GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
70
GitHub Actions
52
Go
3,967
Maven
5,000+
npm
5,000+
NuGet
973
pip
5,000+
Pub
13
RubyGems
1,064
Rust
1,387
Swift
56
Unreviewed advisories
All unreviewed
5,000+
701 advisories
Filter by severity
Beward N100 M2.1.6.04C014 contains an unauthenticated vulnerability that allows remote attackers...
High
Unreviewed
CVE-2019-25248
was published
Dec 24, 2025
iSeeQ Hybrid DVR WH-H4 1.03R contains an unauthenticated vulnerability in the get_jpeg script...
High
Unreviewed
CVE-2019-25236
was published
Dec 24, 2025
FLIR Brickstream 3D+ 2.1.742.1842 contains an unauthenticated vulnerability in the ExportConfig...
High
Unreviewed
CVE-2018-25137
was published
Dec 24, 2025
FLIR AX8 Thermal Camera 1.32.16 contains an unauthenticated vulnerability that allows remote...
High
Unreviewed
CVE-2018-25139
was published
Dec 24, 2025
FLIR thermal traffic cameras contain an unauthenticated vulnerability that allows remote...
High
Unreviewed
CVE-2018-25141
was published
Dec 24, 2025
FLIR Brickstream 3D+ 2.1.742.1842 contains an unauthenticated vulnerability that allows remote...
High
Unreviewed
CVE-2018-25136
was published
Dec 24, 2025
Authorization bypass vulnerability in Hitachi Infrastructure Analytics Advisor (Data Center...
High
Unreviewed
CVE-2025-66445
was published
Dec 24, 2025
Screen SFT DAB 600/C Firmware 1.9.3 contains a weak session management vulnerability that allows...
High
Unreviewed
CVE-2023-53970
was published
Dec 23, 2025
D-Link DSL-124 ME_1.00 contains a configuration file disclosure vulnerability that allows...
High
Unreviewed
CVE-2023-53974
was published
Dec 23, 2025
SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an unauthenticated vulnerability in the /usr/cgi-bin...
High
Unreviewed
CVE-2023-53964
was published
Dec 23, 2025
The HTTPS service on Tapo C200 V3 exposes a connectAP interface without proper authentication. An...
High
Unreviewed
CVE-2025-14300
was published
Dec 20, 2025
Successful exploitation of the vulnerability could allow an attacker with local network access to...
High
Unreviewed
CVE-2025-52692
was published
Dec 19, 2025
An authentication bypass vulnerability exists in Open-WebUI <=0.6.32 in the /api/config endpoint....
High
Unreviewed
CVE-2025-63391
was published
Dec 18, 2025
WODESYS WD-R608U router (also known as WDR122B V2.0 and WDR28) is vulnerable to Broken Access...
High
Unreviewed
CVE-2025-65010
was published
Dec 18, 2025
In WODESYS WD-R608U router (also known as WDR122B V2.0 and WDR28) due to lack of authentication...
High
Unreviewed
CVE-2025-65007
was published
Dec 18, 2025
D-Link DAP-1325 firmware version 1.01 contains a broken access control vulnerability that allows...
High
Unreviewed
CVE-2023-53896
was published
Dec 16, 2025
EDB Hybrid Manager contains a flaw that allows an unauthenticated attacker to directly access...
High
Unreviewed
CVE-2025-14038
was published
Dec 15, 2025
Siklu MultiHaul TG series devices before version 2.0.0 contain an unauthenticated vulnerability...
High
Unreviewed
CVE-2024-58300
was published
Dec 12, 2025
An unauthenticated attacker within proximity of the Meatmeet device can perform an unauthorized...
High
Unreviewed
CVE-2025-65824
was published
Dec 10, 2025
Due to improper BLE security configurations on the device's GATT server, an adjacent...
High
Unreviewed
CVE-2024-2104
was published
Dec 10, 2025
MiniDVBLinux 5.4 contains an unauthenticated vulnerability in the tv_action.sh script that allows...
High
Unreviewed
CVE-2023-53773
was published
Dec 9, 2025
Selea Targa IP OCR-ANPR Camera contains an unauthenticated vulnerability that allows remote...
High
Unreviewed
CVE-2021-47727
was published
Dec 9, 2025
COMMAX Smart Home System is a smart IoT home solution that allows an unauthenticated attacker to...
High
Unreviewed
CVE-2021-47710
was published
Dec 9, 2025
COMMAX Smart Home System allows an unauthenticated attacker to change configuration and cause...
High
Unreviewed
CVE-2021-47709
was published
Dec 9, 2025
In multiple locations, there is a possible way to launch activities from the background due to a...
High
Unreviewed
CVE-2025-48572
was published
Dec 8, 2025
ProTip!
Advisories are also available from the
GraphQL API