GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
70
GitHub Actions
52
Go
3,967
Maven
5,000+
npm
5,000+
NuGet
973
pip
5,000+
Pub
13
RubyGems
1,064
Rust
1,387
Swift
56
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
607 advisories
Filter by severity
NVIDIA KAI Scheduler contains a vulnerability where an attacker could access API endpoints...
High
Unreviewed
CVE-2026-24177
was published
Apr 21, 2026
This vulnerability exists in Quantum Networks router due to improper access control and insecure...
High
Unreviewed
CVE-2026-41039
was published
Apr 21, 2026
Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2025 release version 8.3.1.0...
High
Unreviewed
CVE-2026-26944
was published
Apr 20, 2026
Anviz CX2 Lite and CX7 are vulnerable to unauthenticated POST requests that modify debug ...
High
Unreviewed
CVE-2026-40461
was published
Apr 17, 2026
Missing authentication for critical function in Windows Remote Desktop Licensing Service allows...
High
Unreviewed
CVE-2026-26160
was published
Apr 14, 2026
Missing authentication for critical function in Windows Remote Desktop Licensing Service allows...
High
Unreviewed
CVE-2026-26159
was published
Apr 14, 2026
This vulnerability exists in the Atom 3x Projector due to improper exposure of the Android Debug...
High
Unreviewed
CVE-2026-5777
was published
Apr 10, 2026
A Missing Authentication for Critical Function vulnerability in the Flexible PIC Concentrators ...
High
Unreviewed
CVE-2026-33788
was published
Apr 10, 2026
A low-privileged remote attacker can send Modbus packets to manipulate
register values that are...
High
Unreviewed
CVE-2026-4436
was published
Apr 9, 2026
Missing Authentication for Critical Function vulnerability in Honeywell Handheld Scanners allows...
High
Unreviewed
CVE-2026-4272
was published
Apr 6, 2026
Core FTP 2.0 build 653 contains a denial of service vulnerability in the PBSZ command that allows...
High
Unreviewed
CVE-2019-25686
was published
Apr 5, 2026
C4G Basic Laboratory Information System 3.4 contains multiple SQL injection vulnerabilities that...
High
Unreviewed
CVE-2019-25678
was published
Apr 5, 2026
Wikipedia 12.0 contains a denial of service vulnerability that allows unauthenticated attackers...
High
Unreviewed
CVE-2018-25246
was published
Apr 4, 2026
Microsoft VPN Browser+ 1.1.0.0 contains a denial of service vulnerability that allows...
High
Unreviewed
CVE-2018-25241
was published
Apr 4, 2026
A specific administrative endpoint is accessible without proper authentication, exposing device...
High
Unreviewed
CVE-2026-32646
was published
Apr 3, 2026
SIPP 3.3 contains a stack-based buffer overflow vulnerability that allows local unauthenticated...
High
Unreviewed
CVE-2018-25225
was published
Mar 28, 2026
PMS 0.42 contains a stack-based buffer overflow vulnerability that allows local unauthenticated...
High
Unreviewed
CVE-2018-25224
was published
Mar 28, 2026
The VSL privileged helper does utilize NSXPC for IPC. The implementation of the ...
High
Unreviewed
CVE-2026-24068
was published
Mar 26, 2026
Vitals ESP developed by Galaxy Software Services has a Missing Authentication vulnerability,...
High
Unreviewed
CVE-2026-4640
was published
Mar 24, 2026
A missing authentication check in the HTTP server on TP-Link Archer NX200, NX210, NX500 and NX600...
High
Unreviewed
CVE-2025-15517
was published
Mar 23, 2026
An unauthenticated credential disclosure vulnerability in the /goform/ate endpoint of Nexxt...
High
Unreviewed
CVE-2026-31846
was published
Mar 23, 2026
The "Privileged Helper" component of the Arturia Software Center (MacOS) does not perform...
High
Unreviewed
CVE-2026-24062
was published
Mar 18, 2026
Unprotected internal endpoints in Cloud Foundry Capi Release 1.226.0 and below, and CF Deployment...
High
Unreviewed
CVE-2026-22727
was published
Mar 18, 2026
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.1.0.0 through 6.1.2.7_2, 6.2.0.0...
High
Unreviewed
CVE-2026-1264
was published
Mar 18, 2026
Configuration issue in Java Management Extensions (JMX) in TIBCO BPM Enterprise version 4.x...
High
Unreviewed
CVE-2026-3207
was published
Mar 17, 2026
ProTip!
Advisories are also available from the
GraphQL API