GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
41
Go
3,026
Maven
5,000+
npm
4,763
NuGet
824
pip
4,366
Pub
12
RubyGems
987
Rust
1,143
Swift
50
Unreviewed advisories
All unreviewed
5,000+
687 advisories
Filter by severity
Incorrect Privilege Assignment vulnerability in Josh Kohlbach Wholesale Suite woocommerce...
High
Unreviewed
CVE-2025-49924
was published
Oct 22, 2025
Incorrect Privilege Assignment vulnerability in e-plugins Hotel Listing hotel-listing allows...
High
Unreviewed
CVE-2025-58710
was published
Dec 18, 2025
Incorrect Privilege Assignment vulnerability in WPXPO PostX ultimate-post allows Privilege...
High
Unreviewed
CVE-2025-55707
was published
Dec 18, 2025
Incorrect Privilege Assignment vulnerability in KingAddons.com King Addons for Elementor king...
Critical
Unreviewed
CVE-2025-6325
was published
Nov 6, 2025
Incorrect Privilege Assignment vulnerability in uxper Togo togo.This issue affects Togo: from n/a...
High
Unreviewed
CVE-2025-62034
was published
Nov 6, 2025
Incorrect Privilege Assignment vulnerability in bPlugins Advanced scrollbar advanced-scrollbar...
High
Unreviewed
CVE-2025-49900
was published
Nov 6, 2025
Incorrect Privilege Assignment vulnerability in bPlugins Voice Feedback voice-feedback allows...
High
Unreviewed
CVE-2025-62007
was published
Oct 22, 2025
Incorrect Privilege Assignment vulnerability in FantasticPlugins SUMO Memberships for WooCommerce...
Moderate
Unreviewed
CVE-2025-60222
was published
Oct 22, 2025
Incorrect Privilege Assignment vulnerability in pebas CouponXxL couponxxl allows Privilege...
High
Unreviewed
CVE-2025-60220
was published
Oct 22, 2025
Incorrect Privilege Assignment vulnerability in Progress Planner Progress Planner progress...
High
Unreviewed
CVE-2025-48082
was published
Oct 22, 2025
A vulnerability was found in Sanluan PublicCMS up to 5.202506.d. Affected is the function delete...
Moderate
Unreviewed
CVE-2026-1112
was published
Jan 18, 2026
A security flaw has been discovered in Chamilo LMS up to 2.0.0 Beta 1. This issue affects the...
Moderate
Unreviewed
CVE-2026-1106
was published
Jan 18, 2026
Incorrect Privilege Assignment vulnerability in Modular DS modular-connector allows Privilege...
Critical
Unreviewed
CVE-2026-23800
was published
Jan 16, 2026
Visual Tools DVR VX16 version 4.2.28 contains a local privilege escalation vulnerability in its...
High
Unreviewed
CVE-2021-47799
was published
Jan 15, 2026
An attacker may gain unauthorized access to the host filesystem, potentially allowing them to...
Critical
Unreviewed
CVE-2026-22907
was published
Jan 15, 2026
Uploading unvalidated container images may allow remote attackers to gain full access to the...
Critical
Unreviewed
CVE-2026-22908
was published
Jan 15, 2026
An attacker with limited permissions may still be able to write files to specific locations on...
Moderate
Unreviewed
CVE-2026-22914
was published
Jan 15, 2026
An attacker with low privileges may be able to trigger critical system functions such as reboot...
Moderate
Unreviewed
CVE-2026-22916
was published
Jan 15, 2026
Incorrect Privilege Assignment vulnerability in InspiryThemes RealHomes allows Privilege...
Critical
Unreviewed
CVE-2024-32444
was published
Jan 15, 2026
Incorrect Privilege Assignment vulnerability in Modular DS allows Privilege Escalation.This issue...
Critical
Unreviewed
CVE-2026-23550
was published
Jan 14, 2026
Cyclades Serial Console Server 3.3.0 contains a local privilege escalation vulnerability due to...
High
Unreviewed
CVE-2022-50927
was published
Jan 14, 2026
Anevia Flamingo XL 3.2.9 contains a restricted shell vulnerability that allows remote attackers...
High
Unreviewed
CVE-2024-58338
was published
Dec 31, 2025
Incorrect privilege assignment in Windows Hello allows an unauthorized attacker to perform...
High
Unreviewed
CVE-2026-20852
was published
Jan 13, 2026
Incorrect privilege assignment in Windows Hello allows an unauthorized attacker to perform...
High
Unreviewed
CVE-2026-20804
was published
Jan 13, 2026
An issue in TIM Solution GmbH TIM BPM Suite & TIM FLOW before v.9.1.2 allows a remote attacker to...
Moderate
Unreviewed
CVE-2025-67279
was published
Jan 9, 2026
ProTip!
Advisories are also available from the
GraphQL API