GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
40
Go
2,974
Maven
5,000+
npm
4,621
NuGet
788
pip
4,317
Pub
12
RubyGems
984
Rust
1,131
Swift
49
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
3,632 advisories
Filter by severity
A local information disclosure vulnerability exists in the Ludashi driver before 5.1025 due to a...
High
Unreviewed
CVE-2025-67246
was published
Jan 15, 2026
The vulnerability exists in BLUVOYIX due to improper authentication in the BLUVOYIX admin APIs....
Critical
Unreviewed
CVE-2026-22238
was published
Jan 14, 2026
A vulnerability has been identified in the installation/uninstallation of the Nessus Agent Tray...
High
Unreviewed
CVE-2025-36640
was published
Jan 13, 2026
The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to Privilege Escalation in...
Critical
Unreviewed
CVE-2025-14736
was published
Jan 9, 2026
There is a configuration defect vulnerability in the version server of ZTE MF258K Pro products....
Moderate
Unreviewed
CVE-2025-66315
was published
Jan 9, 2026
The absence of permissions control for the user XXX allows the current configuration in the...
High
Unreviewed
CVE-2026-22536
was published
Jan 7, 2026
Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control...
Moderate
Unreviewed
CVE-2025-52599
was published
Dec 26, 2025
ADB(Android Debug Bridge) is affected by type privilege bypass, successful exploitation of this...
Low
Unreviewed
CVE-2025-57840
was published
Dec 24, 2025
An issue was discovered in K7 Ultimate Security 17.0.2045. A Local Privilege Escalation (LPE)...
High
Unreviewed
CVE-2025-67826
was published
Dec 22, 2025
The Flex Store Users plugin for WordPress is vulnerable to Privilege Escalation in all versions...
Critical
Unreviewed
CVE-2025-13619
was published
Dec 20, 2025
There is a privilege escalation vulnerability in some Hikvision DVR products. Due to the improper...
Moderate
Unreviewed
CVE-2025-66173
was published
Dec 19, 2025
HiSecOS 04.0.01 contains a privilege escalation vulnerability that allows authenticated users to...
High
Unreviewed
CVE-2023-53908
was published
Dec 18, 2025
An issue was discovered in DriveLock 24.1 through 24.1.*, 24.2 through 24.2.*, and 25.1 before 25...
Critical
Unreviewed
CVE-2025-67793
was published
Dec 17, 2025
An issue was discovered in DriveLock 24.1 before 24.1.6, 24.2 before 24.2.7, and 25.1 before 25.1...
High
Unreviewed
CVE-2025-67792
was published
Dec 17, 2025
An issue was discovered in DriveLock 24.1 before 24.1.6, 24.2 before 24.2.7, and 25.1 before 25.1...
Critical
Unreviewed
CVE-2025-67781
was published
Dec 17, 2025
The component com.transsion.tranfacmode.entrance.main.MainActivity in com.transsion.tranfacmode...
Moderate
Unreviewed
CVE-2025-14817
was published
Dec 17, 2025
An Improper Access Control vulnerability in Advantech SUSI driver (susi.sys) allows attackers to...
High
Unreviewed
CVE-2025-14252
was published
Dec 16, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.8.3,...
High
Unreviewed
CVE-2025-43512
was published
Dec 12, 2025
The issue was addressed by adding additional logic. This issue is fixed in macOS Sequoia 15.7.3....
High
Unreviewed
CVE-2025-43320
was published
Dec 12, 2025
The WP CarDealer plugin for WordPress is vulnerable to Privilege Escalation in all versions up to...
Critical
Unreviewed
CVE-2025-13764
was published
Dec 11, 2025
A privilege escalation vulnerability exists in Google Cloud's Dialogflow CX.
Dialogflow agent...
High
Unreviewed
CVE-2025-12952
was published
Dec 10, 2025
Improper Privilege Management vulnerability in AlgoSec Firewall Analyzer on Linux, 64 bit allows...
Moderate
Unreviewed
CVE-2025-12381
was published
Dec 9, 2025
Input verification vulnerability in the compression and decompression module. Impact: Successful...
High
Unreviewed
CVE-2025-66324
was published
Dec 8, 2025
A vulnerability in Apigee-X allowed an attacker to gain unauthorized read and write access to...
High
Unreviewed
CVE-2025-13292
was published
Dec 6, 2025
A local privilege escalation vulnerability exists in the Plugin Alliance InstallationHelper...
Moderate
Unreviewed
CVE-2025-62686
was published
Dec 3, 2025
ProTip!
Advisories are also available from the
GraphQL API