GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,478
Erlang
33
GitHub Actions
24
Go
2,208
Maven
5,000+
npm
3,863
NuGet
696
pip
3,640
Pub
12
RubyGems
913
Rust
919
Swift
38
Unreviewed advisories
All unreviewed
5,000+
13 advisories
Filter by severity
tough root metadata version is not checked for sequential versioning
Moderate
CVE-2025-2885
was published
for
tough
(Rust)
Mar 28, 2025
prepareUnique index may cause secondaries to crash due to incorrect enforcement of index...
Moderate
Unreviewed
CVE-2024-8305
was published
Oct 21, 2024
An Improper Validation of Consistency within Input vulnerability in the routing protocol daemon ...
High
Unreviewed
CVE-2024-39515
was published
Oct 9, 2024
A denial of service vulnerability was found in the 389-ds-base LDAP server. This issue may allow...
Moderate
Unreviewed
CVE-2024-5953
was published
Jun 18, 2024
An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos...
Moderate
Unreviewed
CVE-2024-27371
was published
Jun 5, 2024
An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos...
Moderate
Unreviewed
CVE-2024-27375
was published
Jun 5, 2024
In JetBrains TeamCity before 2024.03 server administrators could remove arbitrary files from the...
Moderate
Unreviewed
CVE-2024-31140
was published
Mar 28, 2024
In JetBrains TeamCity before 2024.03 2FA could be bypassed by providing a special URL parameter
High
Unreviewed
CVE-2024-31136
was published
Mar 28, 2024
A command injection vulnerability exists in local RACADM. A malicious authenticated user could...
High
Unreviewed
CVE-2024-25951
was published
Mar 9, 2024
Candid infinite decoding loop through specially crafted payload
High
CVE-2023-6245
was published
for
candid
(Rust)
Dec 8, 2023
Multiple WAGO devices in multiple versions may allow an authenticated remote attacker with high...
Moderate
Unreviewed
CVE-2023-1619
was published
Jun 26, 2023
Multiple WAGO devices in multiple versions may allow an authenticated remote attacker with high...
Moderate
Unreviewed
CVE-2023-1620
was published
Jun 26, 2023
xmldom allows multiple root nodes in a DOM
Critical
CVE-2022-39353
was published
for
@xmldom/xmldom
(npm)
Nov 1, 2022
ProTip!
Advisories are also available from the
GraphQL API