GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,950
Maven
5,000+
npm
4,596
NuGet
787
pip
4,301
Pub
12
RubyGems
982
Rust
1,121
Swift
49
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
109,460 advisories
Filter by severity
A vulnerability was found in Tenda TX9 up to 22.03.02.10_multi. Affected is the function...
High
Unreviewed
CVE-2026-2138
was published
Feb 8, 2026
A vulnerability has been found in Tenda TX3 up to 16.03.13.11_multi. This impacts an unknown...
High
Unreviewed
CVE-2026-2137
was published
Feb 8, 2026
The JAY Login & Register plugin for WordPress is vulnerable to Privilege Escalation in all...
High
Unreviewed
CVE-2025-15100
was published
Feb 8, 2026
A vulnerability was identified in D-Link DIR-823X 250416. This affects an unknown function of the...
High
Unreviewed
CVE-2026-2120
was published
Feb 8, 2026
A vulnerability was found in D-Link DIR-823X 250416. Affected by this issue is some unknown...
High
Unreviewed
CVE-2026-2129
was published
Feb 8, 2026
A vulnerability was determined in UTT HiPER 810 1.7.4-141218. The impacted element is the...
High
Unreviewed
CVE-2026-2118
was published
Feb 8, 2026
WeKan versions prior to 8.19 contain an authorization vulnerability in card move logic. A user...
High
Unreviewed
CVE-2026-25566
was published
Feb 8, 2026
Wekan versions prior to 8.20 allow non-administrative users to access migration functionality due...
High
Unreviewed
CVE-2026-25859
was published
Feb 8, 2026
Tenda G300-F router firmware versio 16.01.14.2 and prior contain an OS command injection...
High
Unreviewed
CVE-2026-25857
was published
Feb 8, 2026
WeKan versions prior to 8.19 contain an authorization vulnerability where certain card update API...
High
Unreviewed
CVE-2026-25565
was published
Feb 8, 2026
WeKan versions prior to 8.19 contain an insecure direct object reference (IDOR) in checklist...
High
Unreviewed
CVE-2026-25563
was published
Feb 8, 2026
WeKan versions prior to 8.19 contain an insecure direct object reference (IDOR) in checklist...
High
Unreviewed
CVE-2026-25564
was published
Feb 8, 2026
WeKan versions prior to 8.19 contain an authorization weakness in the attachment upload API. The...
High
Unreviewed
CVE-2026-25561
was published
Feb 8, 2026
WeKan versions prior to 8.19 contain an authorization logic vulnerability where the instance...
High
Unreviewed
CVE-2026-25568
was published
Feb 8, 2026
WeKan versions prior to 8.19 contain an LDAP filter injection vulnerability in LDAP...
High
Unreviewed
CVE-2026-25560
was published
Feb 8, 2026
A vulnerability was detected in UTT HiPER 810G up to 1.7.7-171114. Affected by this vulnerability...
High
Unreviewed
CVE-2026-2086
was published
Feb 7, 2026
A weakness has been identified in D-Link DIR-823X 250416. This impacts an unknown function of the...
High
Unreviewed
CVE-2026-2084
was published
Feb 7, 2026
A security vulnerability has been detected in D-Link DWR-M921 1.1.50. Affected is the function...
High
Unreviewed
CVE-2026-2085
was published
Feb 7, 2026
A vulnerability has been found in UTT HiPER 810 1.7.4-141218. This issue affects the function...
High
Unreviewed
CVE-2026-2080
was published
Feb 7, 2026
A vulnerability was found in UTT 进取 520W 1.7.7-180627. The impacted element is the function...
High
Unreviewed
CVE-2026-2071
was published
Feb 7, 2026
A vulnerability has been found in UTT 进取 520W 1.7.7-180627. The affected element is the function...
High
Unreviewed
CVE-2026-2070
was published
Feb 7, 2026
Cyberoam Authentication Client 2.1.2.7 contains a buffer overflow vulnerability that allows...
High
Unreviewed
CVE-2020-37095
was published
Feb 7, 2026
AMSS++ version 4.31 contains a SQL injection vulnerability in the mail module's maildetail.php...
High
Unreviewed
CVE-2020-37141
was published
Feb 7, 2026
Wedding Slideshow Studio 1.36 contains a buffer overflow vulnerability that allows attackers to...
High
Unreviewed
CVE-2020-37161
was published
Feb 7, 2026
ATutor 2.2.4 contains a SQL injection vulnerability in the admin user deletion page that allows...
High
Unreviewed
CVE-2020-37147
was published
Feb 7, 2026
ProTip!
Advisories are also available from the
GraphQL API