GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,781
Maven
5,000+
npm
4,386
NuGet
772
pip
4,164
Pub
12
RubyGems
965
Rust
1,073
Swift
45
Unreviewed advisories
All unreviewed
5,000+
146,825 advisories
Filter by severity
A vulnerability has been found in xnx3 wangmarket up to 6.4. The impacted element is the function...
Moderate
Unreviewed
CVE-2025-15415
was published
Jan 2, 2026
A vulnerability was found in xnx3 wangmarket up to 6.4. This affects an unknown function of the...
Moderate
Unreviewed
CVE-2025-15416
was published
Jan 2, 2026
A flaw has been found in go-sonic sonic up to 1.1.4. The affected element is the function...
Moderate
Unreviewed
CVE-2025-15414
was published
Jan 2, 2026
A vulnerability was identified in Open5GS up to 2.7.6. Affected is the function...
Moderate
Unreviewed
CVE-2025-15417
was published
Jan 2, 2026
A security flaw has been discovered in Open5GS up to 2.7.6. Affected by this vulnerability is the...
Moderate
Unreviewed
CVE-2025-15418
was published
Jan 2, 2026
A vulnerability was detected in wasm3 up to 0.5.0. Impacted is the function op_SetSlot_i32...
Moderate
Unreviewed
CVE-2025-15413
was published
Jan 1, 2026
A weakness has been identified in WebAssembly wabt up to 1.0.39. This vulnerability affects the...
Moderate
Unreviewed
CVE-2025-15411
was published
Jan 1, 2026
A security vulnerability has been detected in WebAssembly wabt up to 1.0.39. This issue affects...
Moderate
Unreviewed
CVE-2025-15412
was published
Jan 1, 2026
A vulnerability was identified in code-projects Online Guitar Store 1.0. Affected by this issue...
Moderate
Unreviewed
CVE-2025-15410
was published
Jan 1, 2026
A vulnerability was determined in code-projects Online Guitar Store 1.0. Affected by this...
Moderate
Unreviewed
CVE-2025-15409
was published
Jan 1, 2026
A vulnerability has been found in code-projects Online Guitar Store 1.0. This impacts an unknown...
Moderate
Unreviewed
CVE-2025-15407
was published
Jan 1, 2026
A vulnerability was found in code-projects Online Guitar Store 1.0. Affected is an unknown...
Moderate
Unreviewed
CVE-2025-15408
was published
Jan 1, 2026
A flaw has been found in PHPGurukul Online Course Registration up to 3.1. This affects an unknown...
Moderate
Unreviewed
CVE-2025-15406
was published
Jan 1, 2026
The All-in-one Sticky Floating Contact Form, Call, Click to Chat, and 50+ Social Icon Tabs - My...
Moderate
Unreviewed
CVE-2025-14428
was published
Jan 1, 2026
The WP Import – Ultimate CSV XML Importer for WordPress plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-14627
was published
Jan 1, 2026
A security vulnerability has been detected in campcodes School File Management System 1.0. The...
Moderate
Unreviewed
CVE-2025-15404
was published
Jan 1, 2026
A vulnerability was detected in PHPEMS up to 11.0. The impacted element is an unknown function....
Moderate
Unreviewed
CVE-2025-15405
was published
Jan 1, 2026
A security flaw has been discovered in itsourcecode School Management System 1.0. This affects an...
Moderate
Unreviewed
CVE-2026-0544
was published
Jan 1, 2026
In Gitea before 1.25.2, /api/v1/user has different responses for failed authentication depending...
Moderate
Unreviewed
CVE-2025-69413
was published
Jan 1, 2026
ArcGIS Server version 11.5 and earlier on Windows and Linux does not properly validate uploaded...
Moderate
Unreviewed
CVE-2025-67707
was published
Jan 1, 2026
There is a stored cross site scripting issue in Esri ArcGIS Server 11.4 and earlier on Windows...
Moderate
Unreviewed
CVE-2025-67708
was published
Jan 1, 2026
ArcGIS Server version 11.5 and earlier on Windows and Linux does not properly validate uploaded...
Moderate
Unreviewed
CVE-2025-67706
was published
Jan 1, 2026
There is a stored cross site scripting issue in Esri ArcGIS Server 11.4 and earlier on Windows...
Moderate
Unreviewed
CVE-2025-67709
was published
Jan 1, 2026
There is a stored cross site scripting issue in Esri ArcGIS Server 11.4 and earlier on Windows...
Moderate
Unreviewed
CVE-2025-67710
was published
Jan 1, 2026
There is a stored cross site scripting issue in Esri ArcGIS Server 11.4 and earlier on Windows...
Moderate
Unreviewed
CVE-2025-67711
was published
Jan 1, 2026
ProTip!
Advisories are also available from the
GraphQL API