GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,925
Maven
5,000+
npm
4,578
NuGet
786
pip
4,290
Pub
12
RubyGems
979
Rust
1,112
Swift
49
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
109,345 advisories
Filter by severity
Improper access control in the TeamViewer Full and Host clients (Windows, macOS, Linux) prior...
High
Unreviewed
CVE-2026-23572
was published
Feb 5, 2026
The All In One Image Viewer Block plugin for WordPress is vulnerable to Server-Side Request...
High
Unreviewed
CVE-2026-1294
was published
Feb 5, 2026
Nukegraphic CMS v3.1.2 contains a stored cross-site scripting (XSS) vulnerability in the user...
High
Unreviewed
CVE-2026-1953
was published
Feb 5, 2026
Improper Validation of Specified Quantity in Input vulnerability in Mitsubishi Electric MELSEC iQ...
High
Unreviewed
CVE-2025-15080
was published
Feb 5, 2026
A post‑authentication command injection vulnerability in the Dynamic DNS (DDNS) configuration CLI...
High
Unreviewed
CVE-2025-11730
was published
Feb 5, 2026
Incorrect Default Permissions vulnerability in Mitsubishi Electric Corporation FREQSHIP-mini for...
High
Unreviewed
CVE-2025-10314
was published
Feb 5, 2026
Easy-Hide-IP 5.0.0.3 contains an unquoted service path vulnerability in the EasyRedirect service...
High
Unreviewed
CVE-2019-25273
was published
Feb 5, 2026
NCP Secure Entry Client 9.2 contains an unquoted service path vulnerability in multiple Windows...
High
Unreviewed
CVE-2019-25281
was published
Feb 5, 2026
TexasSoft CyberPlanet 6.4.131 contains an unquoted service path vulnerability in the CCSrvProxy...
High
Unreviewed
CVE-2019-25272
was published
Feb 5, 2026
Shrew Soft VPN Client 2.2.2 contains an unquoted service path vulnerability that allows local...
High
Unreviewed
CVE-2019-25283
was published
Feb 5, 2026
BartVPN 1.2.2 contains an unquoted service path vulnerability in the BartVPNService that allows...
High
Unreviewed
CVE-2019-25275
was published
Feb 5, 2026
Studio 5000 Logix Designer 30.01.00 contains an unquoted service path vulnerability in the...
High
Unreviewed
CVE-2019-25276
was published
Feb 5, 2026
Wing FTP Server 6.0.7 contains an unquoted service path vulnerability that allows local attackers...
High
Unreviewed
CVE-2019-25267
was published
Feb 5, 2026
Wacom WTabletService 6.6.7-3 contains an unquoted service path vulnerability that allows local...
High
Unreviewed
CVE-2019-25288
was published
Feb 5, 2026
The Popup builder with Gamification, Multi-Step Popups, Page-Level Targeting, and WooCommerce...
High
Unreviewed
CVE-2025-13192
was published
Feb 5, 2026
Adaware Web Companion version 4.8.2078.3950 contains an unquoted service path vulnerability in...
High
Unreviewed
CVE-2019-25287
was published
Feb 5, 2026
NETGATE Data Backup 3.0.620 contains an unquoted service path vulnerability in its NGDatBckpSrv...
High
Unreviewed
CVE-2019-25271
was published
Feb 5, 2026
Alps Pointing-device Controller 8.1202.1711.04 contains an unquoted service path vulnerability in...
High
Unreviewed
CVE-2019-25285
was published
Feb 5, 2026
ProShow Producer 9.0.3797 contains an unquoted service path vulnerability in the ScsiAccess...
High
Unreviewed
CVE-2019-25274
was published
Feb 5, 2026
GCafé 3.0 contains an unquoted service path vulnerability in the gbClientService that allows...
High
Unreviewed
CVE-2019-25286
was published
Feb 5, 2026
Amiti Antivirus 25.0.640 contains an unquoted service path vulnerability in its Windows service...
High
Unreviewed
CVE-2019-25269
was published
Feb 5, 2026
A maliciously crafted GIF file, when parsed through Autodesk 3ds Max, can cause a Stack-Based...
High
Unreviewed
CVE-2026-0536
was published
Feb 4, 2026
A maliciously crafted project directory, when opening a max file in Autodesk 3ds Max, could lead...
High
Unreviewed
CVE-2026-0662
was published
Feb 4, 2026
A vulnerability in the Certificate Management feature of Cisco Meeting Management could allow an...
High
Unreviewed
CVE-2026-20098
was published
Feb 4, 2026
A maliciously crafted GIF file, when parsed through Autodesk 3ds Max, can force an Out-of-Bounds...
High
Unreviewed
CVE-2026-0538
was published
Feb 4, 2026
ProTip!
Advisories are also available from the
GraphQL API