GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,662
Maven
5,000+
npm
4,289
NuGet
760
pip
4,069
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
105,834 advisories
Filter by severity
Campcodes Online Hospital Management System 1.0 is vulnerable to SQL Injection in /admin/index...
High
Unreviewed
CVE-2025-63719
was published
Nov 19, 2025
If kdcproxy receives a request for a realm which does not have server addresses defined in its...
High
Unreviewed
CVE-2025-59088
was published
Nov 12, 2025
A flaw was found in the integration of Active Directory and the System Security Services Daemon ...
High
Unreviewed
CVE-2025-11561
was published
Oct 9, 2025
A vulnerability has been found in Tenda AC21 16.03.08.16. This vulnerability affects unknown code...
High
Unreviewed
CVE-2025-13446
was published
Nov 20, 2025
A flaw has been found in Tenda AC21 16.03.08.16. This affects an unknown part of the file /goform...
High
Unreviewed
CVE-2025-13445
was published
Nov 20, 2025
A security flaw has been discovered in Muse Group MuseHub 2.1.0.1567. The affected element is an...
High
Unreviewed
CVE-2025-13433
was published
Nov 20, 2025
Milos Paripovic OneCommander 3.102.0.0 is vulnerable to Directory Traversal. The vulnerability...
High
Unreviewed
CVE-2025-63371
was published
Nov 19, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in Narkom Communication and...
High
Unreviewed
CVE-2025-0645
was published
Nov 20, 2025
Improper input validation vulnerability in TP-Link System Inc. TL-WR940N V6 (UPnP modules), which...
High
Unreviewed
CVE-2025-11676
was published
Nov 20, 2025
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')...
High
Unreviewed
CVE-2025-0643
was published
Nov 20, 2025
A stack-based buffer overflow in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4...
High
Unreviewed
CVE-2025-58413
was published
Nov 18, 2025
The ITEL ISO FM SFN Adapter (firmware ISO2 2.0.0.0, WebServer 2.0) is vulnerable to session...
High
Unreviewed
CVE-2025-63219
was published
Nov 19, 2025
7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-11001
was published
Nov 20, 2025
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
High
Unreviewed
CVE-2025-59251
was published
Sep 24, 2025
The ELCA Star Transmitter Remote Control firmware 1.25 for STAR150, BP1000, STAR300, STAR2000,...
High
Unreviewed
CVE-2025-63209
was published
Nov 19, 2025
Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability...
High
Unreviewed
CVE-2025-13016
was published
Nov 11, 2025
Same-origin policy bypass in the DOM: Notifications component. This vulnerability affects Firefox...
High
Unreviewed
CVE-2025-13017
was published
Nov 11, 2025
Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability affects...
High
Unreviewed
CVE-2025-13025
was published
Nov 11, 2025
SQL injection vulnerability in WinPlus v24.11.27 by Informática del Este. This vulnerability...
High
Unreviewed
CVE-2025-41348
was published
Nov 18, 2025
Type Confusion in V8 in Google Chrome prior to 142.0.7444.175 allowed a remote attacker to...
High
Unreviewed
CVE-2025-13223
was published
Nov 18, 2025
Mitigation bypass in the DOM: Security component. This vulnerability affects Firefox < 145 and...
High
Unreviewed
CVE-2025-13018
was published
Nov 11, 2025
Use-after-free in the WebRTC: Audio/Video component. This vulnerability affects Firefox < 145 and...
High
Unreviewed
CVE-2025-13020
was published
Nov 11, 2025
Race condition in the Graphics component. This vulnerability affects Firefox < 145, Firefox ESR <...
High
Unreviewed
CVE-2025-13012
was published
Nov 11, 2025
Use-after-free in the Audio/Video component. This vulnerability affects Firefox < 145, Firefox...
High
Unreviewed
CVE-2025-13014
was published
Nov 11, 2025
Unlimited upload vulnerability for dangerous file types in WinPlus v24.11.27 from Informática del...
High
Unreviewed
CVE-2025-41347
was published
Nov 18, 2025
ProTip!
Advisories are also available from the
GraphQL API