GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,409
Erlang
33
GitHub Actions
22
Go
2,146
Maven
5,000+
npm
3,808
NuGet
687
pip
3,481
Pub
12
RubyGems
897
Rust
899
Swift
38
Unreviewed advisories
All unreviewed
5,000+
267 advisories
Filter by severity
A privacy issue was addressed with improved private data redaction for log entries. This issue is...
Moderate
Unreviewed
CVE-2024-44298
was published
Dec 20, 2024
Keyfactor Remote File Orchestrator (aka remote-file-orchestrator) 2.8 before 2.8.1 allows...
Moderate
Unreviewed
CVE-2024-49201
was published
Dec 18, 2024
An issue found in Twilight v.13.3 for Android allows unauthorized apps to cause escalation of...
High
Unreviewed
CVE-2023-29755
was published
Jun 9, 2023
An issue found in Blue Light Filter v.1.5.5 for Android allows unauthorized apps to cause...
High
Unreviewed
CVE-2023-29757
was published
Jun 9, 2023
The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce...
Moderate
Unreviewed
CVE-2024-2974
was published
Apr 9, 2024
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Leap13 Premium Addons...
Moderate
Unreviewed
CVE-2024-31278
was published
Apr 10, 2024
The Jeg Elementor Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Moderate
Unreviewed
CVE-2024-8899
was published
Nov 26, 2024
The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce...
Moderate
Unreviewed
CVE-2024-3733
was published
Apr 25, 2024
The Call Blocker application 6.6.3 for Android allows unauthorized applications to use exposed...
Critical
Unreviewed
CVE-2023-29727
was published
May 31, 2023
An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820,...
Moderate
Unreviewed
CVE-2024-48883
was published
Jan 13, 2025
Windows Kerberos Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2025-21299
was published
Jan 14, 2025
Smart Toilet Lab - Motius 1.3.11 is running with debug mode turned on (DEBUG = True) and exposing...
High
Unreviewed
CVE-2024-56113
was published
Jan 9, 2025
An access control issue in the component /square/getAllSquare/circle of iceCMS v2.2.0 allows...
High
Unreviewed
CVE-2025-22983
was published
Jan 14, 2025
An access control issue in the component /api/squareComment/DelectSquareById of iceCMS v2.2.0...
High
Unreviewed
CVE-2025-22984
was published
Jan 14, 2025
Information Disclosure in API in Replicated Replicated Classic versions prior to 2.53.1 on all...
Moderate
Unreviewed
CVE-2021-42718
was published
Jan 24, 2025
An information disclosure issue was addressed with improved privacy controls. This issue is fixed...
Moderate
Unreviewed
CVE-2025-24134
was published
Jan 28, 2025
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iPadOS...
Moderate
Unreviewed
CVE-2025-24149
was published
Jan 28, 2025
Improper isolation of shared resources in some Intel(R) Processors when using Intel(R) Software...
Moderate
Unreviewed
CVE-2022-38090
was published
Feb 16, 2023
A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in...
Critical
Unreviewed
CVE-2025-24109
was published
Jan 28, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.7.2, macOS...
Moderate
Unreviewed
CVE-2024-54547
was published
Jan 28, 2025
An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2025-24108
was published
Jan 28, 2025
This issue was addressed through improved state management. This issue is fixed in macOS Ventura...
Moderate
Unreviewed
CVE-2025-24138
was published
Jan 28, 2025
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2025-24103
was published
Jan 28, 2025
An issue in CMSimple v.5.16 allows a remote attacker to obtain sensitive information via a...
High
Unreviewed
CVE-2024-57546
was published
Jan 28, 2025
Xerox Workplace Suite stores tokens in session storage, which may expose them to potential access...
Moderate
Unreviewed
CVE-2024-55931
was published
Jan 27, 2025
ProTip!
Advisories are also available from the
GraphQL API