GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
61
GitHub Actions
50
Go
3,821
Maven
5,000+
npm
5,000+
NuGet
939
pip
5,000+
Pub
13
RubyGems
1,059
Rust
1,357
Swift
54
Unreviewed advisories
All unreviewed
5,000+
30,221 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
kthread: consolidate kthread...
Critical
Unreviewed
CVE-2026-43402
was published
May 8, 2026
In the Linux kernel, the following vulnerability has been resolved:
libceph: prevent potential...
Critical
Unreviewed
CVE-2026-43406
was published
May 8, 2026
In the Linux kernel, the following vulnerability has been resolved:
libceph: Fix potential out...
Critical
Unreviewed
CVE-2026-43407
was published
May 8, 2026
In the Linux kernel, the following vulnerability has been resolved:
scsi: qla2xxx: Completely...
Critical
Unreviewed
CVE-2026-43414
was published
May 8, 2026
In the Linux kernel, the following vulnerability has been resolved:
net/tcp-md5: Fix MAC...
Critical
Unreviewed
CVE-2026-43383
was published
May 8, 2026
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix use-after-free in...
Critical
Unreviewed
CVE-2026-43379
was published
May 8, 2026
In the Linux kernel, the following vulnerability has been resolved:
net/tcp-ao: Fix MAC...
Critical
Unreviewed
CVE-2026-43384
was published
May 8, 2026
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix use-after-free by...
Critical
Unreviewed
CVE-2026-43376
was published
May 8, 2026
Beauty Parlour Management System v1.1 was discovered to contain a SQL injection vulnerability via...
Critical
Unreviewed
CVE-2026-37431
was published
May 8, 2026
In the Linux kernel, the following vulnerability has been resolved:
net/ipv6: ioam6: prevent...
Critical
Unreviewed
CVE-2026-43341
was published
May 8, 2026
SEPPmail Secure Email Gateway before version 15.0.4 fails to enforce authorization checks for...
Critical
Unreviewed
CVE-2026-44125
was published
May 8, 2026
SEPPmail Secure Email Gateway before version 15.0.2.1 allows unauthenticated remote code...
Critical
Unreviewed
CVE-2026-44128
was published
May 8, 2026
SEPPmail Secure Email Gateway before version 15.0.4 insecurely deserializes untrusted data, which...
Critical
Unreviewed
CVE-2026-44126
was published
May 8, 2026
In the Linux kernel, the following vulnerability has been resolved:
libceph: define and enforce...
Critical
Unreviewed
CVE-2026-43304
was published
May 8, 2026
DrayTek Vigor 2960 firmware versions prior to 1.5.1.4 contain an OS command injection...
Critical
Unreviewed
CVE-2022-50994
was published
May 8, 2026
Instances deployed via the Proxmox extension allow unauthorized access to instances belonging to...
Critical
Unreviewed
CVE-2026-25199
was published
May 8, 2026
Weak credentials in the CashDro 3 web administration panel, version 24.01.00.26, where the...
Critical
Unreviewed
CVE-2026-8076
was published
May 8, 2026
OS command injection in Dashboard Server interface in Universal Robots PolyScope versions prior...
Critical
Unreviewed
CVE-2026-8153
was published
May 8, 2026
A vulnerability in Remote Spark SparkView before build 1122 allows an attacker to bypasses the...
Critical
Unreviewed
CVE-2026-6213
was published
May 8, 2026
Apache::Session versions through 1.94 for Perl re-creates deleted sessions.
The session stores...
Critical
Unreviewed
CVE-2013-10075
was published
May 8, 2026
Certain GL.iNet devices with 4.x firmware allow authentication bypass (resulting in...
Critical
Unreviewed
CVE-2023-46453
was published
May 8, 2026
1C-Bitrix through 25.100.500 allows Remote Code Execution because an actor with SOURCE/WRITE...
Critical
Unreviewed
CVE-2025-67887
was published
May 8, 2026
Netgate pfSense CE 2.7.2 allows code execution by using the module installer with a backup file...
Critical
Unreviewed
CVE-2025-69690
was published
May 8, 2026
RayVentory Scan Engine through 12.6 Update 8 allows attackers to gain privileges if they control...
Critical
Unreviewed
CVE-2025-69599
was published
May 8, 2026
Netgate pfSense CE 2.8.0 allows code execution in the XMLRPC API via pfsense.exec_php. NOTE: the...
Critical
Unreviewed
CVE-2025-69691
was published
May 8, 2026
ProTip!
Advisories are also available from the
GraphQL API