26, 2025
ProTip!
Advisories are also available from the
GraphQL API