GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,476
Erlang
33
GitHub Actions
24
Go
2,203
Maven
5,000+
npm
3,857
NuGet
696
pip
3,639
Pub
12
RubyGems
912
Rust
913
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
249,442 advisories
Filter by severity
Improper limitation of a pathname to a restricted directory ('Path Traversal') issue exists in...
Moderate
Unreviewed
CVE-2025-27716
was published
Mar 28, 2025
Improper limitation of a pathname to a restricted directory ('Path Traversal') issue exists in...
Low
Unreviewed
CVE-2025-27726
was published
Mar 28, 2025
Cross-site scripting vulnerability exists in the USB storage file-sharing function of HGW...
Low
Unreviewed
CVE-2025-27574
was published
Mar 28, 2025
The Drag and Drop Multiple File Upload for Contact Form 7 plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2025-2328
was published
Mar 28, 2025
The Drag and Drop Multiple File Upload for Contact Form 7 plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2025-2485
was published
Mar 28, 2025
The tagDiv Composer plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
Moderate
Unreviewed
CVE-2025-1705
was published
Mar 28, 2025
The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-2578
was published
Mar 28, 2025
Improper limitation of a pathname to a restricted directory ('Path Traversal') issue exists in...
High
Unreviewed
CVE-2025-27718
was published
Mar 28, 2025
Cross-site scripting vulnerability exists in the NickName registration screen of HGW-BL1500HM Ver...
Moderate
Unreviewed
CVE-2025-27567
was published
Mar 28, 2025
Improper limitation of a pathname to a restricted directory ('Path Traversal') issue exists in...
High
Unreviewed
CVE-2025-27932
was published
Mar 28, 2025
The Advanced Google reCAPTCHA plugin for WordPress is vulnerable to generic SQL Injection via the...
Moderate
Unreviewed
CVE-2025-2074
was published
Mar 28, 2025
The Kubio AI Page Builder plugin for WordPress is vulnerable to Local File Inclusion in all...
Critical
Unreviewed
CVE-2025-2294
was published
Mar 28, 2025
The tagDiv Composer plugin for WordPress, used by the Newspaper theme, is vulnerable to Reflected...
Moderate
Unreviewed
CVE-2025-2804
was published
Mar 28, 2025
The OpenSAML C++ library before 3.3.1 allows forging of signed SAML messages via parameter...
Moderate
Unreviewed
CVE-2025-31335
was published
Mar 28, 2025
The Event Tickets with Ticket Scanner WordPress plugin before 2.5.4 does not have CSRF check in...
Unknown
Unreviewed
CVE-2025-1762
was published
Mar 28, 2025
A double free vulnerability has been identified in the ASUS System Analysis service. This...
Moderate
Unreviewed
CVE-2025-2027
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24386
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24385
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an URL Redirection to Untrusted Site ('Open...
High
Unreviewed
CVE-2025-24381
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24379
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24380
was published
Mar 28, 2025
The Go1 also known as "The World's First Intelligence Bionic Quadruped Robot Companion of...
Moderate
Unreviewed
CVE-2025-2894
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2024-49563
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2024-49564
was published
Mar 28, 2025
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements...
High
Unreviewed
CVE-2025-24378
was published
Mar 28, 2025
ProTip!
Advisories are also available from the
GraphQL API