GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
49
Go
3,479
Maven
5,000+
npm
5,000+
NuGet
886
pip
4,740
Pub
13
RubyGems
1,031
Rust
1,225
Swift
53
Unreviewed advisories
All unreviewed
5,000+
517 advisories
Filter by severity
Issue summary: Generating excessively long X9.42 DH keys or checking
excessively long X9.42 DH...
High
Unreviewed
CVE-2023-5678
was published
Nov 6, 2023
The KMIP response parser built into mongo binaries is overly tolerant of certain malformed...
Moderate
Unreviewed
CVE-2025-12657
was published
Nov 3, 2025
This vulnerability affects Firefox < 143, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird...
Moderate
Unreviewed
CVE-2025-10532
was published
Sep 16, 2025
The issue was addressed with improved checks. This issue is fixed in tvOS 18.5, iOS 18.5 and...
High
Unreviewed
CVE-2025-24224
was published
Jul 30, 2025
The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.4, macOS Sonoma...
Moderate
Unreviewed
CVE-2025-24161
was published
Jan 28, 2025
In the Linux kernel, the following vulnerability has been resolved:
drm/sti: avoid potential...
Moderate
Unreviewed
CVE-2024-56776
was published
Jan 8, 2025
In the Linux kernel, the following vulnerability has been resolved:
octeontx2-pf: handle...
Moderate
Unreviewed
CVE-2024-56728
was published
Dec 29, 2024
In the Linux kernel, the following vulnerability has been resolved:
octeontx2-pf: handle...
Moderate
Unreviewed
CVE-2024-56725
was published
Dec 29, 2024
A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an...
Moderate
Unreviewed
CVE-2024-7006
was published
Aug 12, 2024
In the Linux kernel, the following vulnerability has been resolved:
drm/sti: avoid potential...
Moderate
Unreviewed
CVE-2024-56778
was published
Jan 8, 2025
In the Linux kernel, the following vulnerability has been resolved:
drm/sti: avoid potential...
Moderate
Unreviewed
CVE-2024-56777
was published
Jan 8, 2025
Apache Tomcat - Authentication Bypass
Critical
CVE-2024-52316
was published
for
org.apache.tomcat:tomcat-catalina
(Maven)
Nov 18, 2024
InventoryGui affected by item duplication in GUIs which use GuiStorageElement
Moderate
CVE-2025-62783
was published
for
de.themoep:inventorygui
(Maven)
Oct 27, 2025
Oxford Nanopore Technologies' MinKNOW software at or prior to version 24.11 creates a temporary...
Moderate
Unreviewed
CVE-2025-10937
was published
Oct 23, 2025
OpenVPN version 2.6.1 through 2.6.13 in server mode using TLS-crypt-v2 allows remote attackers to...
High
Unreviewed
CVE-2025-2704
was published
Apr 2, 2025
A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS...
High
Unreviewed
CVE-2024-3393
was published
Dec 27, 2024
The issue was addressed with improved checks. This issue is fixed in Safari 16.6.1, macOS Ventura...
Critical
Unreviewed
CVE-2023-41993
was published
Sep 21, 2023
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests...
High
Unreviewed
CVE-2021-3560
was published
Feb 17, 2022
Mattermost Desktop App versions <=5.13.0 fail to manage modals in the Mattermost Desktop App that...
Moderate
Unreviewed
CVE-2025-55035
was published
Oct 16, 2025
Vulnerability of improper exception handling in the print module. Successful exploitation of this...
Moderate
Unreviewed
CVE-2025-58289
was published
Oct 11, 2025
An improper check or handling of exceptional conditions vulnerability [CWE-703] in FortiOS...
Moderate
Unreviewed
CVE-2024-26008
was published
Oct 14, 2025
An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol...
High
Unreviewed
CVE-2025-60004
was published
Oct 9, 2025
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding...
Moderate
Unreviewed
CVE-2025-59958
was published
Oct 9, 2025
Enterprise Protection contains an improper input validation vulnerability in attachment defense...
Moderate
Unreviewed
CVE-2024-10635
was published
Apr 28, 2025
A missing exception check in Palo Alto Networks PAN-OS® software with the web proxy feature...
High
Unreviewed
CVE-2025-0130
was published
May 14, 2025
ProTip!
Advisories are also available from the
GraphQL API