GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,873
Erlang
37
GitHub Actions
36
Go
2,519
Maven
5,000+
npm
4,156
NuGet
736
pip
3,956
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
4,988 advisories
Filter by severity
An issue has been discovered in GitLab CE/EE affecting all versions before 18.1.5, 18.2 before 18...
Moderate
Unreviewed
CVE-2025-2246
was published
Aug 27, 2025
Multiple plugins and/or themes for WordPress by LiquidThemes are vulnerable to unauthorized...
Moderate
Unreviewed
CVE-2025-0951
was published
Aug 28, 2025
The Ajax Search Lite plugin for WordPress is vulnerable to Basic Information Exposure due to...
Moderate
Unreviewed
CVE-2025-7956
was published
Aug 28, 2025
Missing Authorization vulnerability in inkthemes WP Mailgun SMTP allows Accessing Functionality...
Moderate
Unreviewed
CVE-2025-48327
was published
Aug 28, 2025
Missing Authorization vulnerability in Neuralabz LTD AutoWP allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-48350
was published
Aug 28, 2025
Missing Authorization vulnerability in honzat Page Manager for Elementor allows Exploiting...
High
Unreviewed
CVE-2025-53230
was published
Aug 28, 2025
Missing Authorization vulnerability in favethemes Houzez CRM allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-49402
was published
Aug 28, 2025
Missing Authorization vulnerability in Ashan Perera LifePress allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-53337
was published
Aug 28, 2025
Missing Authorization vulnerability in bPlugins B Slider allows Exploiting Incorrectly Configured...
Moderate
Unreviewed
CVE-2025-54734
was published
Aug 28, 2025
Missing Authorization vulnerability in Miles All Bootstrap Blocks allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-54733
was published
Aug 28, 2025
Missing Authorization vulnerability in bPlugins Tiktok Feed allows Accessing Functionality Not...
High
Unreviewed
CVE-2025-54710
was published
Aug 28, 2025
Missing Authorization vulnerability in Dylan James Zephyr Project Manager allows Exploiting...
High
Unreviewed
CVE-2025-54714
was published
Aug 28, 2025
In JetBrains IDE Services before 2025.5.0.1086,
2025.4.2.2164 users without appropriate...
High
Unreviewed
CVE-2025-58334
was published
Aug 28, 2025
Liferay Portal allows improper access through the expandoTableLocalService
Moderate
CVE-2025-43773
was published
for
com.liferay:com.liferay.portal.workflow.kaleo.runtime.impl
(Maven)
Aug 29, 2025
Missing Authorization vulnerability in Hamid Alinia Login with phone number.This issue affects...
Critical
Unreviewed
CVE-2024-32832
was published
Aug 31, 2025
Missing Authorization vulnerability in UkrSolution Barcode Scanner with Inventory & Order Manager...
High
Unreviewed
CVE-2024-32589
was published
Aug 31, 2025
ATEN eco DC Missing Authorization Privilege Escalation Vulnerability. This vulnerability allows...
High
Unreviewed
CVE-2025-6685
was published
Sep 2, 2025
Missing Authorization vulnerability in Malcure Web Security Malcure Malware Scanner allows...
Moderate
Unreviewed
CVE-2025-3701
was published
Sep 3, 2025
Missing Authorization vulnerability in Cozmoslabs Paid Member Subscriptions allows Exploiting...
Moderate
Unreviewed
CVE-2025-58600
was published
Sep 3, 2025
Missing Authorization vulnerability in CozyThemes SaasLauncher allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-58606
was published
Sep 3, 2025
Missing Authorization vulnerability in RadiusTheme Classified Listing allows Exploiting...
Moderate
Unreviewed
CVE-2025-58601
was published
Sep 3, 2025
Missing Authorization vulnerability in themefusecom Brizy allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-58594
was published
Sep 3, 2025
Missing Authorization vulnerability in tychesoftwares Order Delivery Date for WooCommerce allows...
Moderate
Unreviewed
CVE-2025-58599
was published
Sep 3, 2025
Jenkins OpenTelemetry Plugin missing permission check allows capturing credentials
Moderate
CVE-2025-58460
was published
for
io.jenkins.plugins:opentelemetry
(Maven)
Sep 3, 2025
Missing Authorization vulnerability in peachpay PeachPay Payments allows Exploiting Incorrectly...
Moderate
Unreviewed
CVE-2025-58634
was published
Sep 3, 2025
ProTip!
Advisories are also available from the
GraphQL API