GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,342
Erlang
31
GitHub Actions
22
Go
2,106
Maven
5,000+
npm
3,764
NuGet
679
pip
3,451
Pub
12
RubyGems
892
Rust
886
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,142 advisories
Filter by severity
SXF Common Library handles input data improperly. If a product using the library reads a crafted...
Low
Unreviewed
CVE-2025-24336
was published
Jan 31, 2025
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.5 prior to...
Low
Unreviewed
CVE-2023-6195
was published
Jan 31, 2025
Out-of-bounds write in some Zoom Workplace Apps may allow an authorized user to conduct a loss of...
Low
Unreviewed
CVE-2025-0144
was published
Jan 30, 2025
Symlink following in the installer for Zoom Workplace App for macOS before 6.2.10 may allow an...
Low
Unreviewed
CVE-2025-0146
was published
Jan 30, 2025
In axios before 1.7.8, lib/helpers/isURLSameOrigin.js does not use a URL object when determining...
Low
Unreviewed
CVE-2024-57965
was published
Jan 29, 2025
NVIDIA GPU Display Driver for Linux contains a vulnerability which could allow an attacker...
Low
Unreviewed
CVE-2024-0149
was published
Jan 28, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.3,...
Low
Unreviewed
CVE-2025-24121
was published
Jan 28, 2025
An authentication issue was addressed with improved state management. This issue is fixed in iOS...
Low
Unreviewed
CVE-2025-24141
was published
Jan 28, 2025
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Ventura 13.7...
Low
Unreviewed
CVE-2025-24100
was published
Jan 28, 2025
A privacy issue was addressed with improved private data redaction for log entries. This issue is...
Low
Unreviewed
CVE-2025-24145
was published
Jan 28, 2025
A privacy issue was addressed with improved private data redaction for log entries. This issue is...
Low
Unreviewed
CVE-2024-54475
was published
Jan 28, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Low
Unreviewed
CVE-2024-54516
was published
Jan 28, 2025
A privacy issue was addressed with improved private data redaction for log entries. This issue is...
Low
Unreviewed
CVE-2024-44172
was published
Jan 28, 2025
A vulnerability, which was classified as problematic, has been found in Discord up to 1.0.9177 on...
Low
Unreviewed
CVE-2025-0732
was published
Jan 27, 2025
A vulnerability, which was classified as problematic, was found in Postman up to 11.20 on Windows...
Low
Unreviewed
CVE-2025-0733
was published
Jan 27, 2025
An improper privilege management vulnerability in OTRS Generic Interface module allows change of...
Low
Unreviewed
CVE-2024-43446
was published
Jan 27, 2025
IBM Security Directory Integrator 7.2.0 and IBM Security Verify Directory Integrator 10.0.0 could...
Low
Unreviewed
CVE-2024-28766
was published
Jan 27, 2025
The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form &...
Low
Unreviewed
CVE-2024-13450
was published
Jan 25, 2025
IBM i 7.2, 7.3, 7.4, and 7.5 is vulnerable to a file level local denial of service caused by an...
Low
Unreviewed
CVE-2024-35122
was published
Jan 24, 2025
ECOVACS robot lawnmowers and vacuums insecurely store audio files used to indicate that the...
Low
Unreviewed
CVE-2024-52328
was published
Jan 23, 2025
BigFix Patch Download Plug-ins are affected by insecure support for file URI scheme. It could...
Low
Unreviewed
CVE-2024-42184
was published
Jan 23, 2025
BigFix Patch Download Plug-ins are affected by an insecure package which is susceptible to XML...
Low
Unreviewed
CVE-2024-42185
was published
Jan 23, 2025
BigFix Patch Download Plug-ins are affected by an arbitrary file download vulnerability. It...
Low
Unreviewed
CVE-2024-42183
was published
Jan 23, 2025
BigFix Patch Download Plug-ins are affected by an insecure protocol support. The application can...
Low
Unreviewed
CVE-2024-42186
was published
Jan 23, 2025
ProTip!
Advisories are also available from the
GraphQL API