GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
50
Go
3,606
Maven
5,000+
npm
5,000+
NuGet
924
pip
4,831
Pub
13
RubyGems
1,045
Rust
1,256
Swift
53
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
990 advisories
Filter by severity
Tanium addressed an information disclosure vulnerability in Threat Response.
Low
Unreviewed
CVE-2026-6392
was published
Apr 22, 2026
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition...
Low
Unreviewed
CVE-2026-34268
was published
Apr 21, 2026
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition...
Low
Unreviewed
CVE-2026-22007
was published
Apr 21, 2026
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema)...
Low
Unreviewed
CVE-2026-22001
was published
Apr 21, 2026
StorageGRID (formerly StorageGRID Webscale) versions prior to 11.9.0.13 and 12.0.0.6 are...
Low
Unreviewed
CVE-2026-22051
was published
Apr 21, 2026
In Grafana's alerting system, users with edit permissions for a contact point, specifically the...
Low
Unreviewed
CVE-2025-12141
was published
Apr 15, 2026
A vulnerability was found in code-projects Online Library Management System 1.0. Affected is an...
Low
Unreviewed
CVE-2026-6000
was published
Apr 10, 2026
A weakness has been identified in code-projects Patient Record Management System 1.0. This...
Low
Unreviewed
CVE-2026-5960
was published
Apr 9, 2026
A vulnerability has been found in code-projects Movie Ticketing System 1.0. Impacted is an...
Low
Unreviewed
CVE-2026-5847
was published
Apr 9, 2026
An issue that could allow a user with access to a credential to view sensitive fields through an...
Low
Unreviewed
CVE-2026-5375
was published
Apr 7, 2026
HCL Aftermarket DPC is affected by Banner Disclosure vulnerability where attackers gain insights...
Low
Unreviewed
CVE-2025-55272
was published
Mar 26, 2026
HCL Aftermarket DPC is affected by Internal IP Disclosure vulnerability will give attackers a...
Low
Unreviewed
CVE-2025-55276
was published
Mar 26, 2026
A flaw has been found in Enter Software Iperius Backup up to 8.7.3. Affected by this...
Low
Unreviewed
CVE-2026-4823
was published
Mar 26, 2026
A vulnerability was detected in myAEDES App up to 1.18.4 on Android. Affected is an unknown...
Low
Unreviewed
CVE-2026-4218
was published
Mar 16, 2026
HCL AION is affected by a vulnerability where certain identifiers may be predictable in nature....
Low
Unreviewed
CVE-2025-52649
was published
Mar 16, 2026
In Splunk Enterprise versions below 10.2.0, 10.0.3, 9.4.5, 9.3.7, and 9.2.9, and Splunk Cloud...
Low
Unreviewed
CVE-2026-20137
was published
Feb 18, 2026
The WP All Export plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Low
Unreviewed
CVE-2026-1582
was published
Feb 18, 2026
A privacy issue was addressed with improved private data redaction for log entries. This issue is...
Low
Unreviewed
CVE-2026-20681
was published
Feb 12, 2026
A vulnerability exists in BIG-IP Edge Client and browser VPN clients on Windows that may allow...
Low
Unreviewed
CVE-2026-20730
was published
Feb 4, 2026
HCL AION is affected by a Missing or Insecure HTTP Strict-Transport-Security (HSTS) Header...
Low
Unreviewed
CVE-2025-52631
was published
Feb 3, 2026
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation...
Low
Unreviewed
CVE-2025-61639
was published
Feb 3, 2026
Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program...
Low
Unreviewed
CVE-2025-6593
was published
Feb 3, 2026
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ixray-team ixray-1.6...
Low
Unreviewed
CVE-2026-24870
was published
Jan 27, 2026
A security flaw has been discovered in Beetel 777VR1 up to 01.00.09/01.00.09_55. This affects an...
Low
Unreviewed
CVE-2026-1407
was published
Jan 26, 2026
Neo4j Enterprise edition versions prior to 2025.11.2 and 5.26.17 are vulnerable to a potential...
Low
Unreviewed
CVE-2025-12738
was published
Jan 22, 2026
ProTip!
Advisories are also available from the
GraphQL API