GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,857
Maven
5,000+
npm
4,488
NuGet
780
pip
4,243
Pub
12
RubyGems
975
Rust
1,095
Swift
49
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
136,939 advisories
Filter by severity
The RSS Aggregator – RSS Import, News Feeds, Feed to Post, and Autoblogging plugin for WordPress...
Moderate
Unreviewed
CVE-2025-14745
was published
Jan 23, 2026
ALGO 8180 IP Audio Alerter Web UI Direct Request Information Disclosure Vulnerability. This...
Moderate
Unreviewed
CVE-2026-0790
was published
Jan 23, 2026
ALGO 8180 IP Audio Alerter Web UI Persistent Cross-Site Scripting Vulnerability. This...
Moderate
Unreviewed
CVE-2026-0788
was published
Jan 23, 2026
The Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin plugin...
Moderate
Unreviewed
CVE-2025-15522
was published
Jan 23, 2026
The Schema & Structured Data for WP & AMP plugin for WordPress is vulnerable to Stored Cross-Site...
Moderate
Unreviewed
CVE-2025-14069
was published
Jan 23, 2026
The KiviCare – Clinic & Patient Management System (EHR) plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2026-0927
was published
Jan 23, 2026
Open WebUI Cleartext Transmission of Credentials Information Disclosure Vulnerability. This...
Moderate
Unreviewed
CVE-2026-0767
was published
Jan 23, 2026
ALGO 8180 IP Audio Alerter Web UI Inclusion of Authentication Cookie in Response Body Information...
Moderate
Unreviewed
CVE-2026-0789
was published
Jan 23, 2026
In the Linux kernel, the following vulnerability has been resolved:
qed: allow sleep in...
Moderate
Unreviewed
CVE-2023-53509
was published
Oct 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
clk: tegra: tegra124-emc:...
Moderate
Unreviewed
CVE-2023-53505
was published
Oct 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
iommu/amd/iommu_v2: Fix...
Moderate
Unreviewed
CVE-2023-53501
was published
Oct 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
ext4: remove a BUG_ON in...
Moderate
Unreviewed
CVE-2023-53450
was published
Oct 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
start_kernel: Add...
Moderate
Unreviewed
CVE-2023-53491
was published
Oct 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
ARM: tegra: Use I/O memcpy...
Moderate
Unreviewed
CVE-2025-39794
was published
Sep 12, 2025
In the Linux kernel, the following vulnerability has been resolved:
blk-mq: fix possible memleak...
Moderate
Unreviewed
CVE-2022-50434
was published
Oct 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
usb: dwc3: Remove WARN_ON...
Moderate
Unreviewed
CVE-2025-39801
was published
Sep 15, 2025
In the Linux kernel, the following vulnerability has been resolved:
cifs: prevent NULL pointer...
Moderate
Unreviewed
CVE-2025-39838
was published
Sep 22, 2025
In the Linux kernel, the following vulnerability has been resolved:
kobject: Add sanity check...
Moderate
Unreviewed
CVE-2023-53480
was published
Oct 1, 2025
In the Linux kernel, the following vulnerability has been resolved:
ACPI: processor: Check for...
Moderate
Unreviewed
CVE-2023-53483
was published
Oct 1, 2025
A Cross-Site Scripting (XSS) vulnerability was identified in a parameter in Omada Controllers due...
Moderate
Unreviewed
CVE-2025-9289
was published
Jan 23, 2026
An authentication weakness was identified in Omada Controllers, Gateways and Access Points,...
Moderate
Unreviewed
CVE-2025-9290
was published
Jan 23, 2026
An attacker could decrypt sensitive data, impersonate legitimate users
or devices, and...
Moderate
Unreviewed
CVE-2025-25051
was published
Jan 23, 2026
An attacker with access to the project file could use the exposed
credentials to impersonate...
Moderate
Unreviewed
CVE-2025-67652
was published
Jan 23, 2026
Cross-Site Request Forgery (CSRF) vulnerability in launchinteractive Merge + Minify + Refresh...
Moderate
Unreviewed
CVE-2026-24384
was published
Jan 22, 2026
A vulnerability was determined in guchengwuyue yshopmall up to 1.9.1. Affected is the function...
Moderate
Unreviewed
CVE-2025-15496
was published
Jan 9, 2026
ProTip!
Advisories are also available from the
GraphQL API