GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,752
Maven
5,000+
npm
4,357
NuGet
765
pip
4,121
Pub
12
RubyGems
961
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
11,671 advisories
Filter by severity
The Fox LMS – WordPress LMS Plugin plugin for WordPress is vulnerable to privilege escalation in...
Critical
Unreviewed
CVE-2025-14156
was published
Dec 15, 2025
The TI WooCommerce Wishlist plugin for WordPress is vulnerable to HTML Injection in all versions...
Moderate
Unreviewed
CVE-2025-9207
was published
Dec 13, 2025
A security vulnerability has been detected in tiny-rdm Tiny RDM up to 1.2.5. Affected by this...
Low
Unreviewed
CVE-2025-14606
was published
Dec 13, 2025
A denial-of-service issue was addressed with improved input validation. This issue is fixed in...
Moderate
Unreviewed
CVE-2025-43464
was published
Dec 12, 2025
A mail header parsing issue was addressed with improved checks. This issue is fixed in watchOS 26...
High
Unreviewed
CVE-2025-43494
was published
Dec 12, 2025
The issue was addressed with improved input validation. This issue is fixed in macOS Sonoma 14.8...
Moderate
Unreviewed
CVE-2025-43482
was published
Dec 12, 2025
In AreFencesRegistered of gxp_fence_manager.cc, there is a possible information leak due to...
Moderate
Unreviewed
CVE-2025-36929
was published
Dec 11, 2025
edoc-doctor-appointment-system v1.0.1 is vulnerable to Cross Site Scripting (XSS) in admin/add...
High
Unreviewed
CVE-2025-66918
was published
Dec 11, 2025
A vulnerability in TeamViewer DEX Client (former 1E client) - Content Distribution Service ...
High
Unreviewed
CVE-2025-44016
was published
Dec 11, 2025
A vulnerability in TeamViewer DEX Client (former 1E Client) - Content Distribution Service ...
Moderate
Unreviewed
CVE-2025-46266
was published
Dec 11, 2025
A command injection vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically...
High
Unreviewed
CVE-2025-64986
was published
Dec 11, 2025
A command injection vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically...
High
Unreviewed
CVE-2025-64987
was published
Dec 11, 2025
A command injection vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically...
Moderate
Unreviewed
CVE-2025-64992
was published
Dec 11, 2025
A command injection vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically...
Moderate
Unreviewed
CVE-2025-64993
was published
Dec 11, 2025
A command injection vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically...
High
Unreviewed
CVE-2025-64988
was published
Dec 11, 2025
A command injection vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically...
High
Unreviewed
CVE-2025-64989
was published
Dec 11, 2025
A command injection vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically...
Moderate
Unreviewed
CVE-2025-64990
was published
Dec 11, 2025
A command injection vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically...
Moderate
Unreviewed
CVE-2025-64991
was published
Dec 11, 2025
A vulnerability in TeamViewer DEX Client (former 1E Client) - Content Distribution Service ...
Moderate
Unreviewed
CVE-2025-12687
was published
Dec 11, 2025
ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Input...
Moderate
Unreviewed
CVE-2025-61822
was published
Dec 10, 2025
ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Input...
Critical
Unreviewed
CVE-2025-61809
was published
Dec 10, 2025
ColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Input...
High
Unreviewed
CVE-2025-61812
was published
Dec 10, 2025
Improper input validation in Microsoft Exchange Server allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-64666
was published
Dec 9, 2025
Improper input validation in Windows Installer allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-62571
was published
Dec 9, 2025
Improper input validation in Windows Message Queuing allows an authorized attacker to elevate...
High
Unreviewed
CVE-2025-62455
was published
Dec 9, 2025
ProTip!
Advisories are also available from the
GraphQL API