GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,675
Maven
5,000+
npm
4,297
NuGet
760
pip
4,077
Pub
12
RubyGems
957
Rust
1,058
Swift
45
Unreviewed advisories
All unreviewed
5,000+
78 advisories
Filter by severity
The Hydra Booking — Appointment Scheduling & Booking Calendar plugin for WordPress is vulnerable...
Moderate
Unreviewed
CVE-2025-12788
was published
Nov 11, 2025
A flaw was found in Red Hat Satellite (Foreman component). This vulnerability allows an...
High
Unreviewed
CVE-2025-10622
was published
Nov 5, 2025
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.735 Application 20.0.1330...
Critical
Unreviewed
CVE-2025-27681
was published
Mar 5, 2025
IBM Cloud Pak For Business Automation 25.0.0, 24.0.1, and 24.0.0 could allow an attacker to...
Moderate
Unreviewed
CVE-2025-36093
was published
Nov 3, 2025
An unauthenticated attacker with access to TCP port 12306 of the WorkExaminer server can exploit...
Critical
Unreviewed
CVE-2025-10640
was published
Oct 21, 2025
The WPC Name Your Price for WooCommerce plugin for WordPress is vulnerable to unauthorized price...
High
Unreviewed
CVE-2025-12115
was published
Oct 31, 2025
Client-Side Enforcement of Server-Side Security (CWE-602) in the Command Centre Server allows a...
Moderate
Unreviewed
CVE-2025-41402
was published
Oct 23, 2025
The AXN-NET Ethernet module accessory 3.04 for the Accuenergy Acuvim II allows remote attackers...
High
Unreviewed
CVE-2014-2374
was published
May 17, 2022
The web server on the AXN-NET Ethernet module accessory 3.04 for the Accuenergy Acuvim II allows...
High
Unreviewed
CVE-2014-2373
was published
May 17, 2022
IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1 could allow an...
Low
Unreviewed
CVE-2025-2139
was published
Oct 12, 2025
IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1
could allow an...
Low
Unreviewed
CVE-2025-2138
was published
Oct 12, 2025
An issue in Orban Optimod 5950, Optimod 5950HD, Optimod 5750, Optimod 5750HD, Optimod Trio...
High
Unreviewed
CVE-2025-61197
was published
Oct 6, 2025
The Vitogate 300 web interface fails to enforce proper server-side authentication and relies on...
High
Unreviewed
CVE-2025-9495
was published
Sep 23, 2025
Umbraco Forms's Short and Long Answer Fields Are Not Validated Server-Side For Maximum Length
Moderate
CVE-2025-23041
was published
for
Umbraco.Forms
(NuGet)
Jan 14, 2025
Cognex In-Sight Explorer and In-Sight Camera Firmware expose
a service implementing a...
High
Unreviewed
CVE-2025-53969
was published
Sep 19, 2025
Out-of-bounds data read vulnerability in the authorization module
Impact: Successful exploitation...
Moderate
Unreviewed
CVE-2025-46591
was published
May 6, 2025
A logic vulnerability in the the mobile application (com.transsion.applock) can lead to bypassing...
Critical
Unreviewed
CVE-2024-12603
was published
Dec 13, 2024
Client-side password validation (CWE-602) in lumasoft fotoShare Cloud 2025-03-13 allowing...
Moderate
Unreviewed
CVE-2025-56694
was published
Aug 27, 2025
The Order Tip for WooCommerce plugin for WordPress is vulnerable to Unauthenticated Improper...
High
Unreviewed
CVE-2025-6025
was published
Aug 15, 2025
A vulnerability classified as problematic has been found in LitmusChaos Litmus up to 3.19.0....
Moderate
Unreviewed
CVE-2025-8792
was published
Aug 10, 2025
IBM Aspera Faspex 5.0.0 through 5.0.12.1 could allow an authenticated user to perform...
Moderate
Unreviewed
CVE-2025-36039
was published
Jul 31, 2025
IBM SmartCloud Analytics - Log Analysis 1.3.7.0, 1.3.7.1, 1.3.7.2, 1.3.8.0, 1.3.8.1, and 1.3.8.2...
Moderate
Unreviewed
CVE-2024-41750
was published
Jul 23, 2025
IBM SmartCloud Analytics - Log Analysis 1.3.7.0, 1.3.7.1, 1.3.7.2, 1.3.8.0, 1.3.8.1, and 1.3.8.2...
Moderate
Unreviewed
CVE-2024-41751
was published
Jul 23, 2025
An authentication bypass vulnerability was reported in FileZ client application that could allow...
High
Unreviewed
CVE-2025-6249
was published
Jul 17, 2025
IBM OpenPages with Watson 8.3 and 9.0
is vulnerable to improper input validation due to...
Moderate
Unreviewed
CVE-2025-27367
was published
Jul 8, 2025
ProTip!
Advisories are also available from the
GraphQL API