GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,752
Maven
5,000+
npm
4,357
NuGet
765
pip
4,121
Pub
12
RubyGems
961
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
134,515 advisories
Filter by severity
A vulnerability was found in Ningyuanda TC155 57.0.2.0. The impacted element is an unknown...
Moderate
Unreviewed
CVE-2025-14747
was published
Dec 16, 2025
A vulnerability has been found in Ningyuanda TC155 57.0.2.0. The affected element is an unknown...
Moderate
Unreviewed
CVE-2025-14746
was published
Dec 16, 2025
Incorrect configuration of replication security in the MariaDB component of the infra-operator in...
Moderate
Unreviewed
CVE-2025-14758
was published
Dec 16, 2025
An SQL injection vulnerability has been reported to affect several QNAP operating system versions...
Moderate
Unreviewed
CVE-2025-62849
was published
Dec 16, 2025
A vulnerability was identified in Ningyuanda TC155 57.0.2.0. This impacts an unknown function of...
Moderate
Unreviewed
CVE-2025-14749
was published
Dec 16, 2025
A vulnerability was determined in Ningyuanda TC155 57.0.2.0. This affects an unknown function of...
Moderate
Unreviewed
CVE-2025-14748
was published
Dec 16, 2025
An improper neutralization of argument delimiters in a command vulnerability has been reported to...
Moderate
Unreviewed
CVE-2025-62847
was published
Dec 16, 2025
A weakness has been identified in CTCMS Content Management System up to 2.1.2. This affects an...
Moderate
Unreviewed
CVE-2025-14731
was published
Dec 16, 2025
Hitachi Vantara Pentaho Data Integration and Analytics Community Dashboard Framework prior to...
Moderate
Unreviewed
CVE-2025-9122
was published
Dec 16, 2025
A security flaw has been discovered in CTCMS Content Management System up to 2.1.2. The impacted...
Moderate
Unreviewed
CVE-2025-14730
was published
Dec 16, 2025
A vulnerability was identified in CTCMS Content Management System up to 2.1.2. The affected...
Moderate
Unreviewed
CVE-2025-14729
was published
Dec 16, 2025
Lucee 5.4.2.17 contains a reflected cross-site scripting vulnerability that allows authenticated...
Moderate
Unreviewed
CVE-2023-53880
was published
Dec 15, 2025
JLex GuestBook 1.6.4 contains a reflected cross-site scripting vulnerability in the 'q' URL...
Moderate
Unreviewed
CVE-2023-53882
was published
Dec 15, 2025
NVClient 5.0 contains a stack buffer overflow vulnerability in the user configuration contact...
Moderate
Unreviewed
CVE-2023-53879
was published
Dec 15, 2025
Zomplog 3.9 contains a cross-site scripting vulnerability that allows authenticated users to...
Moderate
Unreviewed
CVE-2023-53887
was published
Dec 15, 2025
GOM Player 2.3.90.5360 contains a buffer overflow vulnerability in the equalizer preset name...
Moderate
Unreviewed
CVE-2023-53874
was published
Dec 15, 2025
Webedition CMS v2.9.8.8 contains a stored cross-site scripting vulnerability that allows...
Moderate
Unreviewed
CVE-2023-53884
was published
Dec 15, 2025
Academy LMS 6.1 contains a file upload vulnerability that allows authenticated users to upload...
Moderate
Unreviewed
CVE-2023-53876
was published
Dec 15, 2025
Ateme TITAN File 3.9.12.4 contains an authenticated server-side request forgery vulnerability in...
Moderate
Unreviewed
CVE-2023-53893
was published
Dec 15, 2025
Xlight FTP Server 3.9.3.6 contains a stack buffer overflow vulnerability in the 'Execute Program'...
Moderate
Unreviewed
CVE-2023-53886
was published
Dec 15, 2025
Perch CMS 3.2 contains a stored cross-site scripting vulnerability that allows authenticated...
Moderate
Unreviewed
CVE-2023-53890
was published
Dec 15, 2025
A vulnerability was determined in vion707 DMadmin up to 3403cafdb42537a648c30bf8cbc8148ec60437d1....
Moderate
Unreviewed
CVE-2025-14722
was published
Dec 15, 2025
Member Login Script 3.3 contains a client-side desynchronization vulnerability that allows...
Moderate
Unreviewed
CVE-2023-53878
was published
Dec 15, 2025
Blackcat CMS 1.4 contains a stored cross-site scripting vulnerability that allows authenticated...
Moderate
Unreviewed
CVE-2023-53891
was published
Dec 15, 2025
An issue was discovered in Zimbra Collaboration (ZCS) 10.0 and 10.1. A hardcoded Flickr API key...
Moderate
Unreviewed
CVE-2025-67809
was published
Dec 15, 2025
ProTip!
Advisories are also available from the
GraphQL API