GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,343
Erlang
31
GitHub Actions
22
Go
2,107
Maven
5,000+
npm
3,764
NuGet
679
pip
3,452
Pub
12
RubyGems
892
Rust
886
Swift
37
Unreviewed advisories
All unreviewed
5,000+
264,455 advisories
Filter by severity
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition...
Moderate
Unreviewed
CVE-2024-49807
was published
Jan 31, 2025
O2OA 9.1.3 is vulnerable to Cross Site Scripting (XSS) in Meetings - Settings.
Unknown
Unreviewed
CVE-2025-22994
was published
Jan 31, 2025
WildFly improper RBAC permission
Moderate
CVE-2025-23367
was published
for
org.wildfly.core:wildfly-server
(Maven)
Jan 31, 2025
PMD Designer's release key passphrase (GPG) available on Maven Central in cleartext
Low
CVE-2025-23215
was published
for
net.sourceforge.pmd:pmd-core
(Maven)
Jan 31, 2025
IBM Security Verify Directory 10.0 through 10.0.3 is vulnerable to a denial of service when...
High
Unreviewed
CVE-2024-45650
was published
Jan 31, 2025
SQL injection vulnerability in TeamCal Neo, version 3.8.2. This could allow an attacker to...
Critical
Unreviewed
CVE-2025-0929
was published
Jan 31, 2025
Reflected Cross-Site Scripting (XSS) in TeamCal Neo, version 3.8.2. This allows an attacker to...
Moderate
Unreviewed
CVE-2025-0930
was published
Jan 31, 2025
Local privilege escalation due to unquoted search path vulnerability. The following products are...
Moderate
Unreviewed
CVE-2025-24831
was published
Jan 31, 2025
Local privilege escalation due to DLL hijacking vulnerability. The following products are...
Moderate
Unreviewed
CVE-2025-24830
was published
Jan 31, 2025
Local privilege escalation due to DLL hijacking vulnerability. The following products are...
Moderate
Unreviewed
CVE-2025-24827
was published
Jan 31, 2025
Local privilege escalation due to DLL hijacking vulnerability. The following products are...
Moderate
Unreviewed
CVE-2025-24829
was published
Jan 31, 2025
Local privilege escalation due to DLL hijacking vulnerability. The following products are...
Moderate
Unreviewed
CVE-2025-24828
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5e: Fix inversion...
Unknown
Unreviewed
CVE-2025-21674
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
pktgen: Avoid out-of-bounds...
Unknown
Unreviewed
CVE-2025-21680
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
net: fec: handle...
Unknown
Unreviewed
CVE-2025-21676
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
openvswitch: fix lockup on...
Unknown
Unreviewed
CVE-2025-21681
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Clear port select...
Unknown
Unreviewed
CVE-2025-21675
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
btrfs: add the missing error...
Unknown
Unreviewed
CVE-2025-21679
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
pfcp: Destroy device along...
Unknown
Unreviewed
CVE-2025-21677
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
eth: bnxt: always...
Unknown
Unreviewed
CVE-2025-21682
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix...
Unknown
Unreviewed
CVE-2025-21683
was published
Jan 31, 2025
In the Linux kernel, the following vulnerability has been resolved:
gtp: Destroy device along...
Unknown
Unreviewed
CVE-2025-21678
was published
Jan 31, 2025
The Post Form – Registration Form – Profile Form for User Profiles – Frontend Content Forms for...
Moderate
Unreviewed
CVE-2024-12037
was published
Jan 31, 2025
The Drag and Drop Multiple File Upload – Contact Form 7 plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2024-12267
was published
Jan 31, 2025
The The AI Infographic Maker plugin for WordPress is vulnerable to arbitrary shortcode execution...
Moderate
Unreviewed
CVE-2024-12415
was published
Jan 31, 2025
ProTip!
Advisories are also available from the
GraphQL API