GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,633
Erlang
34
GitHub Actions
25
Go
2,241
Maven
5,000+
npm
3,902
NuGet
701
pip
3,669
Pub
12
RubyGems
914
Rust
943
Swift
38
Unreviewed advisories
All unreviewed
5,000+
25,338 advisories
Filter by severity
Deserialization of Untrusted Data vulnerability in Climax Themes Kata Plus allows Object...
Critical
Unreviewed
CVE-2025-32572
was published
Apr 17, 2025
Improper Control of Generation of Code ('Code Injection') vulnerability in termel PDF 2 Post...
Critical
Unreviewed
CVE-2025-32583
was published
Apr 17, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-27302
was published
Apr 17, 2025
An issue in dlink DIR 832x 240802 allows a remote attacker to execute arbitrary code via the...
Critical
Unreviewed
CVE-2025-29043
was published
Apr 17, 2025
An issue in dlink DIR 832x 240802 allows a remote attacker to execute arbitrary code via the...
Critical
Unreviewed
CVE-2025-29042
was published
Apr 17, 2025
Weak Password Recovery Mechanism for Forgotten Password vulnerability in videowhisper Paid...
Critical
Unreviewed
CVE-2025-31380
was published
Apr 17, 2025
Deserialization of Untrusted Data vulnerability in ssvadim SS Quiz allows Object Injection. This...
Critical
Unreviewed
CVE-2025-27287
was published
Apr 17, 2025
Unrestricted Upload of File with Dangerous Type vulnerability in rockgod100 Theme File Duplicator...
Critical
Unreviewed
CVE-2025-27282
was published
Apr 17, 2025
Deserialization of Untrusted Data vulnerability in saoshyant1994 Saoshyant Slider allows Object...
Critical
Unreviewed
CVE-2025-27286
was published
Apr 17, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-22655
was published
Apr 17, 2025
Buffer Overflow vulnerability in ALFA_CAMPRO-co-2.29 allows a remote attacker to execute...
Critical
Unreviewed
CVE-2025-29045
was published
Apr 17, 2025
Buffer Overflow vulnerability inALFA WiFi CampPro router ALFA_CAMPRO-co-2.29 allows a remote...
Critical
Unreviewed
CVE-2025-29046
was published
Apr 17, 2025
Buffer Overflow vulnerability inALFA WiFi CampPro router ALFA_CAMPRO-co-2.29 allows a remote...
Critical
Unreviewed
CVE-2025-29047
was published
Apr 17, 2025
Improper Verification of Source of a Communication Channel in Work Desktop for Mac versions below...
Critical
Unreviewed
CVE-2025-3651
was published
Apr 17, 2025
An issue in dlink DIR 832x 240802 allows a remote attacker to execute arbitrary code via the...
Critical
Unreviewed
CVE-2025-29040
was published
Apr 17, 2025
Buffer Overflow vulnerability in Netgear- R61 router V1.0.1.28 allows a remote attacker to...
Critical
Unreviewed
CVE-2025-29044
was published
Apr 17, 2025
An issue in dlink DIR 832x 240802 allows a remote attacker to execute arbitrary code via the...
Critical
Unreviewed
CVE-2025-29041
was published
Apr 17, 2025
A valid, authenticated user with sufficient privileges and who is aware of Continuous Compliance...
Critical
Unreviewed
CVE-2025-3113
was published
Apr 17, 2025
A improper control of filename for include/require statement in PHP program vulnerability in the...
Critical
Unreviewed
CVE-2025-31340
was published
Apr 17, 2025
Access Control Vulnerability in Gerrit chromiumos project configuration in Google ChromeOS 131.0...
Critical
Unreviewed
CVE-2025-1568
was published
Apr 17, 2025
ComponentInstaller Modification in ComponentInstaller in Google ChromeOS 124.0.6367.34 on...
Critical
Unreviewed
CVE-2025-1704
was published
Apr 17, 2025
Out-of-Bounds Read in ip_set_bitmap_ip.c in Google ChromeOS Kernel Versions 6.1, 5.15, 5.10, 5.4,...
Critical
Unreviewed
CVE-2025-2073
was published
Apr 17, 2025
Overview
The product receives input from an upstream component, but it does not restrict...
Critical
Unreviewed
CVE-2025-0756
was published
Apr 17, 2025
SourceCodester Company Website CMS 1.0 contains a file upload vulnerability via the "Create...
Critical
Unreviewed
CVE-2025-29708
was published
Apr 16, 2025
SourceCodester Company Website CMS 1.0 has a File upload vulnerability via the "Create portfolio"...
Critical
Unreviewed
CVE-2025-29709
was published
Apr 16, 2025
ProTip!
Advisories are also available from the
GraphQL API