GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,908
Erlang
39
GitHub Actions
38
Go
2,568
Maven
5,000+
npm
4,240
NuGet
754
pip
4,004
Pub
12
RubyGems
953
Rust
1,042
Swift
45
Unreviewed advisories
All unreviewed
5,000+
14 advisories
Filter by severity
Improper enforcement of behavioral workflow in Windows BitLocker allows an unauthorized attacker...
Moderate
Unreviewed
CVE-2025-55337
was published
Oct 14, 2025
Improper enforcement of behavioral workflow in Windows BitLocker allows an unauthorized attacker...
Moderate
Unreviewed
CVE-2025-55682
was published
Oct 14, 2025
Improper enforcement of behavioral workflow in Windows BitLocker allows an unauthorized attacker...
Moderate
Unreviewed
CVE-2025-55330
was published
Oct 14, 2025
Improper enforcement of behavioral workflow in Windows BitLocker allows an unauthorized attacker...
Moderate
Unreviewed
CVE-2025-55332
was published
Oct 14, 2025
A logic issue was addressed with improved checks. This issue is fixed in iOS 16.2 and iPadOS 16.2...
Moderate
Unreviewed
CVE-2022-46710
was published
Jan 11, 2024
User Enumeration and Data Integrity in Barcode functionality in OpenText Content Management...
Moderate
Unreviewed
CVE-2024-12543
was published
Apr 21, 2025
This issue was addressed by adding an additional prompt for user consent. This issue is fixed in...
Moderate
Unreviewed
CVE-2024-44128
was published
Sep 17, 2024
A vulnerability, which was classified as problematic, has been found in spa-cartcms 1.9.0.6. This...
Moderate
Unreviewed
CVE-2024-6128
was published
Jun 18, 2024
ai-controller-frontend payment status in basket isn't reset
Moderate
CVE-2024-39325
was published
for
aimeos/ai-controller-frontend
(Composer)
Jul 5, 2024
Digital products download without proper payment status check
Moderate
CVE-2024-37296
was published
for
aimeos/ai-client-html
(Composer)
Jun 5, 2024
An Improper Enforcement of Behavioral Workflow vulnerability in the exchangeDeviceServices...
Moderate
Unreviewed
CVE-2023-1383
was published
May 3, 2023
A vulnerability, which was classified as critical, has been found in SourceCodester Free Hospital...
Moderate
Unreviewed
CVE-2023-4181
was published
Aug 6, 2023
Keycloak: Impersonation and lockout possible through incorrect handling of email trust
Moderate
CVE-2023-0105
was published
for
org.keycloak:keycloak-core
(Maven)
Jul 18, 2023
Duplicate Advisory: Keycloak allows impersonation and lockout due to email trust not being handled correctly
Moderate
GHSA-vhvq-jh34-3fc8
was published
for
org.keycloak:keycloak-core
(Maven)
Jan 13, 2023
•
withdrawn
ProTip!
Advisories are also available from the
GraphQL API