GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
344 advisories
Filter by severity
Improper input validation in the TLS 1.3 CertificateVerify signature algorithm negotiation in...
Low
Unreviewed
CVE-2025-11934
was published
Nov 22, 2025
Improper Input Validation in the TLS 1.3 CKS extension parsing in wolfSSL 5.8.2 and earlier on...
Low
Unreviewed
CVE-2025-11933
was published
Nov 22, 2025
With TLS 1.2 connections a client can use any digest, specifically a weaker digest that is...
Low
Unreviewed
CVE-2025-12889
was published
Nov 22, 2025
Improper input validation in some firmware for some Intel(R) Graphics Drivers and Intel LTS...
Low
Unreviewed
CVE-2025-25216
was published
Nov 11, 2025
A denial-of-service issue was addressed with improved input validation. This issue is fixed in...
Low
Unreviewed
CVE-2025-43365
was published
Nov 4, 2025
HCL Unica MaxAI Workbench is vulnerable to improper input validation. This allows attackers to...
Low
Unreviewed
CVE-2025-31995
was published
Oct 13, 2025
Rapid7 AppSpider Pro versions below 7.5.021 suffer from a project name validation vulnerability,...
Low
Unreviewed
CVE-2025-11195
was published
Sep 30, 2025
A flaw has been found in SEAT Queue Ticket Kiosk up to 20250827. This affects an unknown part of...
Low
Unreviewed
CVE-2025-10252
was published
Sep 11, 2025
OpenAM (OpenAM Consortium Edition) contains a vulnerability that may cause it to malfunction as a...
Low
Unreviewed
CVE-2025-8662
was published
Sep 3, 2025
Improper input validation in the Intel Edger8r Tool for some Intel(R) SGX SDK may allow an...
Low
Unreviewed
CVE-2025-32004
was published
Aug 12, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through improper input.
Low
Unreviewed
CVE-2025-25212
was published
Aug 11, 2025
A vulnerability was found in Antabot White-Jotter 0.22. It has been declared as critical. This...
Low
Unreviewed
CVE-2025-8708
was published
Aug 8, 2025
When passing values outside of the expected range to QColorTransferGenericFunction it can cause a...
Low
Unreviewed
CVE-2025-5992
was published
Jul 11, 2025
A vulnerability was found in Monitorr up to 1.7.6m. It has been classified as problematic. This...
Low
Unreviewed
CVE-2025-7060
was published
Jul 4, 2025
Adobe Experience Manager versions 6.5.22 and earlier are affected by an Improper Input Validation...
Low
Unreviewed
CVE-2025-47096
was published
Jun 11, 2025
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through improper input.
Low
Unreviewed
CVE-2025-27242
was published
Jun 8, 2025
Insecure Direct Object Reference (IDOR) vulnerability in the eSignaViewer component in eSigna...
Low
Unreviewed
CVE-2025-4762
was published
May 15, 2025
A vulnerability, which was classified as critical, has been found in MaxD Lightning Module 4.43...
Low
Unreviewed
CVE-2025-0974
was published
Feb 3, 2025
HCL MyXalytics is affected by a weak input validation vulnerability. The application accepts...
Low
Unreviewed
CVE-2024-42175
was published
Jan 11, 2025
Path Traversal and Insecure Direct Object Reference (IDOR) vulnerabilities in the eSignaViewer...
Low
Unreviewed
CVE-2024-12014
was published
Dec 20, 2024
Adobe Experience Manager versions 6.5.21 and earlier are affected by an Improper Input Validation...
Low
Unreviewed
CVE-2024-43755
was published
Dec 11, 2024
Adobe Experience Manager versions 6.5.21 and earlier are affected by an Improper Input Validation...
Low
Unreviewed
CVE-2024-52831
was published
Dec 11, 2024
Insufficient validation of filenames against control characters in Apache Subversion repositories...
Low
Unreviewed
CVE-2024-46901
was published
Dec 9, 2024
When a URL is added to the map element, it is recorded in the database with sequential IDs. Upon...
Low
Unreviewed
CVE-2024-22117
was published
Nov 26, 2024
Improper Input Validation in some Intel(R) VROC software before version 8.6.0.2003 may allow an...
Low
Unreviewed
CVE-2024-32485
was published
Nov 13, 2024
ProTip!
Advisories are also available from the
GraphQL API