GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,873
Erlang
37
GitHub Actions
36
Go
2,518
Maven
5,000+
npm
4,156
NuGet
736
pip
3,955
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
4,988 advisories
Filter by severity
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-43316
was published
Sep 16, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in watchOS 26...
High
Unreviewed
CVE-2025-43329
was published
Sep 16, 2025
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in...
High
Unreviewed
CVE-2025-43358
was published
Sep 16, 2025
The Blaze Demo Importer plugin for WordPress is vulnerable to unauthorized limited plugin install...
Moderate
Unreviewed
CVE-2025-8446
was published
Sep 16, 2025
matrix-js-sdk has insufficient validation when considering a room to be upgraded by another
Low
CVE-2025-59160
was published
for
matrix-js-sdk
(npm)
Sep 16, 2025
Liferay Portal allows remote attackers to view display page templates via crafted URLs
Moderate
CVE-2025-43805
was published
for
com.liferay:com.liferay.asset.display.page.service
(Maven)
Sep 17, 2025
The Sydney theme for WordPress is vulnerable to unauthorized modification of data due to a...
Moderate
Unreviewed
CVE-2025-8999
was published
Sep 17, 2025
Jenkins is missing a permission check in the authenticated users' profile menu
Moderate
CVE-2025-59475
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
Sep 17, 2025
Jenkins has a missing permission check, allowing users to obtain agent names
Moderate
CVE-2025-59474
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
Sep 17, 2025
The Privacy Policy Generator, Terms & Conditions Generator WordPress Plugin : WP Legal Pages...
High
Unreviewed
CVE-2025-8565
was published
Sep 18, 2025
The Goza - Nonprofit Charity WordPress Theme theme for WordPress is vulnerable to unauthorized...
Critical
Unreviewed
CVE-2025-10690
was published
Sep 19, 2025
The Kubio AI Page Builder plugin for WordPress is vulnerable to unauthorized plugin installation...
Moderate
Unreviewed
CVE-2025-8487
was published
Sep 19, 2025
The Miniorange OTP Verification with Firebase plugin for WordPress is vulnerable to privilege...
High
Unreviewed
CVE-2025-7665
was published
Sep 19, 2025
ProTip!
Advisories are also available from the
GraphQL API