GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,454
Erlang
33
GitHub Actions
22
Go
2,150
Maven
5,000+
npm
3,815
NuGet
690
pip
3,490
Pub
12
RubyGems
902
Rust
900
Swift
38
Unreviewed advisories
All unreviewed
5,000+
268,242 advisories
Filter by severity
An issue in xxyopen novel plus v.4.4.0 and before allows a remote attacker to execute arbitrary...
Moderate
Unreviewed
CVE-2025-26182
was published
Mar 4, 2025
t0mer BroadlinkManager v5.9.1 was discovered to contain an OS command injection vulnerability via...
Moderate
Unreviewed
CVE-2025-26320
was published
Mar 4, 2025
In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix integer overflows...
Moderate
Unreviewed
CVE-2025-21748
was published
Feb 27, 2025
D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability...
Moderate
Unreviewed
CVE-2025-25741
was published
Feb 12, 2025
A flaw was found in grub2. A specially crafted JPEG file can cause the JPEG parser of grub2 to...
Moderate
Unreviewed
CVE-2024-45774
was published
Feb 18, 2025
The read command is used to read the keyboard input from the user, while reads it keeps the input...
Moderate
Unreviewed
CVE-2025-0690
was published
Feb 24, 2025
In the Linux kernel, the following vulnerability has been resolved:
ptp: vmclock: Add .owner to...
Moderate
Unreviewed
CVE-2025-21769
was published
Feb 27, 2025
In the Linux kernel, the following vulnerability has been resolved:
can: etas_es58x: fix...
Moderate
Unreviewed
CVE-2025-21773
was published
Feb 27, 2025
In the Linux kernel, the following vulnerability has been resolved:
wifi: brcmfmac: fix NULL...
Moderate
Unreviewed
CVE-2025-21744
was published
Feb 27, 2025
A security agent link following vulnerability in the Trend Micro Apex One agent could allow a...
High
Unreviewed
CVE-2023-25146
was published
Mar 10, 2023
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2024-30232
was published
Mar 26, 2024
Server-Side Request Forgery (SSRF) vulnerability in Brainstorm Force Spectra.This issue affects...
High
Unreviewed
CVE-2023-36679
was published
Mar 28, 2024
An issue was discovered in libbzip3.a in bzip3 before 1.2.3. There is a crash caused by an...
Moderate
Unreviewed
CVE-2023-29420
was published
Apr 6, 2023
A security agent link following vulnerability in Trend Micro Apex One could allow a local...
High
Unreviewed
CVE-2023-25148
was published
Mar 10, 2023
An issue was discovered in libbzip3.a in bzip3 before 1.2.3. There is an xwrite out-of-bounds read.
Moderate
Unreviewed
CVE-2023-29418
was published
Apr 6, 2023
A link following vulnerability in the scanning function of Trend Micro Apex One agent could allow...
High
Unreviewed
CVE-2023-25145
was published
Mar 10, 2023
An issue was discovered in libbzip3.a in bzip3 before 1.2.3. There is a bz3_decode_block out-of...
Moderate
Unreviewed
CVE-2023-29419
was published
Apr 6, 2023
In usb, there is a possible out of bounds write due to a missing bounds check. This could lead to...
Moderate
Unreviewed
CVE-2023-20632
was published
Mar 7, 2023
ISO 15765 and ISO 10681 dissector crash in Wireshark 4.0.0 to 4.0.3 and 3.6.0 to 3.6.11 allows...
Moderate
Unreviewed
CVE-2023-1161
was published
Mar 6, 2023
Cross Site Request Forgery (CSRF) vulnerability exists in the 'pvmsg.php?action=add_message',...
Unknown
Unreviewed
CVE-2024-51144
was published
Mar 5, 2025
Tenda AC15 v15.03.05.19 is vulnerable to Command Injection via the handler function in /goform...
Unknown
Unreviewed
CVE-2025-25632
was published
Mar 5, 2025
A misconfiguration in Alphion ASEE-1443 Firmware v0.4.H.00.02.15 defines a previously...
Unknown
Unreviewed
CVE-2024-57174
was published
Mar 5, 2025
A vulnerability has been found in Tenda AC15 15.03.05.19 in the function GetParentControlInfo of...
Unknown
Unreviewed
CVE-2025-25634
was published
Mar 5, 2025
Incorrect authorization in PAM vaults in Devolutions Server 2024.3.12 and earlier allows an...
High
Unreviewed
CVE-2025-2003
was published
Mar 5, 2025
Peppermint Ticket Management 0.4.6 is vulnerable to Incorrect Access Control. A regular...
Unknown
Unreviewed
CVE-2024-31525
was published
Mar 5, 2025
ProTip!
Advisories are also available from the
GraphQL API