GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
121
GitHub Actions
56
Go
4,883
Maven
5,000+
npm
5,000+
NuGet
1,134
pip
5,000+
Pub
13
RubyGems
1,159
Rust
1,595
Swift
64
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
20
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,555
Rust
20
145,947 advisories
Filter by severity
Path traversal vulnerability in the Satel Iberia SenNet Datalogger Serie 200, specifically in the...
High
Unreviewed
CVE-2026-5703
was published
Oct 7, 2026
The OMGF | GDPR/DSGVO Compliant, Faster Google Fonts. Easy. plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2026-89417
was published
Oct 7, 2026
The Nexi XPay Build WordPress plugin through 7.6.2 does not verify the payment result supplied to...
High
Unreviewed
CVE-2026-82211
was published
Oct 7, 2026
The Nexi XPay Build WordPress plugin through 7.6.2 does not correctly validate the security token...
High
Unreviewed
CVE-2026-82212
was published
Oct 7, 2026
This vulnerability in Veeam Backup & Replication allows an authenticated Cloud Connect tenant to...
High
Unreviewed
CVE-2026-58069
was published
Oct 7, 2026
VMware Workstation and Fusion contain a stack-based buffer-overflow vulnerability in HGFS. A...
High
Unreviewed
CVE-2026-59347
was published
Oct 7, 2026
The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is...
High
Unreviewed
CVE-2026-102173
was published
Oct 7, 2026
A flaw was found in Candlepin. The central authorization filter incorrectly grants access when...
High
Unreviewed
CVE-2026-106471
was published
Oct 7, 2026
In affected versions of Octopus Server, an authenticated user with permission to modify roles...
High
Unreviewed
CVE-2026-102478
was published
Oct 7, 2026
A predictable seed in the pseudo-random number generator (PRNG) in the IFTTT pairing token...
High
Unreviewed
CVE-2026-19396
was published
Oct 7, 2026
Insertion of Sensitive Information into Log File in certain ASUS router models allows a remote...
High
Unreviewed
CVE-2026-16528
was published
Oct 7, 2026
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute...
High
Unreviewed
CVE-2026-97673
was published
Oct 7, 2026
When password or public key authentication is used with the Windows port of wolfSSHd, the Windows...
High
Unreviewed
CVE-2026-83540
was published
Oct 7, 2026
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to obtain...
High
Unreviewed
CVE-2026-93677
was published
Oct 7, 2026
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute...
High
Unreviewed
CVE-2026-97676
was published
Oct 7, 2026
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute arbitrary code due...
High
Unreviewed
CVE-2026-93675
was published
Oct 7, 2026
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute...
High
Unreviewed
CVE-2026-93449
was published
Oct 7, 2026
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to obtain...
High
Unreviewed
CVE-2026-93678
was published
Oct 7, 2026
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute...
High
Unreviewed
CVE-2026-97674
was published
Oct 7, 2026
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to obtain...
High
Unreviewed
CVE-2026-97680
was published
Oct 7, 2026
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute...
High
Unreviewed
CVE-2026-97679
was published
Oct 7, 2026
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to obtain...
High
Unreviewed
CVE-2026-101331
was published
Oct 7, 2026
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute...
High
Unreviewed
CVE-2026-93445
was published
Oct 7, 2026
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute arbitrary code due...
High
Unreviewed
CVE-2026-97655
was published
Oct 7, 2026
IBM Langflow OSS 1.0.0 through 1.12.2 could allow an attacker with access to the server secret...
High
Unreviewed
CVE-2026-93447
was published
Oct 7, 2026
ProTip!
Advisories are also available from the
GraphQL API