GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
102
GitHub Actions
54
Go
4,407
Maven
5,000+
npm
5,000+
NuGet
1,049
pip
5,000+
Pub
13
RubyGems
1,128
Rust
1,498
Swift
61
Unreviewed advisories
All unreviewed
5,000+
1,175 advisories
Filter by severity
Vulnerability in the Oracle EDI Gateway product of Oracle E-Business Suite (component: Internal...
Low
Unreviewed
CVE-2026-61303
was published
Jul 22, 2026
Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (component: UK Payroll)....
Low
Unreviewed
CVE-2026-61214
was published
Jul 22, 2026
Vulnerability in the PeopleSoft Enterprise CS Student Records product of Oracle PeopleSoft ...
Low
Unreviewed
CVE-2026-61104
was published
Jul 22, 2026
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server:...
Low
Unreviewed
CVE-2026-61081
was published
Jul 22, 2026
Vulnerability in the Oracle Data Integrator product of Oracle Fusion Middleware (component:...
Low
Unreviewed
CVE-2026-60318
was published
Jul 22, 2026
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
Low
Unreviewed
CVE-2026-60160
was published
Jul 22, 2026
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
Low
Unreviewed
CVE-2026-47043
was published
Jul 22, 2026
Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: Event...
Low
Unreviewed
CVE-2026-47016
was published
Jul 22, 2026
Gitea: Webhook Authorization Header Returned in Plaintext via API
Low
CVE-2026-58511
was published
for
code.gitea.io/gitea
(Go)
Jul 21, 2026
Gitea: Private Repository Metadata Remains Accessible After Access Revocation
Low
CVE-2026-58434
was published
for
code.gitea.io/gitea
(Go)
Jul 21, 2026
HCL MyCloud was affected with License Key Revealed in HTTP Response. It may enable attackers to...
Low
Unreviewed
CVE-2026-56579
was published
Jul 21, 2026
HCL MyCloud was affected by Server Version Disclosure. It may help attackers identify and exploit...
Low
Unreviewed
CVE-2026-56578
was published
Jul 21, 2026
HCL IEM was affected with the Information disclosure nginx server. It may enable attackers to...
Low
Unreviewed
CVE-2026-56584
was published
Jul 21, 2026
File Browser: Share API exposes the password hash and bypass token
Low
CVE-2026-62684
was published
for
github.com/filebrowser/filebrowser/v2
(Go)
Jul 20, 2026
HCL DFXAnalytics is affected by a Missing HTTP Strict-Transport-Security Header vulnerability....
Low
Unreviewed
CVE-2026-35145
was published
Jul 16, 2026
HCL DFXAnalytics is affected by a Missing SameSite Attribute vulnerability. The application fails...
Low
Unreviewed
CVE-2026-35143
was published
Jul 16, 2026
HCL DFXAnalytics is affected by a Missing Secure Attribute in Encrypted Session (SSL) Cookie...
Low
Unreviewed
CVE-2026-35140
was published
Jul 16, 2026
HCL DFXAnalytics is affected by an Internal IP Address Disclosure vulnerability. The application...
Low
Unreviewed
CVE-2026-35142
was published
Jul 16, 2026
CVE-2026-40956
is a memory disclosure vulnerability in Secure Access client versions prior to 14...
Low
Unreviewed
CVE-2026-40956
was published
Jul 15, 2026
Adobe Commerce is affected by an Information Exposure vulnerability that could lead to a limited...
Low
Unreviewed
CVE-2026-48001
was published
Jul 14, 2026
Insertion of sensitive information into a file in the Recovery Kit response file generation...
Low
Unreviewed
CVE-2026-15642
was published
Jul 14, 2026
Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized...
Low
Unreviewed
CVE-2026-50416
was published
Jul 14, 2026
Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized...
Low
Unreviewed
CVE-2026-50419
was published
Jul 14, 2026
A vulnerability was identified in nextlevelbuilder GoClaw up to 3.13.3-beta.3. This vulnerability...
Low
Unreviewed
CVE-2026-15627
was published
Jul 14, 2026
A vulnerability was found in zhayujie CowAgent up to 2.1.0. This issue affects the function...
Low
Unreviewed
CVE-2026-15329
was published
Jul 10, 2026
ProTip!
Advisories are also available from the
GraphQL API