GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
44
GitHub Actions
46
Go
3,270
Maven
5,000+
npm
5,000+
NuGet
867
pip
4,517
Pub
12
RubyGems
998
Rust
1,194
Swift
51
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
253 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
HID: intel-ish-hid: Fix...
High
Unreviewed
CVE-2023-53392
was published
Sep 18, 2025
In the Linux kernel, the following vulnerability has been resolved:
riscv: fgraph: Fix stack...
High
Unreviewed
CVE-2025-22069
was published
Apr 16, 2025
In the Linux kernel, the following vulnerability has been resolved:
media: i2c: max9286: fix...
High
Unreviewed
CVE-2022-49509
was published
Jan 22, 2026
In the Linux kernel, the following vulnerability has been resolved:
arm64/entry: Mask DAIF in...
High
Unreviewed
CVE-2025-38670
was published
Aug 22, 2025
In the Linux kernel, the following vulnerability has been resolved:
drm/imagination: Fix kernel...
High
Unreviewed
CVE-2025-38521
was published
Aug 16, 2025
VB-Audio Matrix and Matrix Coconut (versions ending in 1.0.2.2 and 2.0.2.2 and earlier,...
High
Unreviewed
CVE-2026-23763
was published
Jan 22, 2026
SENEC Storage Box V1,V2 and V3 accidentially expose a management UI accessible with publicly...
High
Unreviewed
CVE-2023-39171
was published
Dec 7, 2023
In the Linux kernel, the following vulnerability has been resolved:
vmci: prevent speculation...
High
Unreviewed
CVE-2024-39499
was published
Jul 12, 2024
In the Linux kernel, the following vulnerability has been resolved:
s390/entry: Mark IRQ entries...
High
Unreviewed
CVE-2024-57838
was published
Jan 11, 2025
Windows MSHTML Platform Spoofing Vulnerability
High
Unreviewed
CVE-2024-38112
was published
Jul 9, 2024
A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download...
High
Unreviewed
CVE-2021-20124
was published
May 24, 2022
A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download...
High
Unreviewed
CVE-2021-20123
was published
May 24, 2022
In the Linux kernel, the following vulnerability has been resolved:
wifi: ath12k: change DMA...
High
Unreviewed
CVE-2024-43881
was published
Aug 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
ipack: ipoctal: fix stack...
High
Unreviewed
CVE-2021-47401
was published
May 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
net: fix information leakage...
High
Unreviewed
CVE-2022-48757
was published
Jun 20, 2024
The WP STAGING WordPress Backup plugin before 3.2.0 allows access to cache files during the...
High
Unreviewed
CVE-2023-7204
was published
Jan 29, 2024
Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. The product exposes a...
High
Unreviewed
CVE-2020-16247
was published
May 24, 2022
There is an Unauthorized file access vulnerability in Smartphones.Successful exploitation of this...
High
Unreviewed
CVE-2021-37133
was published
Jan 4, 2022
The LBS module has a vulnerability in geofencing API access. Successful exploitation of this...
High
Unreviewed
CVE-2022-44549
was published
Nov 10, 2022
tcpdf before 6.2.0 uploads files from the server generating PDF-files to an external FTP.
High
Unreviewed
CVE-2017-6100
was published
May 13, 2022
An issue in Univention UCS v.5.0 allows a local attacker to execute arbitrary code and gain...
High
Unreviewed
CVE-2023-38994
was published
Oct 31, 2023
If a Thunderbird user quoted from an HTML email, for example by replying to the email, and the...
High
Unreviewed
CVE-2022-45414
was published
Dec 22, 2022
Certain ZKTeco products (ZEM500-510-560-760, ZEM600-800, ZEM720, ZMM) allow access to sensitive...
High
Unreviewed
CVE-2022-42953
was published
Dec 25, 2022
Google Chrome 17.0.963.66 and earlier allows remote attackers to bypass the sandbox protection...
High
Unreviewed
CVE-2012-1846
was published
May 13, 2022
Qlik QlikView through 12.60.20100.0 creates a Temporary File in a Directory with Insecure...
High
Unreviewed
CVE-2021-41989
was published
Jan 26, 2023
ProTip!
Advisories are also available from the
GraphQL API