GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,647 advisories
Filter by severity
A permissions issue was addressed with improved validation. This issue is fixed in macOS Sonoma...
Moderate
Unreviewed
CVE-2025-43414
was published
Nov 4, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.8.2,...
Moderate
Unreviewed
CVE-2025-43396
was published
Nov 4, 2025
This issue was addressed with improved entitlements. This issue is fixed in visionOS 26.1, macOS...
High
Unreviewed
CVE-2025-43407
was published
Nov 4, 2025
This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sonoma...
Moderate
Unreviewed
CVE-2025-43334
was published
Nov 4, 2025
The issue was addressed by adding additional logic. This issue is fixed in macOS Sonoma 14.8.2,...
Moderate
Unreviewed
CVE-2025-43335
was published
Nov 4, 2025
A logic issue was addressed with improved checks. This issue is fixed in iOS 26 and iPadOS 26. An...
Low
Unreviewed
CVE-2025-43309
was published
Nov 4, 2025
A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.8.2,...
Moderate
Unreviewed
CVE-2025-43322
was published
Nov 4, 2025
A vulnerability was identified in code-projects Simple Online Hotel Reservation System 2.0. The...
Moderate
Unreviewed
CVE-2025-12593
was published
Nov 2, 2025
Summer Pearl Group Vacation Rental Management Platform prior to v1.0.2 suffers from insufficient...
Moderate
Unreviewed
CVE-2025-63562
was published
Oct 31, 2025
When passing through PCI devices, the detach logic in libxl won't remove
access permissions to...
High
Unreviewed
CVE-2025-58149
was published
Oct 31, 2025
A vulnerability in the Mount service of Veeam Backup & Replication, which allows for remote code...
Critical
Unreviewed
CVE-2025-48983
was published
Oct 31, 2025
Each Italy Wireless Mini Router WIRELESS-N 300M v28K.MiniRouter.20190211 was discovered to store...
High
Unreviewed
CVE-2025-63423
was published
Oct 30, 2025
Incorrect access control in the Web management interface in Each Italy Wireless Mini Router...
High
Unreviewed
CVE-2025-63422
was published
Oct 30, 2025
2nd Line Android App version v1.2.92 and before (package name com.mysecondline.app), developed by...
High
Unreviewed
CVE-2025-61114
was published
Oct 30, 2025
AG Life Logger Android App version v1.0.2.72 and before (package name com.donki.healthy),...
High
Unreviewed
CVE-2025-61120
was published
Oct 30, 2025
Kanova Android App version 1.0.27 (package name com.karelane), developed by Karely L.L.C.,...
High
Unreviewed
CVE-2025-61119
was published
Oct 30, 2025
mCarFix Motorists App version 2.3 (package name com.skytop.mcarfix), developed by Paniel Mwaura,...
High
Unreviewed
CVE-2025-61118
was published
Oct 30, 2025
AdForest - Classified Android App version 4.0.12 (package name scriptsbundle.adforest), developed...
High
Unreviewed
CVE-2025-61116
was published
Oct 30, 2025
Senza: Keto & Fasting Android App version 2.10.15 (package name com.gl.senza), developed by Paul...
High
Unreviewed
CVE-2025-61117
was published
Oct 30, 2025
ABC Fine Wine & Spirits Android App version v.11.27.5 and before (package name com.cta...
High
Unreviewed
CVE-2025-61115
was published
Oct 30, 2025
TalkTalk 3.3.6 Android App contains improper access control vulnerabilities in multiple API...
High
Unreviewed
CVE-2025-61113
was published
Oct 30, 2025
A critical severity vulnerability has been identified in the ALPR Manager role of Security Center...
Critical
Unreviewed
CVE-2025-43027
was published
Oct 30, 2025
An issue discovered in Dyson App v6.1.23041-23595 allows unauthenticated attackers to control...
High
Unreviewed
CVE-2025-56558
was published
Oct 29, 2025
Incorrect access control on Dataphone A920 v2025.07.161103 exposes a service on port 8888 by...
High
Unreviewed
CVE-2025-61234
was published
Oct 29, 2025
Incorrect access control in the kernel driver of ThreatFire System Monitor v4.7.0.53 allows...
High
Unreviewed
CVE-2025-61156
was published
Oct 29, 2025
ProTip!
Advisories are also available from the
GraphQL API