GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
42
GitHub Actions
43
Go
3,164
Maven
5,000+
npm
5,000+
NuGet
863
pip
4,458
Pub
12
RubyGems
991
Rust
1,184
Swift
50
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
3,391 advisories
Filter by severity
A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on...
Critical
Unreviewed
CVE-2026-21667
was published
Mar 12, 2026
A vulnerability allowing an authenticated domain user to perform remote code execution (RCE) on...
Critical
Unreviewed
CVE-2026-21666
was published
Mar 12, 2026
Insecure Access Control in Contact Plan, E-Mail, SMS and Fax components in Asseco SEE Live 2.0...
Critical
Unreviewed
CVE-2025-66956
was published
Mar 11, 2026
Dell Alienware Command Center (AWCC), versions prior to 6.12.24.0, contain an Improper Access...
Low
Unreviewed
CVE-2026-24509
was published
Mar 11, 2026
In Microsoft DirectX End-User Runtime Web Installer 9.29.1974.0, a low-privilege user can replace...
High
Unreviewed
CVE-2025-68623
was published
Mar 11, 2026
The register protection of the PowerVR GPU is incorrectly configured. This could lead to local...
Moderate
Unreviewed
CVE-2026-0108
was published
Mar 10, 2026
Improper access control in Windows Ancillary Function Driver for WinSock allows an authorized...
High
Unreviewed
CVE-2026-25176
was published
Mar 10, 2026
Improper access control in Windows Projected File System allows an authorized attacker to elevate...
High
Unreviewed
CVE-2026-24290
was published
Mar 10, 2026
Improper access control in Azure Portal Windows Admin Center allows an authorized attacker to...
High
Unreviewed
CVE-2026-23660
was published
Mar 10, 2026
An improper access control vulnerability in Fortinet FortiSwitchAXFixed 1.0.0 through 1.0.1 may...
Moderate
Unreviewed
CVE-2026-22628
was published
Mar 10, 2026
Improper access control in SQL Server allows an authorized attacker to elevate privileges over a...
High
Unreviewed
CVE-2026-21262
was published
Mar 10, 2026
An incorrect access control vulnerability exists in Tenda W15E V02.03.01.26_cn. An...
High
Unreviewed
CVE-2026-30140
was published
Mar 9, 2026
A vulnerability has been found in SourceCodester/janobe Resort Reservation System 1.0. Affected...
Moderate
Unreviewed
CVE-2026-3800
was published
Mar 9, 2026
A security vulnerability has been detected in Tiandy Video Surveillance System 视频监控平台 7.17.0. The...
Moderate
Unreviewed
CVE-2026-3797
was published
Mar 9, 2026
A security flaw has been discovered in Bytedesk up to 1.3.9. This affects the function uploadFile...
Moderate
Unreviewed
CVE-2026-3748
was published
Mar 8, 2026
A weakness has been identified in Bytedesk up to 1.3.9. This vulnerability affects the function...
Moderate
Unreviewed
CVE-2026-3749
was published
Mar 8, 2026
Incorrect access control in the REST API of Ibexa & Ciril GROUP eZ Platform / Ciril Platform 2.x...
High
Unreviewed
CVE-2025-70363
was published
Mar 6, 2026
OpenCode Systems OC Messaging / USSD Gateway OC Release 6.32.2 contains a broken access control...
High
Unreviewed
CVE-2025-70614
was published
Mar 5, 2026
Missing authentication and authorization in the web API of Tata Consultancy Services Cognix Recon...
High
Unreviewed
CVE-2026-26418
was published
Mar 5, 2026
A broken access control vulnerability in the password reset functionality of Tata Consultancy...
High
Unreviewed
CVE-2026-26417
was published
Mar 5, 2026
A Improper Access Control vulnerability in the kernel of SUSE SUSE Linux Enterprise Server 12 SP5...
High
Unreviewed
CVE-2026-25702
was published
Mar 5, 2026
Inappropriate implementation in V8 in Google Chrome prior to 145.0.7632.159 allowed a remote...
High
Unreviewed
CVE-2026-3543
was published
Mar 4, 2026
Inappropriate implementation in WebAssembly in Google Chrome prior to 145.0.7632.159 allowed a...
High
Unreviewed
CVE-2026-3542
was published
Mar 4, 2026
Inappropriate implementation in CSS in Google Chrome prior to 145.0.7632.159 allowed a remote...
High
Unreviewed
CVE-2026-3541
was published
Mar 4, 2026
A vulnerability in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco...
Moderate
Unreviewed
CVE-2026-20073
was published
Mar 4, 2026
ProTip!
Advisories are also available from the
GraphQL API