GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
61
GitHub Actions
50
Go
3,821
Maven
5,000+
npm
5,000+
NuGet
939
pip
5,000+
Pub
13
RubyGems
1,059
Rust
1,357
Swift
54
Unreviewed advisories
All unreviewed
5,000+
158,245 advisories
Filter by severity
Permission control vulnerability in calls. Impact: Successful exploitation of this vulnerability...
Moderate
Unreviewed
CVE-2026-41960
was published
May 15, 2026
Permission control vulnerability in contacts. Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2026-41961
was published
May 15, 2026
Permission control vulnerability in the smart sensing service. Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2026-41966
was published
May 15, 2026
Use-After-Free (UAF) vulnerability in the web. Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2026-41965
was published
May 15, 2026
Permission control vulnerability in the manufacturability design module. Impact: Successful...
Moderate
Unreviewed
CVE-2026-41968
was published
May 15, 2026
Permission control vulnerability in the manufacturability design module. Impact: Successful...
Moderate
Unreviewed
CVE-2026-41967
was published
May 15, 2026
Out-of-bounds write vulnerability in the distributed file system module. Impact: Successful...
Moderate
Unreviewed
CVE-2026-41970
was published
May 15, 2026
Permission control vulnerability in the security control module. Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2026-41971
was published
May 15, 2026
Permission control vulnerability in the projection module. Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2026-41969
was published
May 15, 2026
The Smartcat Translator for WPML plugin for WordPress is vulnerable to unauthorized modification...
Moderate
Unreviewed
CVE-2026-4683
was published
May 15, 2026
The Notify Odoo plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions...
Moderate
Unreviewed
CVE-2026-8425
was published
May 15, 2026
The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to time...
Moderate
Unreviewed
CVE-2026-7046
was published
May 15, 2026
The Classified Listing – AI-Powered Classified ads & Business Directory Plugin plugin for...
Moderate
Unreviewed
CVE-2026-7563
was published
May 15, 2026
The Advanced Custom Fields: Font Awesome plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2026-6415
was published
May 15, 2026
The The7 theme for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2026-6646
was published
May 15, 2026
Cross-site scripting vulnerability exists in Musetheque V4 Information Disclosure for IPKNOWLEDGE...
Moderate
Unreviewed
CVE-2026-24662
was published
May 15, 2026
Insufficient parameter sanitization in AMD Secure Processor (ASP) TEE SOC Driver could allow an...
Moderate
Unreviewed
CVE-2025-66664
was published
May 15, 2026
Insecure default configuration state of DDR5 memory module by AGESA Bootloader Firmware could...
Moderate
Unreviewed
CVE-2025-48516
was published
May 15, 2026
Use of uninitialized resource within the AMD Platform Management Framework (PMF) could allow an...
Moderate
Unreviewed
CVE-2025-48513
was published
May 15, 2026
Improper cleanup of shared register resources in GPU firmware could allow an admin-privileged...
Moderate
Unreviewed
CVE-2026-0427
was published
May 15, 2026
Improper access control between the Joint Test Action Group (JTAG) and Advanced Extensible...
Moderate
Unreviewed
CVE-2025-0040
was published
May 15, 2026
An out-of-bounds read in power management firmware by a malicious local attacker with low...
Moderate
Unreviewed
CVE-2025-0044
was published
May 15, 2026
A buffer overflow vulnerability within AMD Sensor Fusion Hub Driver can allow a local attacker to...
Moderate
Unreviewed
CVE-2025-29944
was published
May 15, 2026
An out of bounds read within the AMD Platform Management Framework (PMF) could allow an attacker...
Moderate
Unreviewed
CVE-2025-29937
was published
May 15, 2026
Improper handling of insufficient privileges in the AMD Secure Processor (ASP) could allow an...
Moderate
Unreviewed
CVE-2025-54511
was published
May 15, 2026
ProTip!
Advisories are also available from the
GraphQL API