GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
278,969 advisories
Filter by severity
Array Networks ArrayOS AG before 9.4.5.9 allows command injection, as exploited in the wild in...
High
Unreviewed
CVE-2025-66644
was published
Dec 5, 2025
Dell CloudBoost Virtual Appliance, versions 19.13.0.0 and prior, contains an Improper Restriction...
High
Unreviewed
CVE-2025-46603
was published
Dec 5, 2025
ReQuest Serious Play F3 Media Server 7.0.3 contains an unauthenticated remote code execution...
Critical
Unreviewed
CVE-2020-36877
was published
Dec 5, 2025
ReQuest Serious Play F3 Media Server versions 7.0.3.4968 (Pro), 7.0.2.4954, 6.5.2.4954, 6.4.2...
High
Unreviewed
CVE-2020-36876
was published
Dec 5, 2025
Flexsense DiskBoss 7.7.14 contains a local buffer overflow vulnerability in the 'Reports and Data...
High
Unreviewed
CVE-2020-36880
was published
Dec 5, 2025
Flexsense DiskBoss 11.7.28 allows unauthenticated attackers to elevate their privileges using any...
High
Unreviewed
CVE-2020-36879
was published
Dec 5, 2025
Flexsense DiskBoss 7.7.14 allows unauthenticated attackers to upload arbitrary files via /Command...
High
Unreviewed
CVE-2020-36882
was published
Dec 5, 2025
Flexsense DiskBoss 7.7.14 contains a local buffer overflow vulnerability in the 'Input Directory'...
High
Unreviewed
CVE-2020-36881
was published
Dec 5, 2025
ReQuest Serious Play Media Player 3.0 contains an unauthenticated file disclosure vulnerability...
High
Unreviewed
CVE-2020-36878
was published
Dec 5, 2025
Advantech WISE-DeviceOn Server versions prior to 5.4 contain a hard-coded cryptographic key...
Critical
Unreviewed
CVE-2025-34256
was published
Dec 5, 2025
Advantech WISE-DeviceOn Server versions prior to 5.4 contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34262
was published
Dec 5, 2025
Advantech WISE-DeviceOn Server versions prior to 5.4 contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34261
was published
Dec 5, 2025
Advantech WISE-DeviceOn Server versions prior to 5.4 contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34260
was published
Dec 5, 2025
Advantech WISE-DeviceOn Server versions prior to 5.4 contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34266
was published
Dec 5, 2025
Advantech WISE-DeviceOn Server versions prior to 5.4 contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34257
was published
Dec 5, 2025
Advantech WISE-DeviceOn Server versions prior to 5.4 contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34259
was published
Dec 5, 2025
Advantech WISE-DeviceOn Server versions prior to 5.4 contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34263
was published
Dec 5, 2025
Advantech WISE-DeviceOn Server versions prior to 5.4 contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34264
was published
Dec 5, 2025
Advantech WISE-DeviceOn Server versions prior to 5.4 contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34265
was published
Dec 5, 2025
Advantech WISE-DeviceOn Server versions prior to 5.4 contain a stored cross-site scripting (XSS)...
Moderate
Unreviewed
CVE-2025-34258
was published
Dec 5, 2025
A flaw was found in util-linux. This vulnerability allows a heap buffer overread when processing...
Moderate
Unreviewed
CVE-2025-14104
was published
Dec 5, 2025
A vulnerability was detected in Edimax BR-6478AC V3 1.0.15. Impacted is the function sub_416990...
Moderate
Unreviewed
CVE-2025-14093
was published
Dec 5, 2025
A flaw has been found in Edimax BR-6478AC V3 1.0.15. The affected element is the function...
Moderate
Unreviewed
CVE-2025-14094
was published
Dec 5, 2025
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.4 prior to 18.4.5,...
High
Unreviewed
CVE-2024-9183
was published
Dec 5, 2025
Authentication Bypass via Hardcoded Credentials GoAway up to v0.62.18, fixed in 0.62.19, uses a...
Unknown
Unreviewed
CVE-2025-65730
was published
Dec 5, 2025
ProTip!
Advisories are also available from the
GraphQL API