GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,311
Maven
5,000+
npm
3,949
NuGet
711
pip
3,729
Pub
12
RubyGems
920
Rust
964
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
99,891 advisories
Filter by severity
A stored Cross-site Scripting (XSS) vulnerability affecting Service Items Management in Service...
High
Unreviewed
CVE-2025-4992
was published
May 30, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting 3D Markup in Collaborative Industry...
High
Unreviewed
CVE-2025-4991
was published
May 30, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Requirements in Product Manager from...
High
Unreviewed
CVE-2025-4989
was published
May 30, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting City Discover in City Referential...
High
Unreviewed
CVE-2025-4984
was published
May 30, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Results Analytics in...
High
Unreviewed
CVE-2025-4988
was published
May 30, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting City Referential in City Referential...
High
Unreviewed
CVE-2025-4983
was published
May 30, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Change Governance in Product Manager...
High
Unreviewed
CVE-2025-4990
was published
May 30, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Risk Management in Project Portfolio...
High
Unreviewed
CVE-2025-4985
was published
May 30, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Model Definition in Product Manager...
High
Unreviewed
CVE-2025-4986
was published
May 30, 2025
A stored Cross-site Scripting (XSS) vulnerability affecting Compare in Collaborative Industry...
High
Unreviewed
CVE-2025-0602
was published
May 30, 2025
Insertion of Sensitive Information Into Sent Data vulnerability in Vanquish WooCommerce Orders &...
High
Unreviewed
CVE-2025-48331
was published
May 30, 2025
Improper access control in user group management in Devolutions Server 2025.1.7.0 and earlier...
High
Unreviewed
CVE-2025-4433
was published
May 30, 2025
The Browse As plugin for WordPress is vulnerable to authentication bypass in versions up to, and...
High
Unreviewed
CVE-2025-5190
was published
May 30, 2025
An issue has been discovered in GitLab EE that allows for cross-site-scripting attack and content...
High
Unreviewed
CVE-2025-1763
was published
May 30, 2025
Due to excessive privileges granted to the web user running the airpointer web platform, a...
High
Unreviewed
CVE-2025-4636
was published
May 30, 2025
An OS Command Injection issue exists in wivia 5 all versions. If this vulnerability is exploited,...
High
Unreviewed
CVE-2025-41385
was published
May 30, 2025
Santesoft Sante DICOM Viewer Pro contains a memory corruption vulnerability. A local attacker...
High
Unreviewed
CVE-2025-5307
was published
May 30, 2025
MikroTik RouterOS 6.40.5, the SMB service contains a memory corruption vulnerability. Remote,...
High
Unreviewed
CVE-2024-54952
was published
May 29, 2025
An issue in OpenKnowledgeMaps Headstart v7 allows a remote attacker to escalate privileges via...
High
Unreviewed
CVE-2024-51392
was published
May 29, 2025
maccms10 v2025.1000.4047 is vulnerable to Server-side request forgery (SSRF) in Email Settings.
High
Unreviewed
CVE-2025-45474
was published
May 29, 2025
Exposure of private personal information to an unauthorized actor in the user vaults component of...
High
Unreviewed
CVE-2025-5334
was published
May 29, 2025
tcpreplay v4.4.4 was discovered to contain an infinite loop via the tcprewrite function at get.c.
High
Unreviewed
CVE-2024-22654
was published
May 29, 2025
An unauthenticated HTTP GET request to the /client.php endpoint will disclose the default...
High
Unreviewed
CVE-2025-48045
was published
May 29, 2025
In Teltonika Networks Remote Management System (RMS), it is possible to perform account pre...
High
Unreviewed
CVE-2025-4687
was published
May 29, 2025
CVE-2025-27703 is a privilege escalation vulnerability in the management
console of Absolute...
High
Unreviewed
CVE-2025-27703
was published
May 28, 2025
ProTip!
Advisories are also available from the
GraphQL API