GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,752
Maven
5,000+
npm
4,357
NuGet
765
pip
4,121
Pub
12
RubyGems
961
Rust
1,069
Swift
45
Unreviewed advisories
All unreviewed
5,000+
145,640 advisories
Filter by severity
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5e: Fix CT entry...
Moderate
Unreviewed
CVE-2024-43864
was published
Aug 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Use del_timer_sync...
Moderate
Unreviewed
CVE-2022-48745
was published
Jun 20, 2024
In the Linux kernel, the following vulnerability has been resolved:
USB: core: Make...
Moderate
Unreviewed
CVE-2021-47582
was published
Jun 19, 2024
In the Linux kernel, the following vulnerability has been resolved:
RDMA/mlx5: Initialize the...
Moderate
Unreviewed
CVE-2021-47481
was published
May 22, 2024
Suite CRM version 7.14.2 allows making arbitrary HTTP requests through
the vulnerable server....
Moderate
Unreviewed
CVE-2023-6388
was published
Feb 7, 2024
In the Linux kernel, the following vulnerability has been resolved:
mm: khugepaged: skip huge...
Moderate
Unreviewed
CVE-2021-47491
was published
May 22, 2024
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_tables: skip...
Moderate
Unreviewed
CVE-2021-47452
was published
May 22, 2024
In the Linux kernel, the following vulnerability has been resolved:
can: isotp: isotp_sendmsg():...
Moderate
Unreviewed
CVE-2021-47457
was published
May 22, 2024
bash-git-prompt 2.6.1 through 2.7.1 insecurely uses the /tmp/git-index-private$$ file, which has...
Moderate
Unreviewed
CVE-2025-61659
was published
Sep 29, 2025
VMware Aria Operations contains an information disclosure vulnerability. A malicious actor with...
Moderate
Unreviewed
CVE-2025-41245
was published
Sep 29, 2025
Improper access control in Samsung Calendar prior to version 12.5.06.5 in Android 14 and 12.6.01...
Moderate
Unreviewed
CVE-2025-21035
was published
Sep 29, 2025
A mass assignment vulnerability exists in danny-avila/librechat, affecting all versions. This...
Moderate
Unreviewed
CVE-2025-7104
was published
Sep 29, 2025
The credentials required to access the device's web server are sent in base64 within the HTTP...
Moderate
Unreviewed
CVE-2025-11155
was published
Sep 29, 2025
IBM Db2 for Linux, UNIX and Windows 12.1.0 and 12.1.1 is vulnerable to a denial of service as the...
Moderate
Unreviewed
CVE-2024-52903
was published
May 2, 2025
IBM Concert Software 1.0.0 and 1.0.1 could allow a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2024-41757
was published
Jan 24, 2025
In the Linux kernel, the following vulnerability has been resolved:
scsi: bnx2fc: Flush...
Moderate
Unreviewed
CVE-2022-48758
was published
Jun 20, 2024
IBM AIX 7.2, 7.3, VIOS 3.1, and 4.1
could allow a non-privileged local user to exploit a...
Moderate
Unreviewed
CVE-2024-47102
was published
Dec 25, 2024
In the Linux kernel, the following vulnerability has been resolved:
genirq/cpuhotplug, x86...
Moderate
Unreviewed
CVE-2024-31076
was published
Jun 21, 2024
In the Linux kernel, the following vulnerability has been resolved:
powerpc/perf: Fix...
Moderate
Unreviewed
CVE-2022-48752
was published
Jun 20, 2024
The Object Request Broker (ORB) in IBM SDK, Java Technology Edition 7.1.0.0 through 7.1.5.18 and...
Moderate
Unreviewed
CVE-2024-27267
was published
Aug 14, 2024
In the Linux kernel, the following vulnerability has been resolved:
powerpc/smp: do not...
Moderate
Unreviewed
CVE-2021-47454
was published
May 22, 2024
github.com/nyaruka/phonenumbers Vulnerable to Improper Validation of Syntactic Correctness of Input
Moderate
CVE-2025-10954
was published
for
github.com/nyaruka/phonenumbers
(Go)
Sep 27, 2025
In the Linux kernel, the following vulnerability has been resolved:
erofs: fix race in...
Moderate
Unreviewed
CVE-2024-42300
was published
Aug 17, 2024
IBM QRadar Network Packet Capture 7.5 could allow a remote attacker to obtain sensitive...
Moderate
Unreviewed
CVE-2024-31905
was published
Aug 15, 2024
IBM Watson Query on Cloud Pak for Data 4.0.0 through 4.0.9, 4.5.0 through 4.5.3, 4.6.0 through 4...
Moderate
Unreviewed
CVE-2024-22341
was published
Feb 22, 2025
ProTip!
Advisories are also available from the
GraphQL API