GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,802
Erlang
36
GitHub Actions
29
Go
2,382
Maven
5,000+
npm
4,015
NuGet
720
pip
3,811
Pub
12
RubyGems
930
Rust
987
Swift
38
Unreviewed advisories
All unreviewed
5,000+
109,529 advisories
Filter by severity
Leviton AcquiSuite and Energy Monitoring Hub
are susceptible to a cross-site scripting...
High
Unreviewed
CVE-2025-6185
was published
Jul 18, 2025
Brocade ASCG before 3.3.0 logs JSON
Web Tokens (JWT) in log files. An attacker with access to...
High
Unreviewed
CVE-2025-6391
was published
Jul 18, 2025
A vulnerability, which was classified as critical, has been found in TOTOLINK T6 up to 4.1.5cu...
High
Unreviewed
CVE-2025-7758
was published
Jul 18, 2025
A vulnerability, which was classified as critical, has been found in D-Link DI-8100 16.07.26A1....
High
Unreviewed
CVE-2025-7762
was published
Jul 18, 2025
Brocade ASCG before 3.3.0 allows for the use of medium strength cryptography algorithms on...
High
Unreviewed
CVE-2025-7398
was published
Jul 18, 2025
A cross-site scripting (XSS) vulnerability was reported in the Lenovo Browser that could allow an...
High
Unreviewed
CVE-2025-6248
was published
Jul 17, 2025
An improper validation vulnerability was reported in Lenovo Vantage that under certain conditions...
High
Unreviewed
CVE-2025-6232
was published
Jul 17, 2025
A buffer overflow vulnerability was reported in the Lenovo Protection Driver, prior to version 5...
High
Unreviewed
CVE-2025-4657
was published
Jul 17, 2025
NVIDIA Jetson Linux contains a vulnerability in UEFI Management mode, where an unprivileged local...
High
Unreviewed
CVE-2025-23270
was published
Jul 17, 2025
A local privilege escalation vulnerability in Sophos Intercept X for Windows with Central Device...
High
Unreviewed
CVE-2025-7433
was published
Jul 17, 2025
A code execution vulnerability has been identified in the Robot Operating System (ROS) 'rosbag'...
High
Unreviewed
CVE-2025-3753
was published
Jul 17, 2025
An authentication bypass vulnerability was reported in FileZ client application that could allow...
High
Unreviewed
CVE-2025-6249
was published
Jul 17, 2025
An improper validation vulnerability was reported in Lenovo Vantage that under certain conditions...
High
Unreviewed
CVE-2025-6231
was published
Jul 17, 2025
A code injection vulnerability has been discovered in the Robot Operating System (ROS) 'rostopic'...
High
Unreviewed
CVE-2024-41921
was published
Jul 17, 2025
A DLL hijacking vulnerability was reported in the Motorola Software Fix (Rescue and Smart...
High
Unreviewed
CVE-2025-1700
was published
Jul 17, 2025
NVIDIA Container Toolkit for all platforms contains a vulnerability in the update-ldcache hook,...
High
Unreviewed
CVE-2025-23267
was published
Jul 17, 2025
An incorrect permissions vulnerability was reported in Elliptic Labs Virtual Lock Sensor that...
High
Unreviewed
CVE-2025-0886
was published
Jul 17, 2025
A code injection vulnerability has been discovered in the Robot Operating System (ROS) 'rostopic'...
High
Unreviewed
CVE-2024-41148
was published
Jul 17, 2025
A local privilege escalation vulnerability in the Intercept X for Windows installer prior version...
High
Unreviewed
CVE-2025-7472
was published
Jul 17, 2025
A code execution vulnerability has been discovered in the Robot Operating System (ROS) 'rosparam'...
High
Unreviewed
CVE-2024-39289
was published
Jul 17, 2025
A code injection vulnerability has been identified in the Robot Operating System (ROS) 'roslaunch...
High
Unreviewed
CVE-2024-39835
was published
Jul 17, 2025
A vulnerability related to registry permissions in the Intercept X for Windows updater prior to...
High
Unreviewed
CVE-2024-13972
was published
Jul 17, 2025
Multer vulnerable to Denial of Service via unhandled exception from malformed request
High
CVE-2025-7338
was published
for
multer
(npm)
Jul 17, 2025
A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. This affects the...
High
Unreviewed
CVE-2025-7747
was published
Jul 17, 2025
NVIDIA DOCA-Host and Mellanox OFED contain a vulnerability in the VGT+ feature, where an attacker...
High
Unreviewed
CVE-2025-23263
was published
Jul 17, 2025
ProTip!
Advisories are also available from the
GraphQL API