GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
121
GitHub Actions
56
Go
4,875
Maven
5,000+
npm
5,000+
NuGet
1,131
pip
5,000+
Pub
13
RubyGems
1,159
Rust
1,590
Swift
63
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
20
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,513
Rust
20
380,356 advisories
Filter by severity
A weakness has been identified in kishor-23 food-waste-management-system...
Moderate
Unreviewed
CVE-2026-105170
was published
Oct 5, 2026
A vulnerability was detected in crossplane crossplane-runtime up to 2.2.2/2.3.2. This...
Moderate
Unreviewed
CVE-2026-105163
was published
Oct 5, 2026
A vulnerability was identified in kishor-23 food-waste-management-system...
Low
Unreviewed
CVE-2026-105168
was published
Oct 5, 2026
A security flaw has been discovered in kishor-23 food-waste-management-system...
Moderate
Unreviewed
CVE-2026-105169
was published
Oct 5, 2026
A security vulnerability has been detected in kishor-23 food-waste-management-system...
Low
Unreviewed
CVE-2026-105171
was published
Oct 5, 2026
A vulnerability has been found in devopspolis secrets-replicator up to 0.4.0. Impacted is the...
Moderate
Unreviewed
CVE-2026-105165
was published
Oct 5, 2026
A vulnerability was determined in kishor-23 food-waste-management-system...
Moderate
Unreviewed
CVE-2026-105167
was published
Oct 5, 2026
A vulnerability was found in kishor-23 food-waste-management-system...
Moderate
Unreviewed
CVE-2026-105166
was published
Oct 5, 2026
Twine 2 desktop through 2.12.0 contains a cross-site scripting vulnerability in importStories()...
High
Unreviewed
CVE-2026-105220
was published
Oct 5, 2026
The gist RubyGem before 6.1.0 contains an improper certificate validation vulnerability that...
Critical
Unreviewed
CVE-2026-105221
was published
Oct 5, 2026
A flaw has been found in NASA cFS up to 7.0.1. This issue affects the function...
Moderate
Unreviewed
CVE-2026-105164
was published
Oct 5, 2026
The alexpechkarev/google-maps Laravel package through 12.16 disables TLS certificate verification...
Critical
Unreviewed
CVE-2026-105222
was published
Oct 5, 2026
nimiq-blockchain: Validity store off by one error
High
CVE-2026-46369
was published
for
nimiq-blockchain
(Rust)
Aug 12, 2026
Vulnerability in NetScaler ADC and NetScaler Gateway.
This issue affects ADC: before 14.1-73.41,...
High
Unreviewed
CVE-2026-88779
was published
Oct 4, 2026
YesWiki before 4.6.7 contains a cross-site scripting vulnerability in the Bazar valeur action...
Moderate
Unreviewed
CVE-2026-105224
was published
Oct 4, 2026
Mammoth.js 1.3.0 before 1.12.3 contains a regular expression denial of service vulnerability in...
High
Unreviewed
CVE-2026-105219
was published
Oct 4, 2026
gopay before 1.5.119 disables TLS certificate verification in defaultClient() in pkg/xhttp/client...
Critical
Unreviewed
CVE-2026-105218
was published
Oct 4, 2026
WWBN AVideo 12.4 through 29.2.0 contains a stored cross-site scripting vulnerability that allows...
Critical
Unreviewed
CVE-2026-105086
was published
Oct 4, 2026
go-micro before 6.0.0 contains an improper certificate validation vulnerability that allows...
Critical
Unreviewed
CVE-2026-105216
was published
Oct 4, 2026
WWBN AVideo through 29.2.0 contains a stored cross-site scripting vulnerability that allows users...
Critical
Unreviewed
CVE-2026-105089
was published
Oct 4, 2026
Cockpit CMS 2.12.0 before 2.14.1 disables TLS certificate verification in the cron.php web worker...
Low
Unreviewed
CVE-2026-105217
was published
Oct 4, 2026
A flaw has been found in invariant-systems-ai aiir up to 1.7.0. The affected element is an...
Moderate
Unreviewed
CVE-2026-105161
was published
Oct 4, 2026
Insertion of Sensitive Information Into Sent Data vulnerability in farvisun Mindio Magic MCP...
Moderate
Unreviewed
CVE-2026-104402
was published
Oct 4, 2026
An information exposure vulnerability in Canonical MAAS prior to versions 3.4.10, 3.5.14, 3.6.5,...
Moderate
Unreviewed
CVE-2026-12392
was published
Oct 2, 2026
YesWiki before 4.6.7 contains a server-side request forgery vulnerability in the Bazar valeur...
Moderate
Unreviewed
CVE-2026-104470
was published
Oct 2, 2026
ProTip!
Advisories are also available from the
GraphQL API