GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,801
Erlang
36
GitHub Actions
29
Go
2,382
Maven
5,000+
npm
4,011
NuGet
720
pip
3,810
Pub
12
RubyGems
930
Rust
987
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
262,891 advisories
Filter by severity
Grafana is an open-source platform for monitoring and observability. The Grafana Alerting...
Moderate
Unreviewed
CVE-2025-3415
was published
Jul 17, 2025
The Stop User Enumeration WordPress plugin before version 1.7.3 blocks REST API /wp-json/wp/v2...
Unknown
Unreviewed
CVE-2025-4302
was published
Jul 17, 2025
The Hospital Information System developed by UNIMAX has a SQL Injection vulnerability, allowing...
High
Unreviewed
CVE-2025-7735
was published
Jul 17, 2025
The Madara - Core plugin for WordPress is vulnerable to arbitrary file deletion due to...
Critical
Unreviewed
CVE-2025-7712
was published
Jul 17, 2025
A vulnerability classified as problematic was found in Scada-LTS up to 2.7.8.1. Affected by this...
Moderate
Unreviewed
CVE-2025-7729
was published
Jul 17, 2025
A vulnerability classified as problematic has been found in Scada-LTS up to 2.7.8.1. Affected is...
Moderate
Unreviewed
CVE-2025-7728
was published
Jul 17, 2025
The Bears Backup plugin for WordPress is vulnerable to Remote Code Execution in all versions up...
Critical
Unreviewed
CVE-2025-5396
was published
Jul 17, 2025
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Unknown
Unreviewed
CVE-2024-12498
was published
Jul 17, 2025
A buffer overflow vulnerability exists in the X360 VideoPlayer ActiveX control (VideoPlayer.ocx)...
High
Unreviewed
CVE-2025-34128
was published
Jul 17, 2025
An unauthenticated arbitrary file read exists in LILIN Digital Video Recorder (DVR) devices prior...
High
Unreviewed
CVE-2025-34130
was published
Jul 17, 2025
A stack-based buffer overflow exists in Achat v0.150 in its default configuration. By sending a...
Critical
Unreviewed
CVE-2025-34127
was published
Jul 17, 2025
A command injection vulnerability exists in LILIN Digital Video Recorder (DVR) devices prior to...
Critical
Unreviewed
CVE-2025-34132
was published
Jul 17, 2025
An unauthenticated command injection vulnerability exists in the cookie handling process of the...
Critical
Unreviewed
CVE-2025-34125
was published
Jul 17, 2025
A command injection vulnerability exists in LILIN LILIN Digital Video Recorder (DVR) devices...
High
Unreviewed
CVE-2025-34129
was published
Jul 17, 2025
A path traversal vulnerability exists in RIPS Scanner version 0.54. The vulnerability allows...
High
Unreviewed
CVE-2025-34126
was published
Jul 17, 2025
A buffer overflow vulnerability exists in Heroes of Might and Magic III Complete 4.0.0.0, HD Mod...
High
Unreviewed
CVE-2025-34124
was published
Jul 17, 2025
A stack-based buffer overflow vulnerability exists in VideoCharge Studio 2.12.3.685 when...
High
Unreviewed
CVE-2025-34123
was published
Jul 16, 2025
Use of Hard-coded Credentials in TP-Link Archer C50 V3(
<=
180703)/V4(
<=
250117
)/V5(
...
Moderate
Unreviewed
CVE-2025-6982
was published
Jul 16, 2025
A path traversal vulnerability exists in Linknat VOS Manager versions prior to 2.1.9.07,...
High
Unreviewed
CVE-2025-34118
was published
Jul 16, 2025
An unauthenticated arbitrary file upload vulnerability exists in Idera Up.Time Monitoring Station...
Critical
Unreviewed
CVE-2025-34121
was published
Jul 16, 2025
A remote code execution vulnerability exists in multiple Netcore and Netis routers models with...
Critical
Unreviewed
CVE-2025-34117
was published
Jul 16, 2025
A
Clickjacking vulnerability in TP-Link Archer C1200 web management page allows an attacker to...
Moderate
Unreviewed
CVE-2025-6983
was published
Jul 16, 2025
A remote file disclosure vulnerability exists in EasyCafe Server 2.2.14, exploitable by...
High
Unreviewed
CVE-2025-34119
was published
Jul 16, 2025
An unauthenticated file download vulnerability exists in LimeSurvey versions from 2.0+ up to and...
High
Unreviewed
CVE-2025-34120
was published
Jul 16, 2025
A vulnerability in a subset of REST APIs of Cisco Prime Infrastructure and Cisco Evolved...
Moderate
Unreviewed
CVE-2025-20272
was published
Jul 16, 2025
ProTip!
Advisories are also available from the
GraphQL API