GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
2,891
Erlang
24
GitHub Actions
39
Go
2,240
Maven
2,698
npm
2,899
NuGet
500
pip
2,728
Pub
5
RubyGems
364
Rust
889
Swift
19
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
48,482 advisories
Filter by severity
IBM Total Storage Service Console (TSSC) / TS4500 IMC 9.2, 9.3, 9.4, 9.5, 9.6 TSSC/IMC could...
High
Unreviewed
CVE-2026-5935
was published
Apr 23, 2026
The installers of LiveOn Meet Client for Windows (Downloader5Installer.exe and...
High
Unreviewed
CVE-2026-32679
was published
Apr 23, 2026
A path Traversal vulnerability exists in Ziostation2 v2.9.8.7 and earlier. A remote...
High
Unreviewed
CVE-2026-40062
was published
Apr 23, 2026
IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.4 IBM WebSphere Application...
High
Unreviewed
CVE-2026-3621
was published
Apr 23, 2026
WeKan before 8.35 contains a missing authorization vulnerability in the Integration REST API...
High
Unreviewed
CVE-2026-41454
was published
Apr 23, 2026
radare2 prior to 6.1.4 contains a command injection vulnerability in the PDB parser's print_gvars...
High
Unreviewed
CVE-2026-40517
was published
Apr 23, 2026
Xerte Online Toolkits versions 3.15 and earlier contain a relative path traversal vulnerability...
High
Unreviewed
CVE-2026-34414
was published
Apr 22, 2026
Dell PowerProtect Data Domain with Domain Operating System (DD OS) of Feature Release versions 7...
High
Unreviewed
CVE-2026-26354
was published
Apr 22, 2026
Xerte Online Toolkits versions 3.15 and earlier contain a missing authentication vulnerability in...
High
Unreviewed
CVE-2026-34413
was published
Apr 22, 2026
The Quick Interest Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
High
Unreviewed
CVE-2026-5694
was published
Apr 22, 2026
The Accessibly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the REST API...
High
Unreviewed
CVE-2026-3643
was published
Apr 22, 2026
The Login as User plugin for WordPress is vulnerable to Privilege Escalation in all versions up...
High
Unreviewed
CVE-2026-5617
was published
Apr 22, 2026
The Age Verification & Identity Verification by Token of Trust plugin for WordPress is vulnerable...
High
Unreviewed
CVE-2026-2834
was published
Apr 22, 2026
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.1.0 before 18.9.6,...
High
Unreviewed
CVE-2026-5262
was published
Apr 22, 2026
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.10 before 18.10.4...
High
Unreviewed
CVE-2026-5816
was published
Apr 22, 2026
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.0 before 18.9.6, 18...
High
Unreviewed
CVE-2026-4922
was published
Apr 22, 2026
A Time-of-Check to Time-of-Use (TOCTOU) race condition exists in the mkfifo utility of uutils...
High
Unreviewed
CVE-2026-35352
was published
Apr 22, 2026
A vulnerability exists in the chroot utility of uutils coreutils when using the --userspec option...
High
Unreviewed
CVE-2026-35368
was published
Apr 22, 2026
Iperius Backup 5.8.1 contains a local buffer overflow vulnerability in the structured exception...
High
Unreviewed
CVE-2018-25261
was published
Apr 22, 2026
LanSpy 2.0.1.159 contains a local buffer overflow vulnerability in the scan section that allows...
High
Unreviewed
CVE-2018-25265
was published
Apr 22, 2026
A vulnerability in uutils coreutils mkfifo allows for the unauthorized modification of...
High
Unreviewed
CVE-2026-35341
was published
Apr 22, 2026
Terminal Services Manager 3.1 contains a stack-based buffer overflow vulnerability in the...
High
Unreviewed
CVE-2018-25259
was published
Apr 22, 2026
LanSpy 2.0.1.159 contains a local buffer overflow vulnerability that allows attackers to...
High
Unreviewed
CVE-2018-25268
was published
Apr 22, 2026
MAGIX Music Editor 3.1 contains a buffer overflow vulnerability in the FreeDB Proxy Options...
High
Unreviewed
CVE-2018-25260
was published
Apr 22, 2026
A vulnerability in the chmod utility of uutils coreutils allows users to bypass the --preserve...
High
Unreviewed
CVE-2026-35338
was published
Apr 22, 2026
ProTip!
Advisories are also available from the
GraphQL API