GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,290
Erlang
31
GitHub Actions
21
Go
2,061
Maven
5,000+
npm
3,743
NuGet
668
pip
3,423
Pub
12
RubyGems
892
Rust
875
Swift
36
Unreviewed advisories
All unreviewed
5,000+
120,538 advisories
Filter by severity
Trix allows Cross-site Scripting via `javascript:` url in a link
Moderate
CVE-2025-21610
was published
for
trix
(npm)
Jan 3, 2025
Karmada Tar Slips in CRDs archive extraction
Moderate
CVE-2024-56514
was published
for
github.com/karmada-io/karmada
(Go)
Jan 3, 2025
IBM Jazz Foundation 7.0.2, 7.0.3, and 7.1.0 could
could allow a physical user to obtain...
Moderate
Unreviewed
CVE-2024-41780
was published
Jan 3, 2025
IBM Jazz Foundation 7.0.2, 7.0.3, and 7.1.0 could allow a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2024-5591
was published
Jan 3, 2025
Werkzeug possible resource exhaustion when parsing file data in forms
Moderate
CVE-2024-49767
was published
for
Quart
(pip)
Oct 25, 2024
The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for...
Moderate
Unreviewed
CVE-2024-12132
was published
Jan 3, 2025
A vulnerability was found in code-projects Online Shop 1.0. It has been declared as problematic....
Moderate
Unreviewed
CVE-2025-0175
was published
Jan 3, 2025
A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0. It...
Moderate
Unreviewed
CVE-2025-0176
was published
Jan 3, 2025
A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0. It...
Moderate
Unreviewed
CVE-2025-0174
was published
Jan 3, 2025
Microsoft Edge (Chromium-based) Update Elevation of Privilege Vulnerability.
Moderate
Unreviewed
CVE-2022-41115
was published
Dec 13, 2022
Windows Server Remotely Accessible Registry Keys Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-38033
was published
Oct 12, 2022
Windows Security Support Provider Interface Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-38043
was published
Oct 12, 2022
Windows USB Serial Driver Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-38030
was published
Oct 12, 2022
Windows Kernel Memory Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-37996
was published
Oct 12, 2022
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-37965
was published
Oct 12, 2022
Windows Mixed Reality Developer Tools Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-37974
was published
Oct 12, 2022
Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability.
Moderate
Unreviewed
CVE-2022-37977
was published
Oct 12, 2022
Outlook for Android Elevation of Privilege Vulnerability.
Moderate
Unreviewed
CVE-2022-24480
was published
Dec 13, 2022
Web Account Manager Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-38046
was published
Oct 12, 2022
Windows Portable Device Enumerator Service Security Feature Bypass Vulnerability.
Moderate
Unreviewed
CVE-2022-38032
was published
Oct 12, 2022
Windows Workstation Service Elevation of Privilege Vulnerability.
Moderate
Unreviewed
CVE-2022-38034
was published
Oct 12, 2022
Microsoft Office Spoofing Vulnerability.
Moderate
Unreviewed
CVE-2022-38001
was published
Oct 12, 2022
StorSimple 8000 Series Elevation of Privilege Vulnerability.
Moderate
Unreviewed
CVE-2022-38017
was published
Oct 12, 2022
Windows Distributed File System (DFS) Information Disclosure Vulnerability.
Moderate
Unreviewed
CVE-2022-38025
was published
Oct 12, 2022
ProTip!
Advisories are also available from the
GraphQL API