GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
49
Go
3,426
Maven
5,000+
npm
5,000+
NuGet
882
pip
4,670
Pub
13
RubyGems
1,029
Rust
1,212
Swift
53
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
9,122 advisories
Filter by severity
After a recent bug fix to correctly handle CR+LF (Windows and DOS) End-of-Record (EOR) characters...
Moderate
Unreviewed
CVE-2025-14591
was published
Dec 20, 2025
The issue was addressed with improved handling of caches. This issue is fixed in macOS Tahoe 26.2...
Moderate
Unreviewed
CVE-2025-46278
was published
Dec 17, 2025
A logic issue was addressed with improved validation. This issue is fixed in macOS Tahoe 26.2. An...
Moderate
Unreviewed
CVE-2025-46283
was published
Dec 17, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in watchOS 26...
Low
Unreviewed
CVE-2025-46279
was published
Dec 17, 2025
The issue was addressed with improved handling of caches. This issue is fixed in macOS Tahoe 26.2...
Moderate
Unreviewed
CVE-2025-43514
was published
Dec 17, 2025
Exposure of password hashes through an unauthenticated API response in TP-Link Tapo C210 V.1.8...
High
Unreviewed
CVE-2025-14553
was published
Dec 16, 2025
To enhance security, the FileMaker Server 22.0.4 installer now includes an option to disable IIS...
Moderate
Unreviewed
CVE-2025-46294
was published
Dec 16, 2025
The Fancy Product Designer plugin for WordPress is vulnerable to Information Disclosure in all...
Moderate
Unreviewed
CVE-2025-13439
was published
Dec 16, 2025
An issue in Hitron HI3120 v.7.2.4.5.2b1 allows a local attacker to obtain sensitive information...
Moderate
Unreviewed
CVE-2025-66963
was published
Dec 15, 2025
Zohocorp ManageEngine ADManager Plus versions before 8025 are vulnerable to NTLM Hash Exposure. ...
Moderate
Unreviewed
CVE-2025-11670
was published
Dec 15, 2025
The GenerateBlocks plugin for WordPress is vulnerable to information exposure due to missing...
Moderate
Unreviewed
CVE-2025-12512
was published
Dec 13, 2025
The Export WP Page to Static HTML & PDF plugin for WordPress is vulnerable to Sensitive...
Critical
Unreviewed
CVE-2025-11693
was published
Dec 13, 2025
A logging issue was addressed with improved data redaction. This issue is fixed in macOS Sonoma...
Moderate
Unreviewed
CVE-2025-43538
was published
Dec 12, 2025
This issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15...
High
Unreviewed
CVE-2025-43542
was published
Dec 12, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2025-43523
was published
Dec 12, 2025
This issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.8.3, macOS...
Moderate
Unreviewed
CVE-2025-43530
was published
Dec 12, 2025
This issue was addressed with improved data protection. This issue is fixed in macOS Sonoma 14.8...
Moderate
Unreviewed
CVE-2025-43509
was published
Dec 12, 2025
This issue was addressed with improved state management. This issue is fixed in macOS Tahoe 26.1....
Moderate
Unreviewed
CVE-2025-43473
was published
Dec 12, 2025
An information disclosure issue was addressed with improved privacy controls. This issue is fixed...
Low
Unreviewed
CVE-2025-43437
was published
Dec 12, 2025
The Events Manager – Calendar, Bookings, Tickets, and more! plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-12408
was published
Dec 12, 2025
The Guest Support plugin for WordPress is vulnerable to User Email Disclosure in versions up to,...
Moderate
Unreviewed
CVE-2025-13660
was published
Dec 12, 2025
A vulnerability was detected in D-Link DIR-803 up to 1.04. Impacted is an unknown function of the...
Moderate
Unreviewed
CVE-2025-14528
was published
Dec 11, 2025
An issue was discovered in Meatmeet Android Mobile Application 1.1.2.0. An exported activity can...
Critical
Unreviewed
CVE-2025-65820
was published
Dec 10, 2025
XiangShan Nanhu V2 and XiangShan Kunmighu V3 were discovered to use speculative execution and...
High
Unreviewed
CVE-2025-63094
was published
Dec 10, 2025
PagerDuty Runbook through 2025-06-12 exposes stored secrets directly in the webpage DOM at the...
Moderate
Unreviewed
CVE-2025-52493
was published
Dec 10, 2025
ProTip!
Advisories are also available from the
GraphQL API