GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,318
Erlang
31
GitHub Actions
21
Go
2,074
Maven
5,000+
npm
3,746
NuGet
674
pip
3,434
Pub
12
RubyGems
892
Rust
880
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
9,802 advisories
Filter by severity
Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2025-21370
was published
Jan 14, 2025
Microsoft SharePoint Server Remote Code Execution Vulnerability
High
Unreviewed
CVE-2025-21344
was published
Jan 14, 2025
Windows Virtual Trusted Platform Module Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2025-21284
was published
Jan 14, 2025
Windows Virtual Trusted Platform Module Denial of Service Vulnerability
Moderate
Unreviewed
CVE-2025-21280
was published
Jan 14, 2025
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2025-21235
was published
Jan 14, 2025
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
High
Unreviewed
CVE-2025-21230
was published
Jan 14, 2025
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2025-21234
was published
Jan 14, 2025
A vulnerability was found in AquilaCMS 1.412.13. It has been rated as critical. Affected by this...
Moderate
Unreviewed
CVE-2025-0465
was published
Jan 14, 2025
HCL MyXalytics is affected by a weak input validation vulnerability. The application accepts...
Low
Unreviewed
CVE-2024-42175
was published
Jan 11, 2025
Startup control vulnerability in the ability module
Impact: Successful exploitation of this...
Moderate
Unreviewed
CVE-2024-54121
was published
Jan 8, 2025
Improper Input Validation vulnerability in Management Program in TXOne Networks Portable...
Moderate
Unreviewed
CVE-2024-47934
was published
Jan 8, 2025
Vulnerability of input parameters not being verified in the widget framework module
Impact:...
Moderate
Unreviewed
CVE-2024-56437
was published
Jan 8, 2025
A vulnerability was found in wangl1989 mysiteforme 1.0 and classified as critical. Affected by...
Moderate
Unreviewed
CVE-2024-13136
was published
Jan 5, 2025
An improper input insertion vulnerability in AiCloud on certain router models may lead to...
High
Unreviewed
CVE-2024-12912
was published
Jan 2, 2025
A vulnerability was found in running-elephant Datart 1.0.0-rc3. It has been rated as critical....
Moderate
Unreviewed
CVE-2024-12994
was published
Dec 28, 2024
Some Huawei wearables have a vulnerability of not verifying the actual data size when reading...
High
Unreviewed
CVE-2021-22484
was published
Dec 28, 2024
IBM AIX 7.2, 7.3, VIOS 3.1, and 4.1
could allow a non-privileged local user to exploit a...
Moderate
Unreviewed
CVE-2024-47102
was published
Dec 25, 2024
Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on...
Moderate
Unreviewed
CVE-2024-41886
was published
Dec 24, 2024
Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on...
Moderate
Unreviewed
CVE-2024-41887
was published
Dec 24, 2024
Path Traversal and Insecure Direct Object Reference (IDOR) vulnerabilities in the eSignaViewer...
Low
Unreviewed
CVE-2024-12014
was published
Dec 20, 2024
There is an insufficient input verification vulnerability in Huawei product. Successful...
High
Unreviewed
CVE-2022-32144
was published
Dec 20, 2024
There is an improper input verification vulnerability in Huawei printer product. Successful...
High
Unreviewed
CVE-2022-32204
was published
Dec 20, 2024
Huawei printers have an input verification vulnerability. Successful exploitation of this...
High
Unreviewed
CVE-2022-34159
was published
Dec 20, 2024
Due to the flaws in the verification of input parameters, the attacker can input carefully...
High
Unreviewed
CVE-2020-12487
was published
Dec 17, 2024
Velocidex WinPmem versions below 4.1 suffer from an Improper Input Validation vulnerability...
High
Unreviewed
CVE-2024-10972
was published
Dec 16, 2024
ProTip!
Advisories are also available from the
GraphQL API