GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
47
GitHub Actions
48
Go
3,378
Maven
5,000+
npm
5,000+
NuGet
881
pip
4,573
Pub
13
RubyGems
1,013
Rust
1,205
Swift
51
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
6,286 advisories
Filter by severity
A vulnerability was found in PromtEngineer localGPT up to...
Moderate
Unreviewed
CVE-2026-5003
was published
Mar 28, 2026
A vulnerability was found in wandb OpenUI up to 1.0/3.5-turb. Affected is the function...
Moderate
Unreviewed
CVE-2026-4994
was published
Mar 28, 2026
The Ninja Forms - The Contact Form Builder That Grows With You plugin for WordPress is vulnerable...
Moderate
Unreviewed
CVE-2026-1307
was published
Mar 28, 2026
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an...
Moderate
Unreviewed
CVE-2025-59214
was published
Oct 14, 2025
A flaw has been found in OpenBMB XAgent 1.0.0. The impacted element is the function...
Moderate
Unreviewed
CVE-2026-4957
was published
Mar 27, 2026
Dovecot has provided a script to use for attachment to text conversion. This script unsafely...
Moderate
Unreviewed
CVE-2025-59031
was published
Mar 27, 2026
Information disclosure in the file URI processing of File (Field) Paths in Drupal File (Field)...
Moderate
Unreviewed
CVE-2026-1556
was published
Mar 27, 2026
An authorization issue was addressed with improved state management. This issue is fixed in iOS...
Moderate
Unreviewed
CVE-2026-28877
was published
Mar 25, 2026
This issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.4. An app...
Moderate
Unreviewed
CVE-2026-28820
was published
Mar 25, 2026
HCL Aftermarket DPC is affected by File Discovery which allows attacker could exploit this issue...
Moderate
Unreviewed
CVE-2025-55265
was published
Mar 26, 2026
IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.3 IBM WebSphere Application...
Moderate
Unreviewed
CVE-2025-14915
was published
Mar 25, 2026
A privacy issue was addressed by removing sensitive data. This issue is fixed in iOS 18.7.7 and...
Moderate
Unreviewed
CVE-2026-28878
was published
Mar 25, 2026
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ixray-team ixray-1.6...
Moderate
Unreviewed
CVE-2026-4733
was published
Mar 24, 2026
IBM Security Verify Privilege On-Premises 11.5 could disclose sensitive information through an...
Moderate
Unreviewed
CVE-2022-43890
was published
Mar 4, 2024
Dell BSAFE SSL-J, versions prior to 6.5, and versions 7.0 and 7.1 contain a debug message...
Moderate
Unreviewed
CVE-2023-28077
was published
Feb 10, 2024
"IBM Robotic Process Automation 21.0.1 and 21.0.2 could disclose sensitive version information...
Moderate
Unreviewed
CVE-2022-38710
was published
Nov 4, 2022
The King Addons for Elementor – 4,000+ ready Elementor sections, 650+ templates, 70+ FREE widgets...
Moderate
Unreviewed
CVE-2025-13997
was published
Mar 23, 2026
IBM i Access Client Solutions (ACS) 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.4 is vulnerable...
Moderate
Unreviewed
CVE-2024-22318
was published
Feb 9, 2024
A flaw was found in Tempo Operator, where it creates a ServiceAccount, ClusterRole, and...
Moderate
Unreviewed
CVE-2025-2786
was published
Apr 2, 2025
A flaw was found in the Tempo Operator. When the Jaeger UI Monitor Tab functionality is enabled...
Moderate
Unreviewed
CVE-2025-2842
was published
Apr 2, 2025
An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in Fortinet...
Moderate
Unreviewed
CVE-2023-44253
was published
Feb 15, 2024
Redland Raptor (aka libraptor) before 2.0.7, as used by OpenOffice 3.3 and 3.4 Beta, LibreOffice...
Moderate
Unreviewed
CVE-2012-0037
was published
May 4, 2022
Vulnerability of foreground service restrictions being bypassed in the NMS module.Successful...
Moderate
Unreviewed
CVE-2023-52097
was published
Feb 18, 2024
IBM Cognos Command Center 10.2.4.1 and 10.2.5 exposes details the X-AspNet-Version Response...
Moderate
Unreviewed
CVE-2023-50324
was published
Mar 1, 2024
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Tainacan.Org Tainacan...
Moderate
Unreviewed
CVE-2024-1435
was published
Feb 29, 2024
ProTip!
Advisories are also available from the
GraphQL API