GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,791
Maven
5,000+
npm
4,399
NuGet
772
pip
4,175
Pub
12
RubyGems
965
Rust
1,074
Swift
45
Unreviewed advisories
All unreviewed
5,000+
170 advisories
Filter by severity
Rejected reason: This CVE ID was rejected because it was reserved but not used for a...
Moderate
Unreviewed
CVE-2025-34171
was published
Jan 2, 2026
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-49340
was published
Dec 31, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in WP...
Moderate
Unreviewed
CVE-2025-62083
was published
Dec 31, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-62114
was published
Dec 31, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-62143
was published
Dec 31, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-69026
was published
Dec 30, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-69025
was published
Dec 30, 2025
Gitea inadvertently discloses users' login times by allowing (for example) the lastlogintime explore/users sort order
Moderate
CVE-2025-68943
was published
for
code.gitea.io/gitea
(Go)
Dec 26, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Vikas...
Moderate
Unreviewed
CVE-2025-68551
was published
Dec 23, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-62955
was published
Dec 21, 2025
An information disclosure vulnerability in Kentico Xperience allows public users to access...
Moderate
Unreviewed
CVE-2024-58320
was published
Dec 18, 2025
An information disclosure vulnerability in Kentico Xperience allows attackers to leak virtual...
Moderate
Unreviewed
CVE-2019-25228
was published
Dec 18, 2025
An information disclosure vulnerability in Kentico Xperience allows authenticated users to view...
Moderate
Unreviewed
CVE-2019-25230
was published
Dec 18, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-64272
was published
Dec 18, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-67546
was published
Dec 18, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-64270
was published
Dec 18, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-49914
was published
Dec 18, 2025
Information disclosure while exposing internal TA-to-TA communication APIs to HLOS
Moderate
Unreviewed
CVE-2025-47319
was published
Dec 18, 2025
AVideo versions prior to 20.0 disclose absolute filesystem paths via multiple public API...
Moderate
Unreviewed
CVE-2025-34442
was published
Dec 17, 2025
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2025-67948
was published
Dec 16, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.1. An app may...
Moderate
Unreviewed
CVE-2025-43471
was published
Dec 12, 2025
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Tahoe 26.1....
Moderate
Unreviewed
CVE-2025-43406
was published
Dec 12, 2025
Vite Plugin React has a Source Code Exposure Vulnerability in React Server Components
Moderate
GHSA-c6m7-q6pr-c64r
was published
for
@vitejs/plugin-rsc
(npm)
Dec 12, 2025
Next Server Actions Source Code Exposure
Moderate
GHSA-w37m-7fhw-fmv9
was published
for
next
(npm)
Dec 11, 2025
Source Code Exposure Vulnerability in React Server Components
Moderate
CVE-2025-55183
was published
for
react-server-dom-parcel
(npm)
Dec 11, 2025
ProTip!
Advisories are also available from the
GraphQL API