GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,876
Erlang
37
GitHub Actions
36
Go
2,522
Maven
5,000+
npm
4,171
NuGet
741
pip
3,965
Pub
12
RubyGems
947
Rust
1,028
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
23,548 advisories
Filter by severity
Ilevia EVE X1/X5 Server version ≤ 4.7.18.0.eden contains a misconfiguration in the sudoers file...
Critical
Unreviewed
CVE-2025-34187
was published
Sep 16, 2025
A missing authentication for critical function vulnerability in SUNNET Corporate Training...
Critical
Unreviewed
CVE-2025-54942
was published
Sep 25, 2025
A missing authorization vulnerability in SUNNET Corporate Training Management System before 10.11...
Critical
Unreviewed
CVE-2025-54943
was published
Sep 25, 2025
An external control of file name or path vulnerability in SUNNET Corporate Training Management...
Critical
Unreviewed
CVE-2025-54945
was published
Sep 25, 2025
A SQL injection vulnerability in SUNNET Corporate Training Management System before 10.11 allows...
Critical
Unreviewed
CVE-2025-54946
was published
Sep 25, 2025
Partner Software's Partner Software Product and corresponding Partner Web application use the...
Critical
Unreviewed
CVE-2025-6077
was published
Aug 2, 2025
An issue in Datart v.1.0.0-rc.3 allows a remote attacker to execute arbitrary code via the INIT...
Critical
Unreviewed
CVE-2025-56819
was published
Sep 24, 2025
Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22.0.1049 and...
Critical
Unreviewed
CVE-2025-34199
was published
Sep 19, 2025
An OS command injection vulnerability has been reported to affect several product versions. If...
Critical
Unreviewed
CVE-2024-48860
was published
Nov 22, 2024
A SQL injection vulnerability has been reported to affect QuRouter. If exploited, the...
Critical
Unreviewed
CVE-2024-50389
was published
Dec 6, 2024
Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22.0.1002 and...
Critical
Unreviewed
CVE-2025-34203
was published
Sep 19, 2025
Vasion Print (formerly PrinterLogic) Virtual Appliance Host and Application (VA and SaaS...
Critical
Unreviewed
CVE-2025-34206
was published
Sep 19, 2025
Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22.0.843 and...
Critical
Unreviewed
CVE-2025-34205
was published
Sep 19, 2025
Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22.0.951 and...
Critical
Unreviewed
CVE-2025-34198
was published
Sep 19, 2025
Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22.0.893 and...
Critical
Unreviewed
CVE-2025-34192
was published
Sep 19, 2025
Multiple D-Link DIR-series routers, including DIR-110, DIR-412, DIR-600, DIR-610, DIR-615, DIR...
Critical
Unreviewed
CVE-2018-25115
was published
Aug 28, 2025
Side-channel information leakage in V8 in Google Chrome prior to 140.0.7339.207 allowed a remote...
Critical
Unreviewed
CVE-2025-10890
was published
Sep 24, 2025
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')...
Critical
Unreviewed
CVE-2025-52906
was published
Sep 24, 2025
Memory corruption when the UE receives an RTP packet from the network, during the reassembly of...
Critical
Unreviewed
CVE-2025-21483
was published
Sep 24, 2025
Memory corruption while selecting the PLMN from SOR failed list.
Critical
Unreviewed
CVE-2025-27034
was published
Sep 24, 2025
Ilevia EVE X1 Server version ≤ 4.7.18.0.eden contains an unauthenticated OS command injection...
Critical
Unreviewed
CVE-2025-34184
was published
Sep 16, 2025
A malicious backdoor was embedded in the official ProFTPD 1.3.3c source tarball distributed...
Critical
Unreviewed
CVE-2010-20103
was published
Aug 20, 2025
Ilevia EVE X1/X5 Server version ≤ 4.7.18.0.eden contains a vulnerability in its authentication...
Critical
Unreviewed
CVE-2025-34186
was published
Sep 16, 2025
The MultiLoca - WooCommerce Multi Locations Inventory Management plugin for WordPress is...
Critical
Unreviewed
CVE-2025-9054
was published
Sep 24, 2025
The database for the web application is exposed without authentication, allowing an...
Critical
Unreviewed
CVE-2025-41715
was published
Sep 24, 2025
ProTip!
Advisories are also available from the
GraphQL API