GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,840
Erlang
36
GitHub Actions
33
Go
2,464
Maven
5,000+
npm
4,082
NuGet
723
pip
3,880
Pub
12
RubyGems
943
Rust
1,011
Swift
39
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
266,893 advisories
Filter by severity
IBM Integrated Analytics System 1.0.0.0 through 1.0.30.0 could allow an authenticated user to...
High
Unreviewed
CVE-2025-36174
was published
Aug 24, 2025
IBM Jazz Foundation 7.0.2 to 7.0.2 iFix035, 7.0.3 to 7.0.3 iFix018, and 7.1.0 to 7.1.0 iFix004...
Critical
Unreviewed
CVE-2025-36157
was published
Aug 24, 2025
A flaw has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1...
Moderate
Unreviewed
CVE-2025-9362
was published
Aug 23, 2025
A vulnerability has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0...
High
Unreviewed
CVE-2025-9363
was published
Aug 23, 2025
A security vulnerability has been detected in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and...
High
Unreviewed
CVE-2025-9360
was published
Aug 23, 2025
A weakness has been identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0...
High
Unreviewed
CVE-2025-9359
was published
Aug 23, 2025
A vulnerability was detected in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013...
High
Unreviewed
CVE-2025-9361
was published
Aug 23, 2025
The Case Theme User plugin for WordPress is vulnerable to Authentication Bypass in all versions...
Critical
Unreviewed
CVE-2025-5821
was published
Aug 23, 2025
A critical stored Cross-Site Scripting (XSS) vulnerability exists in the Analytics component of...
High
Unreviewed
CVE-2025-5352
was published
Aug 23, 2025
The Bravis User plugin for WordPress is vulnerable to Authentication Bypass in all versions up to...
High
Unreviewed
CVE-2025-5060
was published
Aug 23, 2025
A security flaw has been discovered in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000...
High
Unreviewed
CVE-2025-9358
was published
Aug 23, 2025
The Events Calendar, Event Booking, Registrations and Event Tickets – Eventin plugin for...
High
Unreviewed
CVE-2025-7813
was published
Aug 23, 2025
A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0...
High
Unreviewed
CVE-2025-9357
was published
Aug 23, 2025
The ShortcodeHub plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2025-7957
was published
Aug 23, 2025
The WS Theme Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Moderate
Unreviewed
CVE-2025-8062
was published
Aug 23, 2025
The Simpler Checkout plugin for WordPress is vulnerable to Authentication Bypass in versions 0.7...
Critical
Unreviewed
CVE-2025-7642
was published
Aug 23, 2025
The Sertifier Certificate & Badge Maker for WordPress – Tutor LMS plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-7841
was published
Aug 23, 2025
The WC Plus plugin for WordPress is vulnerable to unauthorized modification of data due to a...
Moderate
Unreviewed
CVE-2025-7821
was published
Aug 23, 2025
The Silencesoft RSS Reader plugin for WordPress is vulnerable to Cross-Site Request Forgery in...
Moderate
Unreviewed
CVE-2025-7842
was published
Aug 23, 2025
The Ni WooCommerce Customer Product Report plugin for WordPress is vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2025-7827
was published
Aug 23, 2025
The Restore Permanently delete Post or Page Data plugin for WordPress is vulnerable to Cross-Site...
Moderate
Unreviewed
CVE-2025-7839
was published
Aug 23, 2025
The WP Filter & Combine RSS Feeds plugin for WordPress is vulnerable to unauthorized modification...
Moderate
Unreviewed
CVE-2025-7828
was published
Aug 23, 2025
The Wptobe-memberships plugin for WordPress is vulnerable to arbitrary file deletion due to...
High
Unreviewed
CVE-2025-9048
was published
Aug 23, 2025
The Ogulo – 360° Tour plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2025-9131
was published
Aug 23, 2025
A Stored cross-site scripting vulnerability in the Liferay Portal 7.4.0 through 7.4.3.131, and...
Moderate
Unreviewed
CVE-2025-43765
was published
Aug 23, 2025
ProTip!
Advisories are also available from the
GraphQL API