GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
102
GitHub Actions
54
Go
4,347
Maven
5,000+
npm
5,000+
NuGet
1,042
pip
5,000+
Pub
13
RubyGems
1,122
Rust
1,498
Swift
61
Unreviewed advisories
All unreviewed
5,000+
164,286 advisories
Filter by severity
Missing support for integrity check vulnerability in ABB KNX Update Tool (ABB), ABB KNX Update...
Moderate
Unreviewed
CVE-2026-12705
was published
Jul 17, 2026
Incorrect access control in Proxmox Virtual Environment (PVE) 9.x qemu-server before 9.1.8 and 8...
Moderate
Unreviewed
CVE-2026-51083
was published
Jul 17, 2026
A cross-site scripting (XSS) vulnerability in Proxmox Virtual Environment (PVE) 9.x 5.1.8 and...
Moderate
Unreviewed
CVE-2026-51081
was published
Jul 17, 2026
HCL Aftermarket EPC is vulnerable to attack since the application does not have an appropriate...
Moderate
Unreviewed
CVE-2024-23571
was published
Jul 17, 2026
HCL Aftermarket EPC is affected by clickjacking vulnerability Cross-Frame Scripting is an attack...
Moderate
Unreviewed
CVE-2024-23570
was published
Jul 17, 2026
HCL Aftermarket EPC is vulnerable to email flooding as the application does not have a proper...
Moderate
Unreviewed
CVE-2024-23565
was published
Jul 17, 2026
HCL Aftermarket EPC is vulnerable to attack since the application returns detailed error messages...
Moderate
Unreviewed
CVE-2024-23575
was published
Jul 17, 2026
HCL Aftermarket EPC is vulnerable to attack as the application implements an HTML5 cross-origin...
Moderate
Unreviewed
CVE-2024-23578
was published
Jul 17, 2026
HCL Aftermarket EPC is vulnerable to attack as cookie appears to contain a session token, which...
Moderate
Unreviewed
CVE-2024-23572
was published
Jul 17, 2026
HCL Aftermarket EPC is vulnerable since the application does not have a validation for HOST...
Moderate
Unreviewed
CVE-2024-23577
was published
Jul 17, 2026
HCL Aftermarket EPC is vulnerable to attack since the server is not configured with “X-XSS...
Moderate
Unreviewed
CVE-2024-23569
was published
Jul 17, 2026
HCL Aftermarket EPC is vulnerable to attack since It was found that a malicious actor can use...
Moderate
Unreviewed
CVE-2024-23574
was published
Jul 17, 2026
HCL Aftermarket EPC is affected by Sensitive Information in GET method & in URL which allows...
Moderate
Unreviewed
CVE-2024-23567
was published
Jul 17, 2026
HCL Aftermarket EPC is vulnerable to attacks since the server software version used by the...
Moderate
Unreviewed
CVE-2024-23568
was published
Jul 17, 2026
A flaw was found in the organization management component of Keycloak. A delegated administrator...
Moderate
Unreviewed
CVE-2026-16072
was published
Jul 17, 2026
A vulnerability was identified in poco-ai poco-claw up to 0.5.4. This issue affects the function...
Moderate
Unreviewed
CVE-2026-16016
was published
Jul 17, 2026
HCL Aftermarket EPC is vulnerable to attack since HTTP OPTIONS method is enabled on this web...
Moderate
Unreviewed
CVE-2024-42214
was published
Jul 17, 2026
HCL Aftermarket EPC is vulnerable to brute force attacks since application doesn’t have captcha...
Moderate
Unreviewed
CVE-2024-23566
was published
Jul 17, 2026
GD::SecurityImage versions through 1.75 for Perl use rand to generate secrets.
The random method...
Moderate
Unreviewed
CVE-2026-13082
was published
Jul 17, 2026
A vulnerability was found in code-projects Hospital Bed Management System 1.0. This affects an...
Moderate
Unreviewed
CVE-2026-16014
was published
Jul 17, 2026
Mattermost Desktop App versions <=6.2 6.0.2 5.6.13.0 fail to validate payloads sent from the...
Moderate
Unreviewed
CVE-2026-9602
was published
Jul 17, 2026
A flaw was found in the Keycloak keycloak-services component, which handles the management of...
Moderate
Unreviewed
CVE-2026-15943
was published
Jul 17, 2026
A vulnerability has been found in liftoff-sr CIPster up to...
Moderate
Unreviewed
CVE-2026-16013
was published
Jul 17, 2026
Mattermost Desktop App versions <=6.2 5.5.13 6.0.2.0 fail to properly null check when checking...
Moderate
Unreviewed
CVE-2026-8075
was published
Jul 17, 2026
A non-administrator interactive user can obtain full SYSTEM code execution through a DCOM/task...
Moderate
Unreviewed
CVE-2026-15380
was published
Jul 17, 2026
ProTip!
Advisories are also available from the
GraphQL API