GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
50
Go
3,606
Maven
5,000+
npm
5,000+
NuGet
924
pip
4,831
Pub
13
RubyGems
1,045
Rust
1,256
Swift
53
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
105 advisories
Filter by severity
An issue was discovered in the ALFA Windows 10 driver 6.1316.1209 for AWUS036H. The Wi-Fi...
Moderate
Unreviewed
CVE-2020-26141
was published
May 24, 2022
In wolfSSL's EVP layer, the ChaCha20-Poly1305 AEAD decryption path in wolfSSL_EVP_CipherFinal ...
High
Unreviewed
CVE-2026-5479
was published
Apr 10, 2026
A padding oracle exists in wolfSSL's PKCS7 CBC decryption that could allow an attacker to recover...
Moderate
Unreviewed
CVE-2026-5504
was published
Apr 10, 2026
SzafirHost downloads necessary files in the context of the initiating web page. When called,...
High
Unreviewed
CVE-2026-26928
was published
Apr 2, 2026
An Improper Validation of Integrity Check Value vulnerability in Zscaler Client Connector on...
Moderate
Unreviewed
CVE-2023-41970
was published
May 2, 2024
An Improper Validation of Integrity Check Value vulnerability in Zscaler Client Connector on...
Low
Unreviewed
CVE-2024-23462
was published
May 2, 2024
An Improper Validation of Integrity Check Value vulnerability in Zscaler Client Connector on...
Moderate
Unreviewed
CVE-2024-23461
was published
May 2, 2024
Improper Validation of Integrity Check Value vulnerability in Sharp Display Solutions projectors...
Critical
Unreviewed
CVE-2025-11543
was published
Dec 22, 2025
An Improper Validation of Integrity Check Value in Zscaler Client Connector on Windows allows an...
Moderate
Unreviewed
CVE-2023-28802
was published
Nov 21, 2023
NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attacker could cause...
Moderate
Unreviewed
CVE-2025-33193
was published
Nov 25, 2025
An insufficient validation of an untrusted input vulnerability in Palo Alto Networks Prisma®...
Low
Unreviewed
CVE-2025-4616
was published
Nov 14, 2025
RADIUS Protocol under RFC 2865 is susceptible to forgery attacks by a local attacker who can...
Critical
Unreviewed
CVE-2024-3596
was published
Jul 9, 2024
In the Linux kernel, the following vulnerability has been resolved:
nfsd: map the EBADMSG to...
Moderate
Unreviewed
CVE-2024-49875
was published
Oct 21, 2024
This issue was addressed with improved handling of executable types. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-24148
was published
Apr 1, 2025
In 2N Access Commander versions 3.1.1.2 and prior, a local attacker can escalate their privileges...
Moderate
Unreviewed
CVE-2024-47255
was published
Nov 5, 2024
Netskope has identified a potential gap in its agent (Netskope Client) in which a malicious...
High
Unreviewed
CVE-2024-7402
was published
Aug 14, 2025
A vulnerability classified as critical was found in Comodo Internet Security Premium 12.3.4.8162....
High
Unreviewed
CVE-2025-7096
was published
Jul 7, 2025
A vulnerability exists in the IEC 61850 of the MicroSCADA X SYS600 product. An IEC 61850-8...
High
Unreviewed
CVE-2025-39203
was published
Jun 24, 2025
In LiteSpeed QUIC (LSQUIC) Library before 4.0.4, DCID validation is mishandled.
Critical
Unreviewed
CVE-2024-25678
was published
Feb 9, 2024
An improper validation of integrity check value vulnerability exists in
AVEVA PI Connector for...
Moderate
Unreviewed
CVE-2025-4418
was published
Jun 12, 2025
An exploitable firmware modification vulnerability was discovered on the Netgear WPN824EXT WiFi...
High
Unreviewed
CVE-2022-38955
was published
Sep 21, 2022
An exploitable firmware downgrade vulnerability was discovered on the Netgear WPN824EXT WiFi...
Moderate
Unreviewed
CVE-2022-38956
was published
Sep 21, 2022
SAP Business Client, versions 6.5, 7.0, does not perform necessary integrity checks which could...
Moderate
Unreviewed
CVE-2020-6228
was published
May 24, 2022
An issue was discovered in osquery. A maliciously crafted Universal/fat binary can evade third...
High
Unreviewed
CVE-2018-6336
was published
May 13, 2022
rsync 3.1.3-development before 2017-10-24 mishandles archaic checksums, which makes it easier for...
Critical
Unreviewed
CVE-2017-15994
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API