GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,347
Erlang
31
GitHub Actions
22
Go
2,117
Maven
5,000+
npm
3,768
NuGet
680
pip
3,457
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
10,813 advisories
Filter by severity
When BIG-IP Next Central Manager is running, undisclosed requests to the BIG-IP Next Central...
High
Unreviewed
CVE-2025-24319
was published
Feb 5, 2025
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS...
High
Unreviewed
CVE-2024-56135
was published
Feb 5, 2025
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS...
High
Unreviewed
CVE-2024-56131
was published
Feb 5, 2025
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS...
High
Unreviewed
CVE-2024-56133
was published
Feb 5, 2025
A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure...
Moderate
Unreviewed
CVE-2025-20184
was published
Feb 5, 2025
A vulnerability in a policy-based Cisco Application Visibility and Control (AVC) implementation...
Moderate
Unreviewed
CVE-2025-20183
was published
Feb 5, 2025
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS...
High
Unreviewed
CVE-2024-56132
was published
Feb 5, 2025
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS...
High
Unreviewed
CVE-2024-56134
was published
Feb 5, 2025
Browsershot Local File Inclusion
Moderate
CVE-2025-1026
was published
for
spatie/browsershot
(Composer)
Feb 5, 2025
Browsershot Path Traversal
High
CVE-2025-1022
was published
for
spatie/browsershot
(Composer)
Feb 5, 2025
Memory corruption while configuring a Hypervisor based input virtual device.
High
Unreviewed
CVE-2024-38420
was published
Feb 3, 2025
Memory corruption while processing frame packets.
Moderate
Unreviewed
CVE-2024-38413
was published
Feb 3, 2025
A vulnerability, which was classified as critical, has been found in MaxD Lightning Module 4.43...
Low
Unreviewed
CVE-2025-0974
was published
Feb 3, 2025
The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain...
Moderate
Unreviewed
CVE-2025-0938
was published
Jan 31, 2025
An improper input validation allows an unauthenticated attacker to alter PAM logs by sending a...
Moderate
Unreviewed
CVE-2025-24501
was published
Jan 30, 2025
An improper input validation the CSRF filter results in unsanitized user input written to the...
Moderate
Unreviewed
CVE-2025-24504
was published
Jan 30, 2025
Go Ethereum vulnerable to DoS via malicious p2p message
Moderate
CVE-2025-24883
was published
for
github.com/ethereum/go-ethereum
(Go)
Jan 30, 2025
A vulnerability has been found in Aridius XYZ up to 20240927 on OpenCart and classified as...
Moderate
Unreviewed
CVE-2025-0841
was published
Jan 29, 2025
A vulnerability has been found in y_project RuoYi up to 4.8.0 and classified as critical. This...
Moderate
Unreviewed
CVE-2025-0734
was published
Jan 27, 2025
A vulnerability exists in OTRS and ((OTRS Community Edition)) that fail to set the HTTP response...
Moderate
Unreviewed
CVE-2024-43445
was published
Jan 27, 2025
Apache Ranger UI vulnerable to Server Side Request Forgery
Critical
CVE-2024-45479
was published
for
org.apache.ranger:ranger
(Maven)
Jan 22, 2025
A Server-Side Request Forgery (SSRF) vulnerability has been identified in the Web Services...
High
Unreviewed
CVE-2023-50733
was published
Jan 22, 2025
Stored XSS vulnerability in Edit Service Page of Apache Ranger UI in Apache Ranger Version 2.4.0....
Moderate
Unreviewed
CVE-2024-45478
was published
Jan 22, 2025
Excessive Platform Resource Consumption within a Loop when unmarshalling Compose file having recursive loop
Moderate
CVE-2024-10846
was published
for
github.com/compose-spec/compose-go/v2
(Go)
Jan 21, 2025
Umbraco Forms's Short and Long Answer Fields Are Not Validated Server-Side For Maximum Length
Moderate
CVE-2025-23041
was published
for
Umbraco.Forms
(NuGet)
Jan 14, 2025
ProTip!
Advisories are also available from the
GraphQL API