GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
46
GitHub Actions
47
Go
3,340
Maven
5,000+
npm
5,000+
NuGet
881
pip
4,549
Pub
12
RubyGems
1,012
Rust
1,202
Swift
51
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
501 advisories
Filter by severity
Exposure of resource to wrong sphere in the UEFI PdaSmm module for some Intel(R) reference...
Moderate
Unreviewed
CVE-2025-22444
was published
Mar 11, 2026
The import hook in CPython that handles legacy *.pyc files (SourcelessFileLoader) is incorrectly...
Moderate
Unreviewed
CVE-2026-2297
was published
Mar 5, 2026
Binding to an unrestricted ip address in Azure IoT SDK allows an unauthorized attacker to...
Moderate
Unreviewed
CVE-2026-21528
was published
Feb 10, 2026
CWE-668: Exposure of Resource to Wrong Sphere vulnerability exists that exposes TGML diagram...
Moderate
Unreviewed
CVE-2025-6788
was published
Jul 11, 2025
Software installed and running inside a Guest VM may override Firmware's state and gain access to...
Moderate
Unreviewed
CVE-2025-46707
was published
Jun 27, 2025
In the Linux kernel, the following vulnerability has been resolved:
riscv: Fix kernel crash due...
Moderate
Unreviewed
CVE-2025-37966
was published
May 20, 2025
Dell NativeEdge, version(s) 2.1.0.0, contain(s) a Creation of Temporary File With Insecure...
Moderate
Unreviewed
CVE-2024-52543
was published
Dec 25, 2024
A partial fix for CVE-2024-39884 in the core of Apache HTTP Server 2.4.61 ignores some use of...
Moderate
Unreviewed
CVE-2024-40725
was published
Jul 18, 2024
An Exposure of Resource to Wrong Sphere vulnerability in the sampling service of Juniper Networks...
Moderate
Unreviewed
CVE-2024-39553
was published
Jul 11, 2024
IBM Maximo Asset Management 7.6.1.3 and IBM Maximo Application Suite 8.10 and 8.11 allows web...
Moderate
Unreviewed
CVE-2024-22333
was published
Jun 13, 2024
CWE-668: Exposure of the Resource Wrong Sphere vulnerability exists that exposes a SSH
interface...
Moderate
Unreviewed
CVE-2024-5313
was published
Jun 12, 2024
In the Linux kernel, the following vulnerability has been resolved:
tipc: fix kernel warning...
Moderate
Unreviewed
CVE-2023-52700
was published
May 21, 2024
Softing Secure Integration Server Exposure of Resource to Wrong Sphere Remote Code Execution...
Moderate
Unreviewed
CVE-2023-39478
was published
May 3, 2024
An Exposure of Resource to Wrong Sphere vulnerability in the Packet Forwarding Engine (PFE) of...
Moderate
Unreviewed
CVE-2024-21605
was published
Apr 12, 2024
In the Linux kernel, the following vulnerability has been resolved:
mm/damon/dbgfs: fix 'struct...
Moderate
Unreviewed
CVE-2021-46937
was published
Feb 27, 2024
In the Linux kernel, the following vulnerability has been resolved:
binder: fix async_free_space...
Moderate
Unreviewed
CVE-2021-46935
was published
Feb 27, 2024
In the Linux kernel, the following vulnerability has been resolved:
locking/qrwlock: Fix...
Moderate
Unreviewed
CVE-2021-46921
was published
Feb 27, 2024
In the Linux kernel, the following vulnerability has been resolved:
fs/mount_setattr: always...
Moderate
Unreviewed
CVE-2021-46923
was published
Feb 27, 2024
In the Linux kernel, the following vulnerability has been resolved:
dmaengine: idxd: fix wq...
Moderate
Unreviewed
CVE-2021-46917
was published
Feb 27, 2024
In the Linux kernel, the following vulnerability has been resolved:
HID: usbhid: fix info leak...
Moderate
Unreviewed
CVE-2021-46906
was published
Feb 26, 2024
The Author Box, Guest Author and Co-Authors for Your Posts – Molongui plugin for WordPress is...
Moderate
Unreviewed
CVE-2023-7014
was published
Feb 6, 2024
An improper access control vulnerability exists in GitLab Remote Development affecting all...
Moderate
Unreviewed
CVE-2023-6955
was published
Jan 12, 2024
An Exposure of Resource to Wrong Sphere vulnerability in the Packet Forwarding Engine (PFE) of...
Moderate
Unreviewed
CVE-2024-21597
was published
Jan 12, 2024
A flaw was found in the blkgs destruction path in block/blk-cgroup.c in the Linux kernel, leading...
Moderate
Unreviewed
CVE-2024-0443
was published
Jan 12, 2024
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
Moderate
Unreviewed
CVE-2024-20692
was published
Jan 9, 2024
ProTip!
Advisories are also available from the
GraphQL API