GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,930
Maven
5,000+
npm
4,587
NuGet
786
pip
4,294
Pub
12
RubyGems
981
Rust
1,114
Swift
49
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
41 advisories
Filter by severity
Denial-of-service vulnerability in M-Files Server versions before 26.1.15632.3 allows an...
Moderate
Unreviewed
CVE-2026-0663
was published
Jan 21, 2026
An Improper Validation of Syntactic Correctness of Input vulnerability in the Web-Filtering...
High
Unreviewed
CVE-2026-21917
was published
Jan 15, 2026
An authenticated user can provide a malformed ACL to the fileserver's StoreACL
RPC, causing the...
High
Unreviewed
CVE-2024-10396
was published
Nov 14, 2024
A low privileged remote attacker can corrupt the webserver users storage on the device by setting...
High
Unreviewed
CVE-2025-41719
was published
Oct 22, 2025
Improper Validation of Syntactic Correctness of Input vulnerability in Finder Fire Safety Finder...
High
Unreviewed
CVE-2024-12146
was published
Mar 6, 2025
IBM Planning Analytics Local 2.0.0 through 2.0.106 and 2.1.0 through 2.1.13
could allow a...
Moderate
Unreviewed
CVE-2025-36262
was published
Sep 30, 2025
Improper validation of syntactic correctness of input in Microsoft Exchange Server allows an...
Moderate
Unreviewed
CVE-2025-25007
was published
Aug 12, 2025
An unauthenticated attacker who can connect to the Web Services feature (HTTP TCP port 80) can...
High
Unreviewed
CVE-2024-51983
was published
Jun 26, 2025
An unauthenticated attacker who can connect to TCP port 9100 can issue a Printer Job Language ...
High
Unreviewed
CVE-2024-51982
was published
Jun 26, 2025
Denial of service due to improper handling of malformed input. The following products are...
High
Unreviewed
CVE-2025-30415
was published
Jun 4, 2025
An Improper Validation of Syntactic Correctness of Input vulnerability in Routing Protocol Daemon...
Moderate
Unreviewed
CVE-2023-44204
was published
Oct 13, 2023
A vulnerability in the “Network Interfaces” functionality of the web application of ctrlX OS...
Moderate
Unreviewed
CVE-2025-24348
was published
Apr 30, 2025
A vulnerability in the “Network Interfaces” functionality of the web application of ctrlX OS...
Moderate
Unreviewed
CVE-2025-24347
was published
Apr 30, 2025
A vulnerability in the “Proxy” functionality of the web application of ctrlX OS allows a remote...
High
Unreviewed
CVE-2025-24346
was published
Apr 30, 2025
A vulnerability in the “Hosts” functionality of the web application of ctrlX OS allows a remote...
Moderate
Unreviewed
CVE-2025-24345
was published
Apr 30, 2025
Westermo WeOS 5 through 5.23.0 allows a reboot via a malformed ESP packet.
Moderate
Unreviewed
CVE-2025-46419
was published
Apr 24, 2025
IBM App Connect Enterprise Certified Container 7.2, 8.0, 8.1, 8.2, 9.0, 9.1, 9.2, 10.0, 10.1, 11...
Moderate
Unreviewed
CVE-2024-52362
was published
Mar 12, 2025
In Modem, there is a possible memory corruption due to incorrect error handling. This could lead...
High
Unreviewed
CVE-2025-20644
was published
Mar 3, 2025
A vulnerability has been identified in SIMATIC S7-1200 CPU 1211C AC/DC/Rly (6ES7211-1BE40-0XB0) ...
High
Unreviewed
CVE-2025-24812
was published
Feb 11, 2025
An Improper Validation of Syntactic Correctness of Input vulnerability in the Routing Protocol...
High
Unreviewed
CVE-2024-21598
was published
Apr 12, 2024
The initial code parsing the manifest did not check the content of the file names yet later code...
High
Unreviewed
CVE-2025-0638
was published
Jan 22, 2025
51l3nc3, member of the AXIS OS Bug Bounty Program, has found that a Guard Tour VAPIX API...
Moderate
Unreviewed
CVE-2024-6173
was published
Sep 10, 2024
51l3nc3, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API...
Moderate
Unreviewed
CVE-2024-8772
was published
Nov 26, 2024
Erik de Jong, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API ftptest.cgi...
Low
Unreviewed
CVE-2024-8160
was published
Nov 26, 2024
A user controlled parameter related to SMTP test functionality is not correctly validated making...
High
Unreviewed
CVE-2021-31987
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API