GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
49
Go
3,426
Maven
5,000+
npm
5,000+
NuGet
882
pip
4,670
Pub
13
RubyGems
1,029
Rust
1,212
Swift
53
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
9,122 advisories
Filter by severity
Exposure of sensitive information in the TeamViewer entry dashboard component in Devolutions...
Low
Unreviewed
CVE-2026-0747
was published
Jan 8, 2026
KAYSUS KS-WR1200 routers with firmware 107 expose SSH and TELNET services on the LAN interface...
Moderate
Unreviewed
CVE-2025-68718
was published
Jan 8, 2026
KAYSUS KS-WR3600 routers with firmware 1.0.5.9.1 mishandle configuration management. Once any...
High
Unreviewed
CVE-2025-68719
was published
Jan 8, 2026
This vulnerability allows a Backup or Tape Operator to write files as root.
Critical
Unreviewed
CVE-2025-59469
was published
Jan 8, 2026
Multiple Cisco products are affected by a vulnerability in the processing of DCE/RPC requests...
Moderate
Unreviewed
CVE-2026-20027
was published
Jan 7, 2026
Information disclosure when a weak hashed value is returned to userland code in response to a...
Moderate
Unreviewed
CVE-2025-47369
was published
Jan 7, 2026
Improper service binding configuration in internal service components in HCL BigFix IVR version 4...
Low
Unreviewed
CVE-2025-31964
was published
Jan 7, 2026
The ShareThis Dashboard for Google Analytics plugin for WordPress is vulnerable to Sensitive...
Moderate
Unreviewed
CVE-2025-12540
was published
Jan 7, 2026
The MoneySpace plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
High
Unreviewed
CVE-2025-13371
was published
Jan 7, 2026
The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-13215
was published
Jan 6, 2026
A vulnerability in the directory permissions of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800...
High
Unreviewed
CVE-2025-20336
was published
Jan 5, 2026
DVP-12SE11T - Authentication Bypass via Partial Password Disclosure
High
Unreviewed
CVE-2025-15103
was published
Dec 30, 2025
The PixelYourSite plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Moderate
Unreviewed
CVE-2025-14280
was published
Dec 29, 2025
Exposure of Sensitive Information to an Unauthorized Actor, Missing Authorization vulnerability...
Moderate
Unreviewed
CVE-2025-15070
was published
Dec 29, 2025
Exposure of Sensitive Information to an Unauthorized Actor, Missing Encryption of Sensitive Data,...
High
Unreviewed
CVE-2025-15065
was published
Dec 29, 2025
A vulnerability was determined in Halo up to 2.21.10. This issue affects some unknown processing...
Low
Unreviewed
CVE-2025-15141
was published
Dec 28, 2025
A vulnerability has been found in JeecgBoot up to 3.9.0. The affected element is the function...
Moderate
Unreviewed
CVE-2025-15121
was published
Dec 28, 2025
An issue in Terra Informatica Software, Inc Sciter v.4.4.7.0 allows a local attacker to obtain...
Moderate
Unreviewed
CVE-2024-29720
was published
Dec 26, 2025
A vulnerability was found in TOZED ZLT M30s up to 1.47. Impacted is an unknown function of the...
Moderate
Unreviewed
CVE-2025-15082
was published
Dec 25, 2025
Senstar Symphony FetchStoredLicense Information Disclosure Vulnerability. This vulnerability...
High
Unreviewed
CVE-2025-12491
was published
Dec 24, 2025
Insecure permissions in the /api/v1/agents API of GT Edge AI Platform before v2.0.10-dev allows...
High
Unreviewed
CVE-2025-63662
was published
Dec 22, 2025
A vulnerability in WooCommerce 8.1 to 10.4.2 can allow logged-in customers to access order data...
Moderate
Unreviewed
CVE-2025-15033
was published
Dec 22, 2025
An authenticated local user can obtain information that allows claiming security policy rules of...
Moderate
Unreviewed
CVE-2025-8305
was published
Dec 22, 2025
An authenticated local user can obtain information that allows claiming security policy rules of...
Moderate
Unreviewed
CVE-2025-8304
was published
Dec 22, 2025
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction &...
Moderate
Unreviewed
CVE-2025-12492
was published
Dec 20, 2025
ProTip!
Advisories are also available from the
GraphQL API