GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
70
GitHub Actions
52
Go
3,904
Maven
5,000+
npm
5,000+
NuGet
967
pip
5,000+
Pub
13
RubyGems
1,062
Rust
1,374
Swift
54
Unreviewed advisories
All unreviewed
5,000+
159,159 advisories
Filter by severity
Missing Authorization vulnerability in Prasad Kirpekar WP Meta and Date Remover allows Exploiting...
Moderate
Unreviewed
CVE-2026-49051
was published
May 27, 2026
Missing Authorization vulnerability in Wpmet ElementsKit Elementor addons Lite allows Exploiting...
Moderate
Unreviewed
CVE-2026-49052
was published
May 27, 2026
Webmin before 2.640 allows mailboxes/detach.cgi XSS via an SVG document attachment that is viewed...
Moderate
Unreviewed
CVE-2026-49102
was published
May 27, 2026
IBM OPENBMC FW1110.00 through FW1110.11 is vulnerable to denial of service attacks by...
Moderate
Unreviewed
CVE-2026-7254
was published
May 27, 2026
IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed...
Moderate
Unreviewed
CVE-2026-9035
was published
May 27, 2026
Agent Zero before version 1.15 contains a stored cross-site scripting vulnerability that allows...
Moderate
Unreviewed
CVE-2026-47119
was published
May 27, 2026
Missing Authorization vulnerability in WebToffee Product Import Export for WooCommerce allows...
Moderate
Unreviewed
CVE-2026-48971
was published
May 27, 2026
IBM Db2 12.1.0 through 12.1.4 is vulnerable to authorization bypass when uploading to a remote...
Moderate
Unreviewed
CVE-2026-6938
was published
May 27, 2026
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to a denial of service...
Moderate
Unreviewed
CVE-2026-6051
was published
May 27, 2026
IBM WebSphere Application Server - Liberty 22.0.0.11 through 26.0.0.5 IBM WebSphere Application...
Moderate
Unreviewed
CVE-2026-5516
was published
May 27, 2026
IBM App Connect Enterprise 13.0.1.0 through 13.0.7.0 stores potentially sensitive information in...
Moderate
Unreviewed
CVE-2026-5515
was published
May 27, 2026
IBM i 7.6, 7.5, 7.4, and 7.3 s vulnerable to a denial-of-service attack due to uncontrolled...
Moderate
Unreviewed
CVE-2026-6936
was published
May 27, 2026
IBM Guardium Data Protection 12.2.1, and 12.2.2 's add-on feature of Guardium Data Protection...
Moderate
Unreviewed
CVE-2026-8405
was published
May 27, 2026
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to a denial of service...
Moderate
Unreviewed
CVE-2026-6053
was published
May 27, 2026
A flaw was found in Keycloak. An authenticated user with low privileges can exploit this...
Moderate
Unreviewed
CVE-2026-9704
was published
May 27, 2026
PostgreSQL Anonymizer contains a vulnerability that allows a user to gain superuser privileges by...
Moderate
Unreviewed
CVE-2026-9617
was published
May 27, 2026
libusb before version 1.0.30 contains a one-byte out-of-bounds read vulnerability in...
Moderate
Unreviewed
CVE-2026-47104
was published
May 27, 2026
IBM Cloud APM, Base Private 8.1.4 and IBM Cloud APM, Advanced Private 8.1.4 IBM Db2 for Linux,...
Moderate
Unreviewed
CVE-2026-3676
was published
May 27, 2026
A flaw was found in Samba’s vfs_worm module. The module is intended to provide write-once, read...
Moderate
Unreviewed
CVE-2026-2340
was published
May 27, 2026
IBM MQ Operator SC2: v3.2.0 through 3.2.23CD: v3.3.0, v3.4.0, v3.4.1, v3.5.0, v3.5.1 - v3.5.3,...
Moderate
Unreviewed
CVE-2026-2607
was published
May 27, 2026
libusb before version 1.0.30 contains a NULL pointer dereference vulnerability that allows...
Moderate
Unreviewed
CVE-2026-23679
was published
May 27, 2026
IBM Cognos Analytics 11.2.0, 11.2.4, 12.0, and 12.1.0 and IBM Cognos Transformer 11.2.4, 12.0,...
Moderate
Unreviewed
CVE-2025-3633
was published
May 27, 2026
IBM SDI 7.2.0.0 through 7.2.0.14 and IBM Security Directory Integrator 10.0.0.0 through 10.0.0.2...
Moderate
Unreviewed
CVE-2024-28765
was published
May 27, 2026
IBM Operations Analytics - Log Analysis 1.3.5.0, 1.3.5.1, 1.3.5.2, 1.3.5.3, 1.3.6.0, 1.3.6.1, 1.3...
Moderate
Unreviewed
CVE-2024-40684
was published
May 27, 2026
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE ...
Moderate
Unreviewed
CVE-2022-21291
was published
Jan 20, 2022
ProTip!
Advisories are also available from the
GraphQL API