GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
49
Go
3,426
Maven
5,000+
npm
5,000+
NuGet
882
pip
4,670
Pub
13
RubyGems
1,029
Rust
1,212
Swift
53
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
9,122 advisories
Filter by severity
Permission control vulnerability in the file management module.
Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2025-64312
was published
Nov 28, 2025
Permission control vulnerability in the Notepad module.
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-64311
was published
Nov 28, 2025
Exposure of email service credentials to users without administrative rights in Devolutions...
Moderate
Unreviewed
CVE-2025-13765
was published
Nov 27, 2025
Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server:...
Low
Unreviewed
CVE-2025-13758
was published
Nov 27, 2025
In Apache CloudStack, a gap in access control checks affected the APIs - createNetworkACL
-...
Moderate
Unreviewed
CVE-2025-59454
was published
Nov 27, 2025
The Quick View for WooCommerce plugin for WordPress is vulnerable to Information Exposure in all...
Moderate
Unreviewed
CVE-2025-12584
was published
Nov 27, 2025
An issue was discovered in file users.json in GroceryMart commit 21934e6 (2020-10-23) allowing...
High
Unreviewed
CVE-2025-65278
was published
Nov 26, 2025
An issue was discovered in Syrotech SY-GPON-1110-WDONT SYRO_3.7L_3.1.02-240517 allowing attackers...
Critical
Unreviewed
CVE-2025-63729
was published
Nov 25, 2025
The Locker Content plugin for WordPress is vulnerable to Sensitive Information Exposure in...
Moderate
Unreviewed
CVE-2025-12525
was published
Nov 25, 2025
MILLENSYS Vision Tools Workspace 6.5.0.2585 exposes a sensitive configuration endpoint (...
Critical
Unreviewed
CVE-2025-63958
was published
Nov 24, 2025
A sensitive information disclosure vulnerability exists in the error handling component of...
Low
Unreviewed
CVE-2025-13596
was published
Nov 24, 2025
The OneClick Chat to Order plugin for WordPress is vulnerable to Insecure Direct Object Reference...
High
Unreviewed
CVE-2025-13526
was published
Nov 22, 2025
The BigBuy Dropshipping Connector for WooCommerce plugin for WordPress is vulnerable to IP...
Moderate
Unreviewed
CVE-2025-12039
was published
Nov 21, 2025
The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Sensitive Information...
Moderate
Unreviewed
CVE-2025-11368
was published
Nov 21, 2025
Insecure design policies in the user management system of Revive Adserver 5.5.2 and 6.0.1 and...
Moderate
Unreviewed
CVE-2025-52669
was published
Nov 20, 2025
GatesAir Flexiva-LX devices on firmware 1.0.13 and 2.0, including models LX100, LX300, LX600, and...
Moderate
Unreviewed
CVE-2025-63212
was published
Nov 19, 2025
The ELCA Star Transmitter Remote Control firmware 1.25 for STAR150, BP1000, STAR300, STAR2000,...
High
Unreviewed
CVE-2025-63209
was published
Nov 19, 2025
An issue was discovered in bridgetech probes VB220 IP Network Probe,VB120 Embedded IP + RF Probe,...
High
Unreviewed
CVE-2025-63205
was published
Nov 19, 2025
The Quiz Maker plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Moderate
Unreviewed
CVE-2025-12426
was published
Nov 19, 2025
The New User Approve plugin for WordPress is vulnerable to unauthorized data disclosure in all...
Moderate
Unreviewed
CVE-2025-12770
was published
Nov 19, 2025
A broken access control (BAC) vulnerability in the web-based management interface could allow an...
Moderate
Unreviewed
CVE-2025-37160
was published
Nov 18, 2025
An exposure of sensitive information to an unauthorized actor vulnerability in Fortinet FortiADC...
Moderate
Unreviewed
CVE-2025-54971
was published
Nov 18, 2025
The Pixel Manager for WooCommerce – Track Conversions and Analytics, Google Ads, TikTok and more...
Moderate
Unreviewed
CVE-2025-12545
was published
Nov 18, 2025
Information Disclosure in web-accessible backup file in SourceCodester Simple Online Book Store...
High
Unreviewed
CVE-2025-63891
was published
Nov 14, 2025
An issue was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1...
High
Unreviewed
CVE-2025-54345
was published
Nov 14, 2025
ProTip!
Advisories are also available from the
GraphQL API