GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,781
Maven
5,000+
npm
4,386
NuGet
772
pip
4,164
Pub
12
RubyGems
965
Rust
1,073
Swift
45
Unreviewed advisories
All unreviewed
5,000+
116,472 advisories
Filter by severity
The NPort 6100-G2/6200-G2 Series is affected by a high-severity vulnerability (CVE-2025-2026)...
High
Unreviewed
CVE-2025-2026
was published
Dec 31, 2025
A vulnerability exists in serial device servers where active debug code remains enabled in the...
High
Unreviewed
CVE-2025-15017
was published
Dec 31, 2025
VPN Firewall developed by QNO Technology has a Insufficient Entropy vulnerability, allowing...
High
Unreviewed
CVE-2025-15387
was published
Dec 31, 2025
The NPort 6100-G2/6200-G2 Series is affected by an execution with unnecessary privileges...
High
Unreviewed
CVE-2025-1977
was published
Dec 31, 2025
VPN Firewall developed by QNO Technology has an OS Command Injection vulnerability, allowing...
High
Unreviewed
CVE-2025-15388
was published
Dec 31, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Zoho Mail Zoho ZeptoMail allows Stored XSS...
High
Unreviewed
CVE-2025-49028
was published
Dec 31, 2025
FontForge SFD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-15272
was published
Dec 31, 2025
FontForge SFD File Parsing Deserialization of Untrusted Data Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2025-15276
was published
Dec 31, 2025
FontForge SFD File Parsing Improper Validation of Array Index Remote Code Execution Vulnerability...
High
Unreviewed
CVE-2025-15271
was published
Dec 31, 2025
FontForge SFD File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability...
High
Unreviewed
CVE-2025-15269
was published
Dec 31, 2025
FontForge SFD File Parsing Improper Validation of Array Index Remote Code Execution Vulnerability...
High
Unreviewed
CVE-2025-15270
was published
Dec 31, 2025
FontForge SFD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-15275
was published
Dec 31, 2025
FontForge SFD File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability...
High
Unreviewed
CVE-2025-15280
was published
Dec 31, 2025
FontForge GUtils XBM File Parsing Integer Overflow Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-15278
was published
Dec 31, 2025
FontForge GUtils BMP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2025-15279
was published
Dec 31, 2025
FontForge PFB File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-15273
was published
Dec 31, 2025
FontForge SFD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This...
High
Unreviewed
CVE-2025-15274
was published
Dec 31, 2025
FontForge GUtils SGI File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability....
High
Unreviewed
CVE-2025-15277
was published
Dec 31, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Page Carbajal Custom Post Status allows Stored...
High
Unreviewed
CVE-2025-68885
was published
Dec 31, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Mindstien Technologies Recent Posts From Each...
High
Unreviewed
CVE-2025-49354
was published
Dec 31, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Marcin Kijak Noindex by Path allows Stored XSS...
High
Unreviewed
CVE-2025-49353
was published
Dec 31, 2025
Cross-Site Request Forgery (CSRF) vulnerability in mg12 WP-EasyArchives allows Stored XSS.This...
High
Unreviewed
CVE-2025-49345
was published
Dec 31, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Peter Sterling Simple Archive Generator allows...
High
Unreviewed
CVE-2025-49346
was published
Dec 31, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Socialprofilr Social Profilr allows Stored XSS...
High
Unreviewed
CVE-2025-49343
was published
Dec 31, 2025
Cross-Site Request Forgery (CSRF) vulnerability in Rene Ade SensitiveTagCloud allows Stored XSS...
High
Unreviewed
CVE-2025-49344
was published
Dec 31, 2025
ProTip!
Advisories are also available from the
GraphQL API