GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
40
Go
2,974
Maven
5,000+
npm
4,621
NuGet
788
pip
4,317
Pub
12
RubyGems
984
Rust
1,131
Swift
49
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
309 advisories
Filter by severity
webERP 4.15.1 contains an unauthenticated file access vulnerability that allows remote attackers...
High
Unreviewed
CVE-2020-37082
was published
Feb 4, 2026
An arbitrary file deletion vulnerability has been identified in the command-line interface of...
Moderate
Unreviewed
CVE-2025-37177
was published
Jan 13, 2026
Arbitrary file deletion vulnerability have been identified in a system function of mobility...
High
Unreviewed
CVE-2025-37168
was published
Jan 13, 2026
phpgurukul News Portal Project V4.1 has an Arbitrary File Deletion Vulnerability in remove_file...
Critical
Unreviewed
CVE-2025-69990
was published
Jan 13, 2026
The WP-Members Membership Plugin for WordPress is vulnerable to unauthorized file access in...
Moderate
Unreviewed
CVE-2025-12648
was published
Jan 7, 2026
V-SOL GPON/EPON OLT Platform 2.03 contains an unauthenticated information disclosure...
High
Unreviewed
CVE-2019-25239
was published
Dec 24, 2025
Microhard Systems IPn4G 1.1.0 contains a configuration file disclosure vulnerability that allows...
High
Unreviewed
CVE-2018-25145
was published
Dec 24, 2025
due to insufficient sanitazation in Vega’s `convert()` function when `safeMode` is enabled and...
High
Unreviewed
CVE-2025-14896
was published
Dec 18, 2025
The Secure Copy Content Protection and Content Locking plugin for WordPress is vulnerable to...
Moderate
Unreviewed
CVE-2025-14442
was published
Dec 12, 2025
The Tainacan plugin for WordPress is vulnerable to Information Exposure in all versions up to,...
Moderate
Unreviewed
CVE-2025-12747
was published
Nov 21, 2025
The Import WP – Export and Import CSV and XML files to WordPress plugin for WordPress is...
Moderate
Unreviewed
CVE-2025-12894
was published
Nov 21, 2025
Tanium addressed an arbitrary file deletion vulnerability in TanOS.
Moderate
Unreviewed
CVE-2025-13225
was published
Nov 19, 2025
IBM Cognos Analytics Certified Containers 12.1.0 could disclose package parameter information due...
Moderate
Unreviewed
CVE-2025-33150
was published
Nov 10, 2025
FutureNet MA and IP-K series provided by Century Systems Co., Ltd. put the firmware version and...
Moderate
Unreviewed
CVE-2025-58152
was published
Oct 31, 2025
HCL Unica Platform is affected by unprotected files due to improper access controls. These...
Moderate
Unreviewed
CVE-2025-31996
was published
Oct 13, 2025
An arbitrary file download vulnerability in the web interface of Juniper Networks Junos Space...
High
Unreviewed
CVE-2025-59976
was published
Oct 9, 2025
In the default installation and configuration of Gladinet CentreStack and TrioFox, there is an...
Moderate
Unreviewed
CVE-2025-11371
was published
Oct 9, 2025
A vulnerability in the command-line interface of EdgeConnect SD-WAN could allow an authenticated...
Moderate
Unreviewed
CVE-2025-37130
was published
Sep 17, 2025
Elevation of Privileges in the cleaning feature of Gen Digital CCleaner version 6.33.11465 on...
High
Unreviewed
CVE-2025-3025
was published
Sep 15, 2025
CData API Server MySQL Misconfiguration Information Disclosure Vulnerability. This vulnerability...
Moderate
Unreviewed
CVE-2025-9273
was published
Sep 2, 2025
Files or directories accessible to external parties issue exists in SS1 Ver.16.0.0.10 and earlier...
Moderate
Unreviewed
CVE-2025-52460
was published
Aug 28, 2025
MCCMS 2.7.0 is vulnerable to Arbitrary file deletion in the Backups.php component. This allows an...
Moderate
Unreviewed
CVE-2025-51818
was published
Aug 21, 2025
ContentKeeper Web Appliance (now maintained by Impero Software) versions prior to 125.10 expose...
High
Unreviewed
CVE-2009-10005
was published
Aug 20, 2025
NVIDIA Installer for Windows contains a vulnerability where an attacker may be able to escalate...
High
Unreviewed
CVE-2025-23276
was published
Aug 3, 2025
Dell SmartFabric OS10 Software, versions prior to 10.6.0.5 contains a Files or Directories...
Moderate
Unreviewed
CVE-2025-30103
was published
Jul 30, 2025
ProTip!
Advisories are also available from the
GraphQL API