GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,856
Erlang
36
GitHub Actions
36
Go
2,488
Maven
5,000+
npm
4,104
NuGet
735
pip
3,923
Pub
12
RubyGems
945
Rust
1,017
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
268,469 advisories
Filter by severity
The Microsoft vulnerable driver block list is implemented as Windows Defender Application Control...
Critical
Unreviewed
CVE-2025-59033
was published
Sep 8, 2025
In SAEMM_DiscloseMsId of SAEMM_RadioMessageCodec.c, there is a possible out of bounds read due to...
High
Unreviewed
CVE-2024-56189
was published
Sep 4, 2025
The MOD3 command traffic between the monitoring application and the
inverter is transmitted in...
High
Unreviewed
CVE-2025-52586
was published
Aug 8, 2025
QuickCMS is vulnerable to Reflected XSS via sSort parameter in admin's panel functionality. A...
Moderate
Unreviewed
CVE-2025-54540
was published
Aug 28, 2025
A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists that...
High
Unreviewed
CVE-2021-22825
was published
Jan 29, 2022
QuickCMS.EXT is vulnerable to Reflected XSS in sFileName parameter in thumbnail viewer...
Moderate
Unreviewed
CVE-2025-54175
was published
Aug 20, 2025
Missing Authentication for Critical Function vulnerability in ABB Aspect.This issue affects...
High
Unreviewed
CVE-2025-7677
was published
Aug 11, 2025
QuickCMS is vulnerable to Cross-Site Request Forgery in article creation functionality. Malicious...
Moderate
Unreviewed
CVE-2025-54174
was published
Aug 20, 2025
QuickCMS is vulnerable to Reflected XSS via sLangEdit parameter in admin's panel functionality. A...
Moderate
Unreviewed
CVE-2025-55175
was published
Aug 28, 2025
QuickCMS is vulnerable to Stored XSS in sTitle parameter in page editor functionality. Malicious...
Moderate
Unreviewed
CVE-2025-54172
was published
Aug 20, 2025
QuickCMS is vulnerable to Stored XSS via aDirFilesDescriptions parameter in files editor...
Moderate
Unreviewed
CVE-2025-54544
was published
Aug 28, 2025
QuickCMS is vulnerable to Cross-Site Request Forgery in page deletion functionality. Malicious...
Moderate
Unreviewed
CVE-2025-54541
was published
Aug 28, 2025
A weakness has been identified in Portabilis i-Educar up to 2.10. Affected by this vulnerability...
Moderate
Unreviewed
CVE-2025-10099
was published
Sep 8, 2025
A vulnerability was identified in SimStudioAI sim up to 1.0.0. This impacts an unknown function...
Moderate
Unreviewed
CVE-2025-10097
was published
Sep 8, 2025
A CSV injection vulnerability in the /id_profiles endpoint of Avigilon ACM v7.10.0.20 allows...
Unknown
Unreviewed
CVE-2025-56267
was published
Sep 8, 2025
A security flaw has been discovered in PHPGurukul User Management System 1.0. Affected is an...
Moderate
Unreviewed
CVE-2025-10098
was published
Sep 8, 2025
A vulnerability was detected in SourceCodester Simple Forum Discussion System 1.0. This impacts...
Moderate
Unreviewed
CVE-2025-10100
was published
Sep 8, 2025
A Host Header Injection vulnerability in Avigilon ACM v7.10.0.20 allows attackers to execute...
Unknown
Unreviewed
CVE-2025-56266
was published
Sep 8, 2025
An arbitrary file upload vulnerability in the Chat Trigger component of N8N v1.95.3, v1.100.1,...
Unknown
Unreviewed
CVE-2025-56265
was published
Sep 8, 2025
codeceptjs 3.7.3 contains a command injection vulnerability in the emptyFolder function (lib...
Unknown
Unreviewed
CVE-2025-57285
was published
Sep 8, 2025
Scholl Communications AG Weblication CMS Core v019.004.000.000 was discovered to contain a cross...
Critical
Unreviewed
CVE-2025-52161
was published
Sep 8, 2025
A cross-site scripting (XSS) vulnerability in Smart Search & Filter Shopify App 1.0 allows a...
High
Unreviewed
CVE-2025-55998
was published
Sep 8, 2025
A vulnerability was determined in SimStudioAI sim up to 1.0.0. This affects an unknown function...
Moderate
Unreviewed
CVE-2025-10096
was published
Sep 8, 2025
A vulnerability has been found in projectworlds Travel Management System 1.0. This vulnerability...
Moderate
Unreviewed
CVE-2025-9924
was published
Sep 8, 2025
A vulnerability was determined in SourceCodester Simple Cafe Billing System 1.0. The impacted...
Moderate
Unreviewed
CVE-2025-9701
was published
Sep 8, 2025
ProTip!
Advisories are also available from the
GraphQL API