GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,360
Erlang
33
GitHub Actions
22
Go
2,127
Maven
5,000+
npm
3,793
NuGet
683
pip
3,471
Pub
12
RubyGems
894
Rust
894
Swift
38
Unreviewed advisories
All unreviewed
5,000+
11,449 advisories
Filter by severity
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation...
Low
Unreviewed
CVE-2025-23073
was published
Jan 14, 2025
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation...
Low
Unreviewed
CVE-2025-23074
was published
Jan 14, 2025
Windows Smart Card Reader Information Disclosure Vulnerability
Low
Unreviewed
CVE-2025-21312
was published
Jan 14, 2025
Vyper Does Not Check the Success of Certain Precompile Calls
Low
CVE-2025-21607
was published
for
vyper
(pip)
Jan 14, 2025
CVE-2025-0343: Swift ASN.1 can crash when parsing maliciously formed BER/DER
Low
CVE-2025-0343
was published
for
github.com/apple/swift-asn1
(Swift)
Jan 14, 2025
An Integer Overflow or Wraparound vulnerability [CWE-190] in version 7.4.4 and below, version 7.2...
Low
Unreviewed
CVE-2024-46669
was published
Jan 14, 2025
A out-of-bounds write in Fortinet FortiOS versions 7.6.0, 7.4.0 through 7.4.6, 7.2.0 through 7.2...
Low
Unreviewed
CVE-2024-52963
was published
Jan 14, 2025
An improper neutralization of script-related html tags in a web page (basic xss) in Fortinet...
Low
Unreviewed
CVE-2024-52967
was published
Jan 14, 2025
A use of hard-coded cryptographic key in Fortinet FortiClientWindows version 7.4.0, 7.2.x all...
Low
Unreviewed
CVE-2024-50564
was published
Jan 14, 2025
A improper neutralization of special elements used in an sql command ('sql injection') in...
Low
Unreviewed
CVE-2024-55593
was published
Jan 14, 2025
An improper verification of source of a communication channel vulnerability [CWE-940] in...
Low
Unreviewed
CVE-2024-36506
was published
Jan 14, 2025
An insertion of sensitive information into sent data vulnerability [CWE-201] in FortiOS 7.6.0, 7...
Low
Unreviewed
CVE-2024-46665
was published
Jan 14, 2025
TYPO3 Information Disclosure via Exception Handling/Logger
Low
CVE-2024-55891
was published
for
typo3/cms-install
(Composer)
Jan 14, 2025
A vulnerability has been identified in Industrial Edge Management OS (IEM-OS) (All versions)....
Low
Unreviewed
CVE-2024-45385
was published
Jan 14, 2025
An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated...
Low
Unreviewed
CVE-2023-42236
was published
Jan 14, 2025
An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated...
Low
Unreviewed
CVE-2023-42235
was published
Jan 14, 2025
An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated...
Low
Unreviewed
CVE-2023-42237
was published
Jan 14, 2025
An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated...
Low
Unreviewed
CVE-2023-42238
was published
Jan 14, 2025
An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated...
Low
Unreviewed
CVE-2023-42239
was published
Jan 14, 2025
An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated...
Low
Unreviewed
CVE-2023-42240
was published
Jan 14, 2025
An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated...
Low
Unreviewed
CVE-2023-42241
was published
Jan 14, 2025
An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated...
Low
Unreviewed
CVE-2023-42242
was published
Jan 14, 2025
The Umbraco Heartcore headless client library uses a vulnerable Refit dependency package
Low
GHSA-mgr7-5782-6jh9
was published
for
Umbraco.Headless.Client.Net
(NuGet)
Jan 13, 2025
notation-go has an OS error when setting CRL cache leads to denial of signature verification
Low
CVE-2024-51491
was published
for
github.com/notaryproject/notation-go
(Go)
Jan 13, 2025
HCL MyXalytics is affected by sensitive information disclosure vulnerability. The HTTP response...
Low
Unreviewed
CVE-2024-42179
was published
Jan 13, 2025
ProTip!
Advisories are also available from the
GraphQL API