GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,737
Maven
5,000+
npm
4,337
NuGet
764
pip
4,112
Pub
12
RubyGems
960
Rust
1,068
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,664 advisories
Filter by severity
@apollo/composition has Improper Enforcement of Access Control on Interface Types and Fields
High
CVE-2025-64530
was published
for
@apollo/composition
(npm)
Nov 14, 2025
Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contain an Improper Access...
Moderate
Unreviewed
CVE-2025-46362
was published
Nov 13, 2025
Keyfactor SignServer before 7.3.1 has Incorrect Access Control, issue 1 of 3.
Moderate
Unreviewed
CVE-2025-47220
was published
Nov 13, 2025
Keyfactor SignServer before 7.3.1 has Incorrect Access Control, issue 3 of 3.
Moderate
Unreviewed
CVE-2025-47222
was published
Nov 13, 2025
The issue was addressed by refusing external connections by default. This issue is fixed in...
High
Unreviewed
CVE-2025-43515
was published
Nov 13, 2025
Keyfactor SignServer before 7.3.1 has Incorrect Access Control, issue 2 of 3.
Moderate
Unreviewed
CVE-2025-47221
was published
Nov 13, 2025
A vulnerability in Cisco Catalyst Center Virtual Appliance could allow an authenticated, remote...
High
Unreviewed
CVE-2025-20341
was published
Nov 13, 2025
A vulnerability was detected in itsourcecode Online Voting System 1.0. This impacts an unknown...
Moderate
Unreviewed
CVE-2025-13061
was published
Nov 12, 2025
Dell Data Lakehouse, versions prior to 1.6.0.0, contain(s) an Improper Access Control...
Critical
Unreviewed
CVE-2025-46608
was published
Nov 12, 2025
A vulnerability in FiberHome GPON ONU HG6145F1 RP4423 allows the device's factory default Wi-Fi...
Critical
Unreviewed
CVE-2025-63353
was published
Nov 12, 2025
Incorrect access control in SIMICAM v1.16.41-20250725, KEVIEW v1.14.92-20241120, ASECAM v1.14.10...
High
Unreviewed
CVE-2025-63667
was published
Nov 12, 2025
Tenda AC15 v15.03.05.18_multi) issues an authentication cookie that exposes the account password...
Critical
Unreviewed
CVE-2025-63666
was published
Nov 12, 2025
Improper access control in Windows Client-Side Caching (CSC) Service allows an authorized...
High
Unreviewed
CVE-2025-60705
was published
Nov 11, 2025
Improper access control in Customer Experience Improvement Program (CEIP) allows an authorized...
High
Unreviewed
CVE-2025-59512
was published
Nov 11, 2025
Improper access control in Microsoft Configuration Manager allows an authorized attacker to...
Moderate
Unreviewed
CVE-2025-47179
was published
Nov 11, 2025
Improper access control for some Intel(R) PresentMon before version 2.3.1 within Ring 3: User...
Low
Unreviewed
CVE-2025-32037
was published
Nov 11, 2025
Improper access control for some SigTest before version 6.1.10 within Ring 3: User Applications...
Moderate
Unreviewed
CVE-2025-22391
was published
Nov 11, 2025
Improper access control for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within...
Moderate
Unreviewed
CVE-2025-24516
was published
Nov 11, 2025
Improper access control for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within...
Low
Unreviewed
CVE-2025-24314
was published
Nov 11, 2025
BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP...
Moderate
Unreviewed
CVE-2025-60876
was published
Nov 10, 2025
Triofox versions prior to 16.7.10368.56560, are vulnerable to an Improper Access Control flaw...
Critical
Unreviewed
CVE-2025-12480
was published
Nov 10, 2025
A vulnerability was identified in projectworlds Online Notes Sharing Platform 1.0. Affected by...
Moderate
Unreviewed
CVE-2025-12862
was published
Nov 7, 2025
There is an arbitrary file download vulnerability in GuoMinJim PersonManage thru commit...
Moderate
Unreviewed
CVE-2025-63686
was published
Nov 7, 2025
An issue was discovered in AnyDesk through 9.0.4. A remotely connected user with the "Control my...
High
Unreviewed
CVE-2025-27919
was published
Nov 6, 2025
Improper access control in Devolutions Server 2025.3.5.0 and earlier allows a View-only user to...
Moderate
Unreviewed
CVE-2025-12808
was published
Nov 6, 2025
ProTip!
Advisories are also available from the
GraphQL API