GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
44
GitHub Actions
43
Go
3,181
Maven
5,000+
npm
5,000+
NuGet
863
pip
4,474
Pub
12
RubyGems
991
Rust
1,185
Swift
51
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
111,274 advisories
Filter by severity
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2026-32358
was published
Mar 13, 2026
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2026-32368
was published
Mar 13, 2026
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2026-32366
was published
Mar 13, 2026
Deserialization of Untrusted Data vulnerability in Crocoblock JetEngine jet-engine allows Object...
High
Unreviewed
CVE-2026-32355
was published
Mar 13, 2026
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2026-32365
was published
Mar 13, 2026
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...
High
Unreviewed
CVE-2026-32369
was published
Mar 13, 2026
The Formidable Forms plugin for WordPress is vulnerable to a payment integrity bypass in all...
High
Unreviewed
CVE-2026-2890
was published
Mar 13, 2026
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2026-31917
was published
Mar 13, 2026
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
High
Unreviewed
CVE-2026-31922
was published
Mar 13, 2026
wpDiscuz before 7.6.47 contains an unauthenticated denial of service vulnerability that allows...
High
Unreviewed
CVE-2026-22182
was published
Mar 13, 2026
Anchore Enterprise versions before 5.25.1 contain an SQL injection vulnerability in the GraphQL...
High
Unreviewed
CVE-2026-25076
was published
Mar 13, 2026
The web interface on multiple Omada switches does not adequately validate certain external inputs...
High
Unreviewed
CVE-2026-1668
was published
Mar 13, 2026
There is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted...
High
Unreviewed
CVE-2026-0957
was published
Mar 13, 2026
HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and...
High
Unreviewed
CVE-2026-25819
was published
Mar 13, 2026
HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and...
High
Unreviewed
CVE-2026-25817
was published
Mar 13, 2026
Missing authentication for critical function vulnerability in ABB AWIN GW100 rev.2, ABB AWIN...
High
Unreviewed
CVE-2025-13778
was published
Mar 13, 2026
Authentication bypass by capture-replay vulnerability in ABB AWIN GW100 rev.2, ABB AWIN GW120...
High
Unreviewed
CVE-2025-13777
was published
Mar 13, 2026
Missing authentication for critical function vulnerability in ABB AWIN GW100 rev.2, ABB AWIN...
High
Unreviewed
CVE-2025-13779
was published
Mar 13, 2026
In UNIX Fourth Research Edition (v4), the su command is vulnerable to a buffer overflow due to...
High
Unreviewed
CVE-2025-71263
was published
Mar 13, 2026
There is a memory corruption vulnerability due to an out-of-bounds read when loading a corrupted...
High
Unreviewed
CVE-2026-0956
was published
Mar 13, 2026
There is a memory corruption vulnerability due to an out-of-bounds read when loading a corrupted...
High
Unreviewed
CVE-2026-0955
was published
Mar 13, 2026
There is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted...
High
Unreviewed
CVE-2026-0954
was published
Mar 13, 2026
An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite...
High
Unreviewed
CVE-2025-70873
was published
Mar 12, 2026
A command injection vulnerability has been identified in the Telnet command-line interface (CLI)...
High
Unreviewed
CVE-2026-3841
was published
Mar 12, 2026
A vulnerability allowing local privilege escalation on Windows-based Veeam Backup & Replication...
High
Unreviewed
CVE-2026-21672
was published
Mar 12, 2026
ProTip!
Advisories are also available from the
GraphQL API