GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
                  
                    
                      
                      All reviewed
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      Composer
                    
                    
                      4,968
                    
                  
                  
                    
                      
                      Erlang
                    
                    
                      39
                    
                  
                  
                    
                      
                      GitHub Actions
                    
                    
                      38
                    
                  
                  
                    
                      
                      Go
                    
                    
                      2,616
                    
                  
                  
                    
                      
                      Maven
                    
                    
                      5,000+
                    
                  
                  
                    
                      
                      npm
                    
                    
                      4,255
                    
                  
                  
                    
                      
                      NuGet
                    
                    
                      760
                    
                  
                  
                    
                      
                      pip
                    
                    
                      4,040
                    
                  
                  
                    
                      
                      Pub
                    
                    
                      12
                    
                  
                  
                    
                      
                      RubyGems
                    
                    
                      953
                    
                  
                  
                    
                      
                      Rust
                    
                    
                      1,050
                    
                  
                  
                    
                      
                      Swift
                    
                    
                      45
                    
                  
                  Unreviewed advisories
                  
                    
                      
                      All unreviewed
                    
                    
                      5,000+
                    
                  
            113,505 advisories
        Filter by severity
        
      
      
    
                    
                      When BIG-IP PEM Control Plane listener Virtual Server is configured with Diameter Endpoint...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-22891
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      When BIG-IP AFM is provisioned with IPS module enabled and protocol inspection profile is...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-24312
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      When SNMP v1 or v2c are disabled on the BIG-IP, undisclosed requests can cause an increase in...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-21091
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      When a BIG-IP message routing profile is configured on a virtual server, undisclosed traffic can...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-20058
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      When SIP Session and Router ALG profiles are configured on a Message Routing type virtual server,...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-22846
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      When URL categorization is configured on a virtual server, undisclosed requests can cause TMM to...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-24497
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2024-56135
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-20171
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      A vulnerability in the SNMP subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-20172
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-20173
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-20175
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-20169
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2024-56132
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-20174
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-20170
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      A vulnerability in the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software could allow...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-20176
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2024-56133
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2024-56131
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2024-56134
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      This is a similar, but different vulnerability than the issue reported as CVE-2024-39549.
A...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2024-39564
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      CKAN has an XSS vector in user uploaded images in group/org and user profiles
                    
                      
  High
                    
                
                      
                        CVE-2025-24372
                      
                      was published
                        for
                        
                          ckan
                        
                        (pip)
                      Feb 5, 2025 
                    
                  
                    
                      An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.7 prior to...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2024-2878
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      When libcurl is asked to perform automatic gzip decompression of
content-encoded HTTP responses...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2025-0725
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      An issue was discovered in GitLab CE/EE affecting all versions starting from 13.6 prior to 17.2.9...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2024-9631
                      
                      was published
                      Feb 5, 2025 
                    
                  
                    
                      IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and...
                    
                      
  High
                      
                        Unreviewed
                    
                
                      
                        CVE-2024-49352
                      
                      was published
                      Feb 5, 2025 
                    
                  
        
        ProTip!
        Advisories are also available from the 
        GraphQL API