GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
                  
                    
                      
                      All reviewed
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      Composer
                    
                    
                      4,968
                    
                  
                  
                    
                      
                      Erlang
                    
                    
                      39
                    
                  
                  
                    
                      
                      GitHub Actions
                    
                    
                      38
                    
                  
                  
                    
                      
                      Go
                    
                    
                      2,616
                    
                  
                  
                    
                      
                      Maven
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      npm
                    
                    
                      4,255
                    
                  
                  
                    
                      
                      NuGet
                    
                    
                      760
                    
                  
                  
                    
                      
                      pip
                    
                    
                      4,040
                    
                  
                  
                    
                      
                      Pub
                    
                    
                      12
                    
                  
                  
                    
                      
                      RubyGems
                    
                    
                      953
                    
                  
                  
                    
                      
                      Rust
                    
                    
                      1,050
                    
                  
                  
                    
                      
                      Swift
                    
                    
                      45
                    
                  
                  Unreviewed advisories
                  
                    
                      
                      All unreviewed
                    
                    
                      5,000+
                    
                  
            491 advisories
        Filter by severity
        
      
      
    
                    
                      Apache Tomcat Vulnerable to Improper Resource Shutdown or Release
                    
                      
  Low
                    
                
                      
                        CVE-2025-61795
                      
                      was published
                        for
                        
                          org.apache.tomcat.embed:tomcat-embed-core
                        
                        (Maven)
                      Oct 27, 2025 
                    
                  
                    
                      A vulnerability has been found in Kamailio 5.5. This affects the function yyerror_at of the file...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-12207
                      
                      was published
                      Oct 27, 2025 
                    
                  
                    
                      A flaw has been found in Kamailio 5.5. The impacted element is the function rve_is_constant of...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-12206
                      
                      was published
                      Oct 27, 2025 
                    
                  
                    
                      A vulnerability was found in dnsmasq up to 2.73rc6. Affected by this vulnerability is the...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-12199
                      
                      was published
                      Oct 27, 2025 
                    
                  
                    
                      A vulnerability was determined in dnsmasq up to 2.73rc6. Affected by this issue is the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-12200
                      
                      was published
                      Oct 27, 2025 
                    
                  
                    
                      A vulnerability was detected in DCMTK up to 3.6.7. The impacted element is the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2022-4981
                      
                      was published
                      Oct 21, 2025 
                    
                  
                    
                      When the BIG-IP system is configured as both a Security Assertion Markup Language (SAML) service...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-47148
                      
                      was published
                      Oct 15, 2025 
                    
                  
                    
                      A vulnerability was identified in Tomofun Furbo 360 and Furbo Mini. Affected is an unknown...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11642
                      
                      was published
                      Oct 12, 2025 
                    
                  
                    
                      A flaw has been found in Tomofun Furbo 360 and Furbo Mini. The affected element is an unknown...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11638
                      
                      was published
                      Oct 12, 2025 
                    
                  
                    
                      A vulnerability was found in Tenda W12 3.0.0.6(3948). The impacted element is the function...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11550
                      
                      was published
                      Oct 9, 2025 
                    
                  
                    
                      A vulnerability was identified in BehaviorTree up to 4.7.0. This vulnerability affects the...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11013
                      
                      was published
                      Sep 26, 2025 
                    
                  
                    
                      A vulnerability was detected in OGRECave Ogre up to 14.4.1. The impacted element is the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11017
                      
                      was published
                      Sep 26, 2025 
                    
                  
                    
                      A vulnerability was found in BehaviorTree up to 4.7.0. Affected by this issue is the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11011
                      
                      was published
                      Sep 26, 2025 
                    
                  
                    
                      A vulnerability was determined in Open Babel up to 3.1.1. This affects the function PQSFormat:...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-11000
                      
                      was published
                      Sep 26, 2025 
                    
                  
                    
                      A vulnerability was found in Open Babel up to 3.1.1. The impacted element is the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-10999
                      
                      was published
                      Sep 26, 2025 
                    
                  
                    
                      A vulnerability has been found in Open Babel up to 3.1.1. The affected element is the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-10998
                      
                      was published
                      Sep 26, 2025 
                    
                  
                    
                      An improper resource shutdown or release vulnerability has been identified in the Click Plus C2...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-57882
                      
                      was published
                      Sep 24, 2025 
                    
                  
                    
                      An improper resource shutdown or release vulnerability has been identified in the Click Plus C2...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-58473
                      
                      was published
                      Sep 24, 2025 
                    
                  
                    
                      A vulnerability was found in axboe fio up to 3.41. This affects the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-10823
                      
                      was published
                      Sep 23, 2025 
                    
                  
                    
                      A weakness has been identified in SpyShelter up to 15.4.0.1015. Affected is an unknown function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-10475
                      
                      was published
                      Sep 15, 2025 
                    
                  
                    
                      Vulnerability in SK Hynix DDR5 on x86 allows a local attacker to trigger Rowhammer bit flips...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-6202
                      
                      was published
                      Sep 15, 2025 
                    
                  
                    
                      Undertow MadeYouReset HTTP/2 DDoS Vulnerability
                    
                      
  High
                    
                
                      
                        CVE-2025-9784
                      
                      was published
                        for
                        
                          io.undertow:undertow-core
                        
                        (Maven)
                      Sep 2, 2025 
                    
                  
                    
                      ImageMagick has a Memory Leak in magick stream
                    
                      
  Low
                    
                
                      
                        CVE-2025-53019
                      
                      was published
                        for
                        
                          Magick.NET-Q16-AnyCPU
                        
                        (NuGet)
                      Aug 25, 2025 
                    
                  
                    
                      A security flaw has been discovered in ckolivas lrzip up to 0.651. This impacts the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-9396
                      
                      was published
                      Aug 25, 2025 
                    
                  
                    
                      A vulnerability was detected in appneta tcpreplay up to 4.5.1. Impacted is the function...
                    
                      
  Moderate
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-9384
                      
                      was published
                      Aug 24, 2025 
                    
                  
        
        ProTip!
        Advisories are also available from the 
        GraphQL API