GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
102
GitHub Actions
54
Go
4,428
Maven
5,000+
npm
5,000+
NuGet
1,088
pip
5,000+
Pub
13
RubyGems
1,129
Rust
1,506
Swift
62
Unreviewed advisories
All unreviewed
5,000+
1,188 advisories
Filter by severity
HCL AION is affected by a Missing or Insecure HTTP Strict-Transport-Security (HSTS) Header...
Low
Unreviewed
CVE-2025-52631
was published
Feb 3, 2026
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation...
Low
Unreviewed
CVE-2025-61639
was published
Feb 3, 2026
Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program...
Low
Unreviewed
CVE-2025-6593
was published
Feb 3, 2026
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ixray-team ixray-1.6...
Low
Unreviewed
CVE-2026-24870
was published
Jan 27, 2026
A security flaw has been discovered in Beetel 777VR1 up to 01.00.09/01.00.09_55. This affects an...
Low
Unreviewed
CVE-2026-1407
was published
Jan 26, 2026
Gitea improperly exposes issue and pull request titles
Low
CVE-2026-20800
was published
for
github.com/go-gitea/gitea
(Go)
Jan 23, 2026
Neo4j Enterprise edition versions prior to 2025.11.2 and 5.26.17 are vulnerable to a potential...
Low
Unreviewed
CVE-2025-12738
was published
Jan 22, 2026
MineAdmin May Expose Sensitive Information to an Unauthorized Actor
Low
CVE-2026-1196
was published
for
mineadmin/mineadmin
(Composer)
Jan 20, 2026
A vulnerability was detected in MineAdmin 1.x/2.x. Affected by this vulnerability is an unknown...
Low
Unreviewed
CVE-2026-1197
was published
Jan 20, 2026
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.3...
Low
Unreviewed
CVE-2025-24090
was published
Jan 16, 2026
Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release...
Low
Unreviewed
CVE-2025-46676
was published
Jan 9, 2026
Exposure of sensitive information in the TeamViewer entry dashboard component in Devolutions...
Low
Unreviewed
CVE-2026-0747
was published
Jan 8, 2026
Improper service binding configuration in internal service components in HCL BigFix IVR version 4...
Low
Unreviewed
CVE-2025-31964
was published
Jan 7, 2026
URI Credential Leakage Bypass over CVE-2025-27221
Low
CVE-2025-61594
was published
for
uri
(RubyGems)
Dec 30, 2025
A vulnerability was determined in Halo up to 2.21.10. This issue affects some unknown processing...
Low
Unreviewed
CVE-2025-15141
was published
Dec 28, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in watchOS 26...
Low
Unreviewed
CVE-2025-46279
was published
Dec 17, 2025
An information disclosure issue was addressed with improved privacy controls. This issue is fixed...
Low
Unreviewed
CVE-2025-43437
was published
Dec 12, 2025
NutzBoot vulnerable to information disclosure
Low
CVE-2025-13804
was published
for
org.nutz:nutzboot-parent
(Maven)
Dec 1, 2025
Skuul School Management System has a Sensitive Data Exposure Vulnerability in Uploaded Images
Low
CVE-2025-13785
was published
for
yungifez/skuul
(Composer)
Nov 30, 2025
Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server:...
Low
Unreviewed
CVE-2025-13758
was published
Nov 27, 2025
A sensitive information disclosure vulnerability exists in the error handling component of...
Low
Unreviewed
CVE-2025-13596
was published
Nov 24, 2025
In Splunk Enterprise versions below 10.0.1, 9.4.5, 9.3.7, and 9.2.9 and Splunk Cloud Platform...
Low
Unreviewed
CVE-2025-20379
was published
Nov 12, 2025
LiteLLM Information health API_KEY Information Disclosure Vulnerability. This vulnerability...
Low
Unreviewed
CVE-2025-11203
was published
Oct 29, 2025
Tileservice module is affected by information leak vulnerability, successful exploitation of this...
Low
Unreviewed
CVE-2025-57837
was published
Oct 20, 2025
Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized...
Low
Unreviewed
CVE-2025-59284
was published
Oct 14, 2025
ProTip!
Advisories are also available from the
GraphQL API