GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,856
Erlang
36
GitHub Actions
36
Go
2,488
Maven
5,000+
npm
4,104
NuGet
735
pip
3,923
Pub
12
RubyGems
945
Rust
1,017
Swift
39
Unreviewed advisories
All unreviewed
5,000+
2,773 advisories
Filter by severity
In clearAllowBgActivityStarts of PendingIntentRecord.java, there is a possible way for an...
High
Unreviewed
CVE-2025-26436
was published
Sep 5, 2025
In onCreate of NotificationAccessConfirmationActivity.java, there is a possible incorrect...
Moderate
Unreviewed
CVE-2025-26442
was published
Sep 5, 2025
NVIDIA ConnectX contains a vulnerability in the management interface, where an attacker with...
Moderate
Unreviewed
CVE-2025-23262
was published
Sep 5, 2025
NVIDIA BlueField contains a vulnerability in the management interface, where an attacker with...
High
Unreviewed
CVE-2025-23256
was published
Sep 5, 2025
In onCreate of SelectAccountActivity.java, there is a possible way to add contacts without...
High
Unreviewed
CVE-2025-48523
was published
Sep 4, 2025
In startSpaActivityForApp of SpaActivity.kt, there is a possible cross-user permission bypass due...
High
Unreviewed
CVE-2025-32333
was published
Sep 4, 2025
A vulnerability has been found in macrozheng mall up to 1.0.3. This affects the function...
Moderate
Unreviewed
CVE-2025-9835
was published
Sep 3, 2025
rocket.chat Incorrect Authorization Information Disclosure Vulnerability. This vulnerability...
Low
Unreviewed
CVE-2025-7974
was published
Sep 2, 2025
Incomplete authorization of linked device synchronization messages in WhatsApp for iOS prior to...
High
Unreviewed
CVE-2025-55177
was published
Aug 29, 2025
Incorrect authorization in Kibana can lead to privilege escalation via the built-in...
Moderate
Unreviewed
CVE-2025-25010
was published
Aug 28, 2025
The Block Bad Bots and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection plugin for...
Moderate
Unreviewed
CVE-2025-9376
was published
Aug 28, 2025
Kubernetes Nodes can delete themselves by adding an OwnerReference
Moderate
CVE-2025-5187
was published
for
k8s.io/kubernetes
(Go)
Aug 27, 2025
An access control vulnerability was discovered in the Request Trace and Download Trace...
Moderate
Unreviewed
CVE-2025-1501
was published
Aug 26, 2025
IBM Jazz Foundation 7.0.2 to 7.0.2 iFix035, 7.0.3 to 7.0.3 iFix018, and 7.1.0 to 7.1.0 iFix004...
Critical
Unreviewed
CVE-2025-36157
was published
Aug 24, 2025
Mattermost Fails to Properly Validate Team Role Modification
Low
CVE-2025-53971
was published
for
github.com/mattermost/mattermost-server
(Go)
Aug 21, 2025
Mattermost Lack of Access Control Validation
Low
CVE-2025-49810
was published
for
github.com/mattermost/mattermost-server
(Go)
Aug 21, 2025
An Improper Access Control could allow a malicious actor authenticated in the API of certain...
Moderate
Unreviewed
CVE-2025-27213
was published
Aug 21, 2025
In JetBrains IntelliJ IDEA before 2025.2 improper access control allowed Code With Me guest to...
Moderate
Unreviewed
CVE-2025-57728
was published
Aug 20, 2025
MiR software versions prior to version 3.0.0 have insufficient authorization controls when...
Moderate
Unreviewed
CVE-2025-9228
was published
Aug 20, 2025
OpenFGA Authorization Bypass
Moderate
CVE-2025-55213
was published
for
github.com/openfga/openfga
(Go)
Aug 18, 2025
Capsule tenant owners with "patch namespace" permission can hijack system namespaces label
Critical
CVE-2025-55205
was published
for
github.com/projectcapsule/capsule
(Go)
Aug 18, 2025
IBM Storage Virtualize 8.4, 8.5, 8.6, and 8.7 could allow an authenticated user to escalate their...
High
Unreviewed
CVE-2025-36120
was published
Aug 18, 2025
A security issue exists within the 5032 16pt Digital Configurable module’s web server. The web...
High
Unreviewed
CVE-2025-7773
was published
Aug 14, 2025
An issue has been discovered in GitLab CE/EE affecting all versions from 15.6 before 18.0.6, 18.1...
Moderate
Unreviewed
CVE-2024-10219
was published
Aug 13, 2025
Adobe Commerce versions 2.4.9-alpha1, 2.4.8-p1, 2.4.7-p6, 2.4.6-p11, 2.4.5-p13, 2.4.4-p14 and...
High
Unreviewed
CVE-2025-49556
was published
Aug 12, 2025
ProTip!
Advisories are also available from the
GraphQL API