GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
                  
                    
                      
                      All reviewed
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      Composer
                    
                    
                      4,963
                    
                  
                  
                    
                      
                      Erlang
                    
                    
                      39
                    
                  
                  
                    
                      
                      GitHub Actions
                    
                    
                      38
                    
                  
                  
                    
                      
                      Go
                    
                    
                      2,614
                    
                  
                  
                    
                      
                      Maven
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      npm
                    
                    
                      4,254
                    
                  
                  
                    
                      
                      NuGet
                    
                    
                      760
                    
                  
                  
                    
                      
                      pip
                    
                    
                      4,031
                    
                  
                  
                    
                      
                      Pub
                    
                    
                      12
                    
                  
                  
                    
                      
                      RubyGems
                    
                    
                      953
                    
                  
                  
                    
                      
                      Rust
                    
                    
                      1,049
                    
                  
                  
                    
                      
                      Swift
                    
                    
                      45
                    
                  
                  Unreviewed advisories
                  
                    
                      
                      All unreviewed
                    
                    
                      5,000+
                    
                  
            3,533 advisories
        Filter by severity
        
      
      
    
                    
                      Incorrect access control in the Web management interface in Each Italy Wireless Mini Router...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-63422
                      
                      was published
                      Oct 30, 2025 
                    
                  
                    
                      Each Italy Wireless Mini Router WIRELESS-N 300M v28K.MiniRouter.20190211 was discovered to store...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-63423
                      
                      was published
                      Oct 30, 2025 
                    
                  
                    
                      AG Life Logger Android App version v1.0.2.72 and before (package name com.donki.healthy),...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-61120
                      
                      was published
                      Oct 30, 2025 
                    
                  
                    
                      2nd Line Android App version v1.2.92 and before (package name com.mysecondline.app), developed by...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-61114
                      
                      was published
                      Oct 30, 2025 
                    
                  
                    
                      Kanova Android App version 1.0.27 (package name com.karelane), developed by Karely L.L.C.,...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-61119
                      
                      was published
                      Oct 30, 2025 
                    
                  
                    
                      mCarFix Motorists App version 2.3 (package name com.skytop.mcarfix), developed by Paniel Mwaura,...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-61118
                      
                      was published
                      Oct 30, 2025 
                    
                  
                    
                      TalkTalk 3.3.6 Android App contains improper access control vulnerabilities in multiple API...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-61113
                      
                      was published
                      Oct 30, 2025 
                    
                  
                    
                      ABC Fine Wine & Spirits Android App version v.11.27.5 and before (package name com.cta...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-61115
                      
                      was published
                      Oct 30, 2025 
                    
                  
                    
                      AdForest - Classified Android App version 4.0.12 (package name scriptsbundle.adforest), developed...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-61116
                      
                      was published
                      Oct 30, 2025 
                    
                  
                    
                      Senza: Keto & Fasting Android App version 2.10.15 (package name com.gl.senza), developed by Paul...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-61117
                      
                      was published
                      Oct 30, 2025 
                    
                  
                    
                      A critical severity vulnerability has been identified in the ALPR Manager role of Security Center...
                    
                      
  Critical
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-43027
                      
                      was published
                      Oct 30, 2025 
                    
                  
                    
                      An issue discovered in Dyson App v6.1.23041-23595 allows unauthenticated attackers to control...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-56558
                      
                      was published
                      Oct 29, 2025 
                    
                  
                    
                      Incorrect access control on Dataphone A920 v2025.07.161103 exposes a service on port 8888 by...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-61234
                      
                      was published
                      Oct 29, 2025 
                    
                  
                    
                      Incorrect access control in the kernel driver of ThreatFire System Monitor v4.7.0.53 allows...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-61156
                      
                      was published
                      Oct 29, 2025 
                    
                  
                    
                      Incorrect access control in the /jshERP-boot/user/info interface of jshERP up to commit 90c411a...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-60800
                      
                      was published
                      Oct 28, 2025 
                    
                  
                    
                      Unauthorized modification of arbitrary articles vulnerability exists in blog-vue-springboot.
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-60354
                      
                      was published
                      Oct 28, 2025 
                    
                  
                    
                      Silver has unrestricted traffic between Wireguard clients
                    
                      
  Moderate
                    
                
                      
                        CVE-2025-27093
                      
                      was published
                        for
                        
                          github.com/bishopfox/sliver
                        
                        (Go)
                      Oct 28, 2025 
                    
                  
                    
                      A security flaw has been discovered in code-projects Simple Food Ordering System 1.0. This issue...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-12378
                      
                      was published
                      Oct 28, 2025 
                    
                  
                    
                      A flaw has been found in MaxSite CMS up to 109. This issue affects some unknown processing of the...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-12347
                      
                      was published
                      Oct 28, 2025 
                    
                  
                    
                      A vulnerability has been found in Yonyou U8 Cloud up to 5.1sp. The impacted element is an unknown...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-12344
                      
                      was published
                      Oct 28, 2025 
                    
                  
                    
                      A vulnerability was detected in MaxSite CMS up to 109. This vulnerability affects unknown code of...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-12346
                      
                      was published
                      Oct 28, 2025 
                    
                  
                    
                      A weakness has been identified in Willow CMS up to 1.4.0. Impacted is an unknown function of the...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-12331
                      
                      was published
                      Oct 28, 2025 
                    
                  
                    
                      IDOR vulnerability in Educare ERP 1.0 (2025-04-22) allows unauthorized access to sensitive data...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-60982
                      
                      was published
                      Oct 27, 2025 
                    
                  
                    
                      An issue was discovered in BAE SOCET GXP before 4.6.0.2. The SOCET GXP Job Service does not...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-54968
                      
                      was published
                      Oct 27, 2025 
                    
                  
                    
                      An issue was discovered in BAE SOCET GXP before 4.6.0.2. The SOCET GXP Job Status Service fails...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-54970
                      
                      was published
                      Oct 27, 2025 
                    
                  
        
        ProTip!
        Advisories are also available from the 
        GraphQL API