GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,411
Erlang
33
GitHub Actions
22
Go
2,146
Maven
5,000+
npm
3,808
NuGet
687
pip
3,481
Pub
12
RubyGems
897
Rust
899
Swift
38
Unreviewed advisories
All unreviewed
5,000+
4,767 advisories
Filter by severity
Improper Input Validation vulnerability in The Document Foundation LibreOffice allows Windows...
High
Unreviewed
CVE-2025-0514
was published
Feb 26, 2025
An improper input validation vulnerability was discovered in the NTP server configuration field...
High
Unreviewed
CVE-2025-22495
was published
Feb 24, 2025
The Uncode theme for WordPress is vulnerable to arbitrary file read due to insufficient input...
High
Unreviewed
CVE-2024-13681
was published
Feb 18, 2025
An authenticated user in the "bestinformed Web" application can execute commands on the...
High
Unreviewed
CVE-2025-0422
was published
Feb 18, 2025
CWE-20: Improper Input Validation vulnerability exists that could cause Denial-of-Service of the...
High
Unreviewed
CVE-2025-0815
was published
Feb 13, 2025
CWE-20: Improper Input Validation vulnerability exists that could cause Denial-of-Service of the...
High
Unreviewed
CVE-2025-0816
was published
Feb 13, 2025
Improper input validation in the firmware for some Intel(R) AMT and Intel(R) Standard...
High
Unreviewed
CVE-2024-38307
was published
Feb 13, 2025
Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged...
High
Unreviewed
CVE-2024-28127
was published
Feb 13, 2025
Improper input validation in UEFI firmware CseVariableStorageSmm for some Intel(R) Processors may...
High
Unreviewed
CVE-2024-29214
was published
Feb 13, 2025
Improper input validation in UEFI firmware for some Intel(R) processors may allow a privileged...
High
Unreviewed
CVE-2023-43758
was published
Feb 13, 2025
Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged...
High
Unreviewed
CVE-2023-34440
was published
Feb 13, 2025
Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may...
High
Unreviewed
CVE-2024-24582
was published
Feb 13, 2025
Improper input validation in some Intel(R) System Security Report and System Resources Defense...
High
Unreviewed
CVE-2023-49615
was published
Feb 13, 2025
NVIDIA Jetson AGX Orin™ and NVIDIA IGX Orin software contain a vulnerability where an attacker...
High
Unreviewed
CVE-2024-0112
was published
Feb 12, 2025
Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM,...
High
Unreviewed
CVE-2023-31345
was published
Feb 12, 2025
Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM,...
High
Unreviewed
CVE-2023-31343
was published
Feb 12, 2025
Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM,...
High
Unreviewed
CVE-2023-31342
was published
Feb 12, 2025
SMM Callout vulnerability within the AmdCpmDisplayFeatureSMM driver could allow locally...
High
Unreviewed
CVE-2024-0179
was published
Feb 11, 2025
Improper input validation within the AmdPspP2CmboxV2 driver may allow a privileged attacker to...
High
Unreviewed
CVE-2024-21925
was published
Feb 11, 2025
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2025-21375
was published
Feb 11, 2025
Microsoft Surface Security Feature Bypass Vulnerability
High
Unreviewed
CVE-2025-21194
was published
Feb 11, 2025
A vulnerability has been identified in SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0) (All versions < V3...
High
Unreviewed
CVE-2025-24499
was published
Feb 11, 2025
SslHandler doesn't correctly validate packets which can lead to native crash when using native SSLEngine
High
CVE-2025-24970
was published
for
io.netty:netty-handler
(Maven)
Feb 10, 2025
Input verification vulnerability in the ExternalStorageProvider module
Impact: Successful...
High
Unreviewed
CVE-2024-57960
was published
Feb 6, 2025
Apache James vulnerable to denial of service through the use of IMAP literals
High
CVE-2024-37358
was published
for
org.apache.james.protocols:protocols-imap
(Maven)
Feb 6, 2025
ProTip!
Advisories are also available from the
GraphQL API