GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,757
Maven
5,000+
npm
4,363
NuGet
766
pip
4,128
Pub
12
RubyGems
961
Rust
1,070
Swift
45
Unreviewed advisories
All unreviewed
5,000+
306,196 advisories
Filter by severity
memos vulnerability allows the creation of arbitrary accounts
High
CVE-2025-65795
was published
for
github.com/usememos/memos
(Go)
Dec 8, 2025
memos lacks file name validation or verification
Moderate
CVE-2025-65799
was published
for
github.com/usememos/memos
(Go)
Dec 8, 2025
memos vulnerability allows arbitrarily modification or deletion of attachments
Moderate
CVE-2025-65798
was published
for
github.com/usememos/memos
(Go)
Dec 8, 2025
memos vulnerability allows arbitrarily reactions deletion
Moderate
CVE-2025-65796
was published
for
github.com/usememos/memos
(Go)
Dec 8, 2025
Path Normalization Bypass in Traefik Router + Middleware Rules
Moderate
CVE-2025-66490
was published
for
github.com/traefik/traefik
(Go)
Dec 8, 2025
Eclipse Paho Go MQTT may incorrectly encode strings if length exceeds 65535 bytes
Moderate
CVE-2025-10543
was published
for
github.com/eclipse/paho.mqtt.golang
(Go)
Dec 2, 2025
Mattermost fails to properly validate OAuth state tokens during OpenID Connect authentication
Critical
CVE-2025-12419
was published
for
github.com/mattermost/mattermost-server
(Go)
Nov 27, 2025
Free5GC is vulnerable to DoS via the Nudm_SubscriberDataManagement API
Moderate
CVE-2025-60633
was published
for
github.com/free5gc/openapi
(Go)
Nov 24, 2025
quic-go HTTP/3 QPACK Header Expansion DoS
Moderate
CVE-2025-64702
was published
for
github.com/quic-go/quic-go
(Go)
Dec 11, 2025
Missing Authorization vulnerability in etruel WP Views Counter wpecounter allows Exploiting...
Moderate
Unreviewed
CVE-2025-66130
was published
Dec 16, 2025
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sonoma 14.8...
Moderate
Unreviewed
CVE-2025-43416
was published
Dec 12, 2025
The issue was addressed by adding additional logic. This issue is fixed in macOS Sequoia 15.7.3....
High
Unreviewed
CVE-2025-43320
was published
Dec 12, 2025
An out-of-bounds read vulnerability exists in the RLECodec::DecodeByStreams functionality of...
High
Unreviewed
CVE-2025-48429
was published
Dec 17, 2025
An out-of-bounds read vulnerability exists in the JPEGBITSCodec::InternalCode functionality of...
High
Unreviewed
CVE-2025-53618
was published
Dec 17, 2025
Out of bounds read and write in V8 in Google Chrome prior to 143.0.7499.147 allowed a remote...
Unknown
Unreviewed
CVE-2025-14766
was published
Dec 17, 2025
Nagios XI versions prior to 2026R1.1 are vulnerable to local privilege escalation due to an...
High
Unreviewed
CVE-2025-34288
was published
Dec 17, 2025
A vulnerability in the web interface of the Güralp Fortimus Series, Minimus Series and Certimus...
Moderate
Unreviewed
CVE-2025-14466
was published
Dec 17, 2025
Use after free in WebGPU in Google Chrome prior to 143.0.7499.147 allowed a remote attacker to...
Unknown
Unreviewed
CVE-2025-14765
was published
Dec 17, 2025
An out-of-bounds read vulnerability exists in the Overlay::GrabOverlayFromPixelData functionality...
High
Unreviewed
CVE-2025-52582
was published
Dec 17, 2025
An out-of-bounds read vulnerability exists in the JPEGBITSCodec::InternalCode functionality of...
High
Unreviewed
CVE-2025-53619
was published
Dec 17, 2025
Missing Authorization vulnerability in merkulove Coder for Elementor coder-elementor allows...
Moderate
Unreviewed
CVE-2025-66147
was published
Dec 16, 2025
A parsing issue in the handling of directory paths was addressed with improved path validation....
Moderate
Unreviewed
CVE-2025-43463
was published
Dec 12, 2025
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Tahoe 26.1....
Moderate
Unreviewed
CVE-2025-43406
was published
Dec 12, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.1. An app may...
Moderate
Unreviewed
CVE-2025-43471
was published
Dec 12, 2025
ProTip!
Advisories are also available from the
GraphQL API