GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,757
Maven
5,000+
npm
4,363
NuGet
766
pip
4,128
Pub
12
RubyGems
961
Rust
1,070
Swift
45
Unreviewed advisories
All unreviewed
5,000+
306,196 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
net/smc: reduce rtnl...
Moderate
Unreviewed
CVE-2024-35934
was published
May 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
cpu: Re-enable CPU...
Moderate
Unreviewed
CVE-2024-35996
was published
May 20, 2024
The Better Messages – Live Chat for WordPress, BuddyPress, PeepSo, Ultimate Member, BuddyBoss...
Moderate
Unreviewed
CVE-2025-14154
was published
Dec 17, 2025
An out-of-bounds read vulnerability has been identified in the asComSvc service. This...
Moderate
Unreviewed
CVE-2025-11775
was published
Dec 17, 2025
The HTML Forms – Simple WordPress Forms Plugin for WordPress is vulnerable to Unauthenticated...
Moderate
Unreviewed
CVE-2025-13861
was published
Dec 17, 2025
"UNSUPPORTED WHEN ASSIGNED" Certain versions of the ASUS Live Update client were distributed with...
Critical
Unreviewed
CVE-2025-59374
was published
Dec 17, 2025
The WP Social Ninja – Embed Social Feeds, Customer Reviews, Chat Widgets (Google Reviews, YouTube...
Moderate
Unreviewed
CVE-2025-13880
was published
Dec 17, 2025
The WP Recipe Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
Moderate
Unreviewed
CVE-2025-14385
was published
Dec 17, 2025
The Essential Addons for Elementor – Popular Elementor Templates & Widgets plugin for WordPress...
Moderate
Unreviewed
CVE-2025-13977
was published
Dec 17, 2025
An uncontrolled resource consumption vulnerability affects certain ASUS motherboards using Intel ...
High
Unreviewed
CVE-2025-11901
was published
Dec 17, 2025
Certain motherboard models developed by ASRock and its subsidiaries, ASRockRack and ASRockInd....
High
Unreviewed
CVE-2025-14304
was published
Dec 17, 2025
In the Linux kernel, the following vulnerability has been resolved:
i40e: Do not use...
Moderate
Unreviewed
CVE-2024-36004
was published
May 20, 2024
ListCheck.exe developed by Acer has a Local Privilege Escalation vulnerability. Authenticated...
High
Unreviewed
CVE-2025-14305
was published
Dec 17, 2025
Cross-site request forgery vulnerability exists in GROWI v7.3.3 and earlier. If a user views a...
Moderate
Unreviewed
CVE-2025-64700
was published
Dec 17, 2025
A security vulnerability has been detected in xiweicheng TMS up to 2.28.0. This affects the...
Moderate
Unreviewed
CVE-2025-14801
was published
Dec 17, 2025
Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GT Designer3...
Moderate
Unreviewed
CVE-2025-11009
was published
Dec 17, 2025
The Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns plugin for...
Moderate
Unreviewed
CVE-2025-11369
was published
Dec 17, 2025
An input neutralization vulnerability in the Webhook Template component of Crafty Controller...
Critical
Unreviewed
CVE-2025-14700
was published
Dec 17, 2025
An input neutralization vulnerability in the Server MOTD component of Crafty Controller allows a...
High
Unreviewed
CVE-2025-14701
was published
Dec 17, 2025
Certain motherboard models developed by GIGABYTE has a Protection Mechanism Failure vulnerability...
High
Unreviewed
CVE-2025-14302
was published
Dec 17, 2025
Fuji Electric Monitouch V-SFT-6 is vulnerable to an out-of-bounds write
while processing a...
High
Unreviewed
CVE-2025-53524
was published
Dec 17, 2025
Certain motherboard models developed by MSI has a Protection Mechanism Failure vulnerability....
High
Unreviewed
CVE-2025-14303
was published
Dec 17, 2025
In the Linux kernel, the following vulnerability has been resolved:
fs/9p: only translate RWX...
Moderate
Unreviewed
CVE-2024-36964
was published
Jun 3, 2024
A path traversal vulnerability exists in rsync. It stems from behavior enabled by the `--inc...
Moderate
Unreviewed
CVE-2024-12087
was published
Jan 14, 2025
memos vulnerability allows arbitrarily modification or deletion registered identity providers
Moderate
CVE-2025-65797
was published
for
github.com/usememos/memos
(Go)
Dec 8, 2025
ProTip!
Advisories are also available from the
GraphQL API