GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,638
Erlang
34
GitHub Actions
26
Go
2,249
Maven
5,000+
npm
3,903
NuGet
702
pip
3,671
Pub
12
RubyGems
915
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
118,830 advisories
Filter by severity
A vulnerability was found in CodeCanyon RISE Ultimate Project Manager 3.8.2 and classified as...
Moderate
Unreviewed
CVE-2025-3855
was published
Apr 22, 2025
An improper privilege management vulnerability in the recovery function of the USG FLEX H series...
Moderate
Unreviewed
CVE-2025-1732
was published
Apr 22, 2025
A vulnerability was found in xxyopen Novel-Plus 5.1.0. It has been classified as critical. This...
Moderate
Unreviewed
CVE-2025-3856
was published
Apr 22, 2025
A vulnerability, which was classified as problematic, has been found in YXJ2018 SpringBoot-Vue...
Moderate
Unreviewed
CVE-2025-3850
was published
Apr 22, 2025
**UNSUPPORTED WHEN ASSIGNED** A path traversal vulnerability in the web management interface of...
Moderate
Unreviewed
CVE-2025-3577
was published
Apr 22, 2025
A vulnerability was found in panhainan DS-Java 1.0. It has been classified as problematic....
Moderate
Unreviewed
CVE-2025-3843
was published
Apr 22, 2025
A vulnerability classified as problematic was found in YXJ2018 SpringBoot-Vue-OnlineExam 1.0....
Moderate
Unreviewed
CVE-2025-3849
was published
Apr 22, 2025
A vulnerability was found in markparticle WebServer up to 1.0. It has been declared as critical....
Moderate
Unreviewed
CVE-2025-3845
was published
Apr 22, 2025
A vulnerability was found in markparticle WebServer up to 1.0. It has been rated as critical....
Moderate
Unreviewed
CVE-2025-3846
was published
Apr 22, 2025
A vulnerability classified as critical has been found in markparticle WebServer up to 1.0. This...
Moderate
Unreviewed
CVE-2025-3847
was published
Apr 22, 2025
A vulnerability, which was classified as problematic, was found in wix-incubator jam up to...
Moderate
Unreviewed
CVE-2025-3841
was published
Apr 21, 2025
A vulnerability was found in panhainan DS-Java 1.0 and classified as critical. This issue affects...
Moderate
Unreviewed
CVE-2025-3842
was published
Apr 21, 2025
A cross-site scripting (XSS) vulnerability in flaskBlog v2.6.1 allows attackers to execute...
Moderate
Unreviewed
CVE-2025-28102
was published
Apr 21, 2025
mojoPortal <=2.9.0.1 is vulnerable to Directory Traversal via BetterImageGallery API Controller -...
Moderate
Unreviewed
CVE-2025-28367
was published
Apr 21, 2025
User Enumeration and Data Integrity in Barcode functionality in OpenText Content Management...
Moderate
Unreviewed
CVE-2024-12543
was published
Apr 21, 2025
Stored XSS in Discussions in OpenText Content Management CE 20.2 to 25.1 on Windows and Linux...
Moderate
Unreviewed
CVE-2024-12863
was published
Apr 21, 2025
code-projects Online Exam Mastering System 1.0 is vulnerable to Cross Site Scripting (XSS) in...
Moderate
Unreviewed
CVE-2025-28121
was published
Apr 21, 2025
Incorrect Authorization vulnerability in the OpenText Content Server REST API on Windows, Linux...
Moderate
Unreviewed
CVE-2024-12862
was published
Apr 21, 2025
A vulnerability classified as critical was found in symisc UnQLite up to...
Moderate
Unreviewed
CVE-2025-3791
was published
Apr 21, 2025
A vulnerability, which was classified as critical, has been found in SeaCMS up to 13.3. This...
Moderate
Unreviewed
CVE-2025-3792
was published
Apr 21, 2025
IBM i 7.3, 7.4, 7.5, and 7.5 is vulnerable to a host header injection attack caused by improper...
Moderate
Unreviewed
CVE-2025-2950
was published
Apr 21, 2025
An improper input validation vulnerability is identified in the End of Life (EOL) OVA based...
Moderate
Unreviewed
CVE-2025-3837
was published
Apr 21, 2025
An Improper Authorization vulnerability was identified in the EOL OVA based connect component...
Moderate
Unreviewed
CVE-2025-3838
was published
Apr 21, 2025
The KnowBe4 Security Awareness Training application before 2020-01-10 allows reflected XSS. The...
Moderate
Unreviewed
CVE-2020-36844
was published
Apr 21, 2025
The KnowBe4 Security Awareness Training application before 2020-01-10 contains a redirect...
Moderate
Unreviewed
CVE-2020-36845
was published
Apr 21, 2025
ProTip!
Advisories are also available from the
GraphQL API