GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
86
GitHub Actions
54
Go
4,169
Maven
5,000+
npm
5,000+
NuGet
1,019
pip
5,000+
Pub
13
RubyGems
1,102
Rust
1,421
Swift
61
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
117,892 advisories
Filter by severity
HCL Traveler for Microsoft Outlook (HTMO) is susceptible to vulnerabilities due to .NET Framework...
High
Unreviewed
CVE-2023-37524
was published
Jun 27, 2026
The DMP-5000 file service exposes authenticated arbitrary file upload functionality. There are...
High
Unreviewed
CVE-2026-33560
was published
Jun 27, 2026
A vulnerability exists in H.View IP cameras that could allow an authenticated user to supply...
High
Unreviewed
CVE-2026-55975
was published
Jun 27, 2026
A vulnerability exists in H.View IP cameras certificate-related upload interfaces allow...
High
Unreviewed
CVE-2026-56414
was published
Jun 27, 2026
Cudy LT300 3.0 running firmware prior to version 2.5.12 contains an OS command injection...
High
Unreviewed
CVE-2026-32833
was published
Jun 26, 2026
Incorrect link resolution by display name in the custom PowerShell VPN editor in Devolutions...
High
Unreviewed
CVE-2026-13372
was published
Jun 26, 2026
extract-zip does not validate symlink targets when extracting zip archives. When processing a...
High
Unreviewed
CVE-2026-56876
was published
Jun 26, 2026
A web page that contains unusual GPU shader code is loaded into the GPU compiler process and can...
High
Unreviewed
CVE-2026-21734
was published
Jun 26, 2026
Kernel software installed and running inside a Host VM may post improper commands to the GPU...
High
Unreviewed
CVE-2026-45195
was published
Jun 26, 2026
Unauthenticated remote information disclosure vulnerability in Ollama's model quantization engine...
High
Unreviewed
CVE-2026-5757
was published
Jun 26, 2026
Pagekit CMS 1.0.18 contains a privilege escalation vulnerability that allows authenticated users...
High
Unreviewed
CVE-2026-57518
was published
Jun 26, 2026
Kernel driver ProcessMonitorDriver.sys in Safetica's endpoint client x64 , versions 10.5.75.0 and...
High
Unreviewed
CVE-2026-0828
was published
Jun 26, 2026
newsletters_subscribers Broken Access Control in Newsletters <= 4.13 versions.
High
Unreviewed
CVE-2026-57645
was published
Jun 26, 2026
Unauthenticated Cross Site Request Forgery (CSRF) in Paid Memberships Pro - Add Member From Admin...
High
Unreviewed
CVE-2026-57659
was published
Jun 26, 2026
Unauthenticated Cross Site Request Forgery (CSRF) in Child Theme Wizard <= 1.4 versions.
High
Unreviewed
CVE-2026-57655
was published
Jun 26, 2026
Contributor SQL Injection in Contest Gallery <= 30.0.0 versions.
High
Unreviewed
CVE-2026-57662
was published
Jun 26, 2026
Contributor SQL Injection in Recipe Maker For Your Food Blog from Zip Recipes <= 8.2.7 versions.
High
Unreviewed
CVE-2026-57663
was published
Jun 26, 2026
Contributor SQL Injection in Gallery <= 4.7.8 versions.
High
Unreviewed
CVE-2026-57642
was published
Jun 26, 2026
Contributor SQL Injection in Restaurant Menu by MotoPress <= 2.4.10 versions.
High
Unreviewed
CVE-2026-57644
was published
Jun 26, 2026
Sales Representative SQL Injection in Groundhogg <= 4.5 versions.
High
Unreviewed
CVE-2026-57667
was published
Jun 26, 2026
Contributor SQL Injection in WP Post Author <= 3.9.1 versions.
High
Unreviewed
CVE-2026-57643
was published
Jun 26, 2026
Contributor SQL Injection in WP Job Portal <= 2.5.2 versions.
High
Unreviewed
CVE-2026-57653
was published
Jun 26, 2026
Contributor Local File Inclusion in Panorama Viewer – 360 Degree Image + Video Viewer <= 1.6.1...
High
Unreviewed
CVE-2026-57647
was published
Jun 26, 2026
Unauthenticated Cross Site Scripting (XSS) in NanoMag <= 1.8 versions.
High
Unreviewed
CVE-2026-57325
was published
Jun 26, 2026
Unauthenticated Cross Site Scripting (XSS) in SureCart <= 4.3.2 versions.
High
Unreviewed
CVE-2026-57314
was published
Jun 26, 2026
ProTip!
Advisories are also available from the
GraphQL API