GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
116
GitHub Actions
55
Go
4,683
Maven
5,000+
npm
5,000+
NuGet
1,104
pip
5,000+
Pub
13
RubyGems
1,150
Rust
1,532
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
19
4,670 advisories
Filter by severity
The Forminator Forms WordPress plugin before 1.57.0.7 does not consistently enforce the role...
Moderate
Unreviewed
CVE-2026-19222
was published
Aug 22, 2026
The WPeMatico RSS Feed Fetcher plugin for WordPress is vulnerable to unauthorized modification of...
High
Unreviewed
CVE-2026-19883
was published
Aug 22, 2026
Improper Privilege Management vulnerability in Apache CloudStack's Two-factor authentication...
High
Unreviewed
CVE-2026-59799
was published
Aug 21, 2026
The AI Engine WordPress plugin before 3.6.1 does not verify that the requesting user is...
High
Unreviewed
CVE-2026-75796
was published
Aug 21, 2026
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 has a vulnerability in cmdnim that may allow an...
High
Unreviewed
CVE-2026-19449
was published
Aug 21, 2026
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary...
Critical
Unreviewed
CVE-2026-17145
was published
Aug 21, 2026
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to execute arbitrary...
High
Unreviewed
CVE-2026-16997
was published
Aug 21, 2026
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated...
High
Unreviewed
CVE-2026-16991
was published
Aug 21, 2026
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated...
High
Unreviewed
CVE-2026-16937
was published
Aug 21, 2026
Tekton Pipelines-as-Code: Unscoped GitHub App installation token allows unauthorized access to private repositories via remote task resolution
Moderate
CVE-2026-54168
was published
for
github.com/openshift-pipelines/pipelines-as-code
(Go)
Aug 20, 2026
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated...
High
Unreviewed
CVE-2026-16923
was published
Aug 20, 2026
The JSON Options WordPress plugin through 0.0.4 does not have any capability check or nonce...
Critical
Unreviewed
CVE-2026-75860
was published
Aug 20, 2026
In Splunk AI Toolkit versions below 6.0.0, a user that holds a role with the schedule_search...
High
Unreviewed
CVE-2026-76396
was published
Aug 20, 2026
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user that holds a role...
High
Unreviewed
CVE-2026-76350
was published
Aug 20, 2026
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user that holds a role...
High
Unreviewed
CVE-2026-76253
was published
Aug 20, 2026
In Splunk Enterprise for Windows versions below 10.4.2, 10.2.6, 10.0.9, 9.4.13, and 9.3.14, a...
High
Unreviewed
CVE-2026-76259
was published
Aug 20, 2026
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary...
High
Unreviewed
CVE-2026-16850
was published
Aug 19, 2026
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to obtain root...
High
Unreviewed
CVE-2026-16874
was published
Aug 19, 2026
Dell PowerPath, version 7.2 through to 8.0 SP1, contains an Improper Privilege Management...
Moderate
Unreviewed
CVE-2026-32802
was published
Aug 19, 2026
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated...
High
Unreviewed
CVE-2026-16703
was published
Aug 19, 2026
Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Privilege Management...
High
Unreviewed
CVE-2026-70421
was published
Aug 19, 2026
Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component:...
High
Unreviewed
CVE-2026-71150
was published
Aug 18, 2026
Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component:...
Moderate
Unreviewed
CVE-2026-71123
was published
Aug 18, 2026
Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component:...
Moderate
Unreviewed
CVE-2026-71108
was published
Aug 18, 2026
Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component:...
Moderate
Unreviewed
CVE-2026-71109
was published
Aug 18, 2026
ProTip!
Advisories are also available from the
GraphQL API