GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
41
Go
3,026
Maven
5,000+
npm
4,763
NuGet
824
pip
4,366
Pub
12
RubyGems
987
Rust
1,143
Swift
50
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
139,279 advisories
Filter by severity
A vulnerability was identified in Alinto SOGo 5.12.3/5.12.4. This impacts an unknown function....
Moderate
Unreviewed
CVE-2026-3054
was published
Feb 24, 2026
An uncontrolled search path element vulnerability in Synology Presto Client before 2.1.3-0672...
Moderate
Unreviewed
CVE-2026-3091
was published
Feb 24, 2026
A null pointer dereference vulnerability in the certificate downloader CGI program of the Zyxel...
Moderate
Unreviewed
CVE-2025-11845
was published
Feb 24, 2026
A null pointer dereference vulnerability in the account settings CGI program of the Zyxel VMG3625...
Moderate
Unreviewed
CVE-2025-11846
was published
Feb 24, 2026
A flaw has been found in horilla-opensource horilla up to 1.0.2. Impacted is an unknown function...
Moderate
Unreviewed
CVE-2026-3050
was published
Feb 24, 2026
A vulnerability has been found in DataLinkDC dinky up to 1.2.5. The affected element is the...
Moderate
Unreviewed
CVE-2026-3051
was published
Feb 24, 2026
A security vulnerability has been detected in itsourcecode E-Logbook with Health Monitoring...
Moderate
Unreviewed
CVE-2026-3046
was published
Feb 24, 2026
A vulnerability was detected in horilla-opensource horilla up to 1.0.2. This issue affects the...
Moderate
Unreviewed
CVE-2026-3049
was published
Feb 24, 2026
Inappropriate implementation in DevTools in Google Chrome prior to 145.0.7632.116 allowed an...
Moderate
Unreviewed
CVE-2026-3063
was published
Feb 24, 2026
A vulnerability was detected in itsourcecode Event Management System 1.0. The affected element is...
Moderate
Unreviewed
CVE-2026-3042
was published
Feb 24, 2026
A flaw has been found in itsourcecode Event Management System 1.0. The impacted element is an...
Moderate
Unreviewed
CVE-2026-3043
was published
Feb 24, 2026
Bludit version 3.16.2 contains a stored cross-site scripting (XSS) vulnerability in the post...
Moderate
Unreviewed
CVE-2026-27742
was published
Feb 24, 2026
Bludit version 3.16.1 contains a cross-site request forgery (CSRF) vulnerability in the /admin...
Moderate
Unreviewed
CVE-2026-27741
was published
Feb 24, 2026
A security vulnerability has been detected in xingfuggz BaykeShop up to 1.3.20. Impacted is an...
Moderate
Unreviewed
CVE-2026-3041
was published
Feb 24, 2026
A vulnerability was identified in DrayTek Vigor 300B up to 1.5.1.6. This affects the function...
Moderate
Unreviewed
CVE-2026-3040
was published
Feb 24, 2026
A vulnerability was determined in erzhongxmu JEEWMS up to 3.7. This vulnerability affects the...
Moderate
Unreviewed
CVE-2026-3028
was published
Feb 24, 2026
A vulnerability has been found in erzhongxmu JEEWMS 3.7. Affected by this issue is some unknown...
Moderate
Unreviewed
CVE-2026-3026
was published
Feb 23, 2026
A vulnerability was found in erzhongxmu JEEWMS up to 3.7. This affects an unknown part of the...
Moderate
Unreviewed
CVE-2026-3027
was published
Feb 23, 2026
Aruba HiSpeed Cache (aruba-hispeed-cache) WordPress plugin versions prior to 3.0.5 contain a...
Moderate
Unreviewed
CVE-2026-23694
was published
Feb 23, 2026
A flaw has been found in ShuoRen Smart Heating Integrated Management Platform 1.0.0. Affected by...
Moderate
Unreviewed
CVE-2026-3025
was published
Feb 23, 2026
strukturag libde265 commit d9fea9d wa discovered to contain a segmentation fault via the...
Moderate
Unreviewed
CVE-2025-61147
was published
Feb 23, 2026
saitoha libsixel until v1.8.7 was discovered to contain a memory leak via the component...
Moderate
Unreviewed
CVE-2025-61146
was published
Feb 23, 2026
libtiff up to v4.7.1 was discovered to contain a NULL pointer dereference via the component...
Moderate
Unreviewed
CVE-2025-61143
was published
Feb 23, 2026
libtiff up to v4.7.1 was discovered to contain a double free via the component tools/tiffcrop.c.
Moderate
Unreviewed
CVE-2025-61145
was published
Feb 23, 2026
An issue pertaining to CWE-295: Improper Certificate Validation was discovered in fofolee uTools...
Moderate
Unreviewed
CVE-2025-70044
was published
Feb 23, 2026
ProTip!
Advisories are also available from the
GraphQL API