GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,344
Erlang
31
GitHub Actions
22
Go
2,112
Maven
5,000+
npm
3,767
NuGet
680
pip
3,453
Pub
12
RubyGems
892
Rust
888
Swift
38
Unreviewed advisories
All unreviewed
5,000+
123,144 advisories
Filter by severity
Improper Validation of Specified Type of Input vulnerability in OpenText™ Content Management ...
Moderate
Unreviewed
CVE-2024-8125
was published
Feb 5, 2025
Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site...
Moderate
Unreviewed
CVE-2024-53963
was published
Feb 5, 2025
Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2024-53964
was published
Feb 5, 2025
Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2024-53962
was published
Feb 5, 2025
Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site...
Moderate
Unreviewed
CVE-2024-53966
was published
Feb 5, 2025
Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site...
Moderate
Unreviewed
CVE-2024-53965
was published
Feb 5, 2025
IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 is vulnerable to cross...
Moderate
Unreviewed
CVE-2024-40700
was published
Feb 4, 2025
IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 transmits sensitive or...
Moderate
Unreviewed
CVE-2024-43187
was published
Feb 4, 2025
Multiple Western Telematic (WTI) products contain a web interface that is vulnerable to a local...
Moderate
Unreviewed
CVE-2025-0630
was published
Feb 4, 2025
IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 could allow a local...
Moderate
Unreviewed
CVE-2024-45657
was published
Feb 4, 2025
IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 is vulnerable to cross...
Moderate
Unreviewed
CVE-2024-35138
was published
Feb 4, 2025
A vulnerability in the web-based management interface of HPE Aruba Networking ClearPass Policy...
Moderate
Unreviewed
CVE-2025-25039
was published
Feb 4, 2025
wasmvm: Malicious smart contract can slow down block production
Moderate
GHSA-mx2j-7cmv-353c
was published
for
cosmwasm-vm
(Go)
Feb 4, 2025
wasmvm: Malicious smart contract can crash the chain
Moderate
GHSA-23qp-3c2m-xx6w
was published
for
github.com/CosmWasm/wasmvm
(Go)
Feb 4, 2025
A vulnerability in HPE Aruba Networking ClearPass Policy Manager may, under certain circumstances...
Moderate
Unreviewed
CVE-2025-23060
was published
Feb 4, 2025
A vulnerability in the web-based management interface of HPE Aruba Networking ClearPass Policy...
Moderate
Unreviewed
CVE-2025-23059
was published
Feb 4, 2025
IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 could allow a remote...
Moderate
Unreviewed
CVE-2024-45659
was published
Feb 4, 2025
An information exposure through log file vulnerability exists in Brocade SANnav before Brocade...
Moderate
Unreviewed
CVE-2022-43935
was published
Feb 4, 2025
Possible information exposure through log file vulnerability where sensitive fields are recorded...
Moderate
Unreviewed
CVE-2022-43937
was published
Feb 4, 2025
Brocade SANnav versions before 2.2.2 log Brocade Fabric OS switch passwords when debugging is...
Moderate
Unreviewed
CVE-2022-43936
was published
Feb 4, 2025
An information exposure through log file vulnerability exists in Brocade SANnav before Brocade...
Moderate
Unreviewed
CVE-2022-43933
was published
Feb 4, 2025
Vitest browser mode serves arbitrary files
Moderate
CVE-2025-24963
was published
for
@vitest/browser
(npm)
Feb 4, 2025
Missing Authorization vulnerability in EmbedPress Document Block – Upload & Embed Docs. This...
Moderate
Unreviewed
CVE-2025-22696
was published
Feb 4, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-22697
was published
Feb 4, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...
Moderate
Unreviewed
CVE-2025-22675
was published
Feb 4, 2025
ProTip!
Advisories are also available from the
GraphQL API