GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,667
Maven
5,000+
npm
4,295
NuGet
760
pip
4,073
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
277,763 advisories
Filter by severity
The ELEX WordPress HelpDesk & Customer Ticketing System plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-12022
was published
Nov 21, 2025
The ELEX WordPress HelpDesk & Customer Ticketing System plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-12085
was published
Nov 21, 2025
The ELEX WordPress HelpDesk & Customer Ticketing System plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-12023
was published
Nov 21, 2025
The ELEX WordPress HelpDesk & Customer Ticketing System plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-12169
was published
Nov 21, 2025
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.7 to 18.2.8, 18.3...
Moderate
Unreviewed
CVE-2025-9825
was published
Nov 21, 2025
The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Sensitive Information...
Moderate
Unreviewed
CVE-2025-11368
was published
Nov 21, 2025
Kafka dissector crash in Wireshark 4.6.0 and 4.4.0 to 4.4.10 allows denial of service
High
Unreviewed
CVE-2025-13499
was published
Nov 21, 2025
EPSON WebConfig and Epson Web Control for SEIKO EPSON Projector Products do not restrict...
Critical
Unreviewed
CVE-2025-64310
was published
Nov 21, 2025
Improper access control in GitHub Copilot and Visual Studio Code allows an authorized attacker to...
Moderate
Unreviewed
CVE-2025-64660
was published
Nov 21, 2025
Microsoft SharePoint Online Elevation of Privilege Vulnerability
Critical
Unreviewed
CVE-2025-59245
was published
Nov 21, 2025
IBM Concert 1.0.0 through 2.0.0 is vulnerable to cross-site scripting. This vulnerability allows...
Moderate
Unreviewed
CVE-2025-36153
was published
Nov 21, 2025
IBM Concert 1.0.0 through 2.0.0 could allow a local user to forge log files to impersonate other...
Moderate
Unreviewed
CVE-2025-36159
was published
Nov 21, 2025
Improper authorization in Dynamics OmniChannel SDK Storage Containers allows an unauthorized...
High
Unreviewed
CVE-2025-64655
was published
Nov 21, 2025
Azure Bastion Elevation of Privilege Vulnerability
Critical
Unreviewed
CVE-2025-49752
was published
Nov 21, 2025
IBM webMethods Integration 10.11 through 10.11_Core_Fix22, 10.15 through 10.15_Core_Fix22, and 11...
High
Unreviewed
CVE-2025-36072
was published
Nov 21, 2025
Microsoft Defender Portal Spoofing Vulnerability
High
Unreviewed
CVE-2025-62459
was published
Nov 21, 2025
Azure Monitor Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2025-62207
was published
Nov 21, 2025
IBM Concert 1.0.0 through 2.0.0 could disclose sensitive server information from HTTP response...
Moderate
Unreviewed
CVE-2025-36160
was published
Nov 21, 2025
IBM Concert 1.0.0 through 2.0.0 could allow a local user with specific permission to obtain...
Moderate
Unreviewed
CVE-2025-36158
was published
Nov 21, 2025
Qlik Sense Enterprise v14.212.13 was discovered to contain an information leak via the /dev-hub/...
Unknown
Unreviewed
CVE-2025-61138
was published
Nov 21, 2025
A vulnerability was identified in Campcodes Complete Online Beauty Parlor Management System 1.0....
Moderate
Unreviewed
CVE-2025-13484
was published
Nov 21, 2025
A security flaw has been discovered in itsourcecode Online File Management System 1.0. This issue...
Moderate
Unreviewed
CVE-2025-13485
was published
Nov 21, 2025
The affected product allows unauthenticated access to Real Time Streaming Protocol (RTSP)...
High
Unreviewed
CVE-2025-62674
was published
Nov 20, 2025
HackerOne community member Dao Hoang Anh (yoyomiski) has reported an uncontrolled resource...
Moderate
Unreviewed
CVE-2025-55128
was published
Nov 20, 2025
HackerOne community member Dang Hung Vi (vidang04) has reported a stored XSS vulnerability...
Moderate
Unreviewed
CVE-2025-55126
was published
Nov 20, 2025
ProTip!
Advisories are also available from the
GraphQL API