GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,815
Erlang
36
GitHub Actions
32
Go
2,401
Maven
5,000+
npm
4,044
NuGet
723
pip
3,835
Pub
12
RubyGems
933
Rust
1,003
Swift
38
Unreviewed advisories
All unreviewed
5,000+
26,399 advisories
Filter by severity
An OS command injection vulnerability exists in Russound MBX-PRE-D67F firmware version 3.1.6,...
Critical
Unreviewed
CVE-2025-50475
was published
Jul 31, 2025
The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.6,...
Critical
Unreviewed
CVE-2025-43193
was published
Jul 30, 2025
This issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.6...
Critical
Unreviewed
CVE-2025-43189
was published
Jul 30, 2025
An input validation issue was addressed with improved memory handling. This issue is fixed in...
Critical
Unreviewed
CVE-2025-31281
was published
Jul 30, 2025
A configuration issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-43192
was published
Jul 30, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.6,...
Critical
Unreviewed
CVE-2025-43261
was published
Jul 30, 2025
A use-after-free issue was addressed by removing the vulnerable code. This issue is fixed in...
Critical
Unreviewed
CVE-2025-43222
was published
Jul 30, 2025
A logic issue was addressed with improved checks. This issue is fixed in iOS 18.6 and iPadOS 18.6...
Critical
Unreviewed
CVE-2025-31229
was published
Jul 30, 2025
Marvell QConvergeConsole compressConfigFiles Directory Traversal Information Disclosure and...
Critical
Unreviewed
CVE-2025-8426
was published
Jul 31, 2025
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in...
Critical
Unreviewed
CVE-2025-43273
was published
Jul 30, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-43243
was published
Jul 30, 2025
This issue was addressed with improved validation of symlinks. This issue is fixed in iPadOS 17.7...
Critical
Unreviewed
CVE-2025-43220
was published
Jul 30, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-31279
was published
Jul 30, 2025
This issue was addressed by adding an additional prompt for user consent. This issue is fixed in...
Critical
Unreviewed
CVE-2025-43184
was published
Jul 30, 2025
A vulnerability exists in OAstium VoIP PBX astium-confweb-2.1-25399 and earlier, where improper...
Critical
Unreviewed
CVE-2013-10043
was published
Jul 31, 2025
An unauthenticated remote command execution vulnerability exists in Pandora FMS versions up to...
Critical
Unreviewed
CVE-2014-125124
was published
Jul 31, 2025
An unauthenticated arbitrary file upload vulnerability exists in FlashChat versions 6.0.2 and 6.0...
Critical
Unreviewed
CVE-2013-10038
was published
Jul 31, 2025
A stack-based buffer overflow vulnerability exists in freeFTPd version 1.0.10 and earlier in the...
Critical
Unreviewed
CVE-2013-10042
was published
Jul 31, 2025
ClipBucket version 2.6 and earlier contains a critical vulnerability in the ofc_upload_image.php...
Critical
Unreviewed
CVE-2013-10040
was published
Jul 31, 2025
Array Networks vAPV (version 8.3.2.17) and vxAG (version 9.2.0.34) appliances are affected by a...
Critical
Unreviewed
CVE-2014-125121
was published
Jul 31, 2025
An OS command injection vulnerability exists in WebTester version 5.x via the install2.php...
Critical
Unreviewed
CVE-2013-10037
was published
Jul 31, 2025
An unauthenticated SQL injection vulnerability exists in Kimai version 0.9.2.x via the db_restore...
Critical
Unreviewed
CVE-2013-10033
was published
Jul 31, 2025
An unrestricted file upload vulnerability exists in Simple E-Document versions 3.0 to 3.1 that...
Critical
Unreviewed
CVE-2014-125126
was published
Jul 31, 2025
An unauthenticated SQL injection vulnerability exists in the Kloxo web hosting control panel ...
Critical
Unreviewed
CVE-2014-125123
was published
Jul 31, 2025
An unrestricted file upload vulnerability exists in Kaseya KServer versions prior to 6.3.0.2. The...
Critical
Unreviewed
CVE-2013-10034
was published
Jul 31, 2025
ProTip!
Advisories are also available from the
GraphQL API