GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,850
Maven
5,000+
npm
4,485
NuGet
779
pip
4,238
Pub
12
RubyGems
975
Rust
1,093
Swift
48
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
37 advisories
Filter by severity
In Crazy Bubble Tea mobile application authenticated attacker can obtain personal information...
High
Unreviewed
CVE-2025-14317
was published
Jan 14, 2026
An issue was discovered in Xiongmai XM530 IP cameras on firmware V5.00.R02.000807D8.10010.346624...
High
Unreviewed
CVE-2025-65857
was published
Dec 23, 2025
An information disclosure vulnerability in M-Files Server before versions 25.12.15491.7, 25.8 LTS...
High
Unreviewed
CVE-2025-13008
was published
Dec 19, 2025
Exposure of Private Personal Information to an Unauthorized Actor vulnerability in Utarit...
High
Unreviewed
CVE-2025-1030
was published
Dec 18, 2025
Exposure of Private Personal Information to an Unauthorized Actor vulnerability in RTI Connext...
High
Unreviewed
CVE-2025-10450
was published
Dec 16, 2025
Files or Directories Accessible to External Parties, Exposure of Private Personal Information to...
High
Unreviewed
CVE-2025-11959
was published
Nov 11, 2025
A privacy issue was addressed with improved handling of user preferences. This issue is fixed in...
High
Unreviewed
CVE-2025-43500
was published
Nov 4, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-43469
was published
Nov 4, 2025
The issue was addressed by adding additional logic. This issue is fixed in watchOS 26.1, iOS 26.1...
High
Unreviewed
CVE-2025-43496
was published
Nov 4, 2025
This issue was addressed by restricting options offered on a locked device. This issue is fixed...
High
Unreviewed
CVE-2025-43452
was published
Nov 4, 2025
A privacy issue was addressed by removing sensitive data. This issue is fixed in iOS 26.1 and...
High
Unreviewed
CVE-2025-43439
was published
Nov 4, 2025
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in...
High
Unreviewed
CVE-2025-43409
was published
Nov 4, 2025
A privacy issue was addressed by removing the vulnerable code. This issue is fixed in iOS 26.1...
High
Unreviewed
CVE-2025-43389
was published
Nov 4, 2025
This issue was addressed with improved redaction of sensitive information. This issue is fixed in...
High
Unreviewed
CVE-2025-43399
was published
Nov 4, 2025
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in...
High
Unreviewed
CVE-2025-43405
was published
Nov 4, 2025
This issue was addressed through improved state management. This issue is fixed in iOS 18.6 and...
High
Unreviewed
CVE-2025-43227
was published
Jul 30, 2025
Exposure of private personal information to an unauthorized actor in Dynamics 365 FastTrack...
High
Unreviewed
CVE-2025-49715
was published
Jun 20, 2025
Exposure of private personal information to an unauthorized actor in the user vaults component of...
High
Unreviewed
CVE-2025-5334
was published
May 29, 2025
An information disclosure vulnerability exists in the latest version of transformeroptimus...
High
Unreviewed
CVE-2024-10267
was published
Mar 20, 2025
Authorization Bypass Through User-Controlled Key, Exposure of Private Personal Information to an...
High
Unreviewed
CVE-2024-11216
was published
Mar 5, 2025
An attacker could expose cross-user personal identifiable information (PII) and personal health...
High
Unreviewed
CVE-2025-20060
was published
Feb 28, 2025
In its default configuration, the affected product transmits plain-text patient data to a hard...
High
Unreviewed
CVE-2025-0683
was published
Jan 30, 2025
Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x contains a a feature that could...
High
Unreviewed
CVE-2024-42494
was published
Dec 6, 2024
Unauthorized access vulnerability in the mobile application (com.transsion.phoenix) can lead to...
High
Unreviewed
CVE-2024-11206
was published
Nov 14, 2024
This vulnerability exists in Apex Softcell LD Geo due to improper validation of the certain...
High
Unreviewed
CVE-2024-47087
was published
Sep 19, 2024
ProTip!
Advisories are also available from the
GraphQL API