GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,343
Erlang
31
GitHub Actions
22
Go
2,107
Maven
5,000+
npm
3,764
NuGet
679
pip
3,452
Pub
12
RubyGems
892
Rust
886
Swift
37
Unreviewed advisories
All unreviewed
5,000+
24,433 advisories
Filter by severity
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.3, macOS...
Critical
Unreviewed
CVE-2025-24174
was published
Jan 28, 2025
CMSimple 5.16 allows the user to edit log.php file via print page.
Critical
Unreviewed
CVE-2024-57548
was published
Jan 28, 2025
An issue in youdiancms v.9.5.20 and before allows a remote attacker to escalate privileges via...
Critical
Unreviewed
CVE-2024-57052
was published
Jan 28, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.3, macOS...
Critical
Unreviewed
CVE-2025-24130
was published
Jan 28, 2025
The issue was addressed with improved memory handling. This issue is fixed in iPadOS 17.7.4,...
Critical
Unreviewed
CVE-2025-24118
was published
Jan 28, 2025
The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.4, macOS Ventura...
Critical
Unreviewed
CVE-2025-24124
was published
Jan 28, 2025
This issue was addressed with improved message validation. This issue is fixed in macOS Sequoia...
Critical
Unreviewed
CVE-2025-24135
was published
Jan 28, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.3, macOS...
Critical
Unreviewed
CVE-2025-24139
was published
Jan 28, 2025
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.7...
Critical
Unreviewed
CVE-2025-24151
was published
Jan 28, 2025
An input validation issue was addressed. This issue is fixed in visionOS 2.3, iOS 18.3 and iPadOS...
Critical
Unreviewed
CVE-2025-24126
was published
Jan 28, 2025
An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-24154
was published
Jan 28, 2025
This issue was addressed with improved redaction of sensitive information. This issue is fixed in...
Critical
Unreviewed
CVE-2025-24146
was published
Jan 28, 2025
The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.4, macOS Sequoia...
Critical
Unreviewed
CVE-2025-24102
was published
Jan 28, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.3, macOS...
Critical
Unreviewed
CVE-2025-24106
was published
Jan 28, 2025
A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in...
Critical
Unreviewed
CVE-2025-24109
was published
Jan 28, 2025
The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.4, macOS Ventura...
Critical
Unreviewed
CVE-2025-24123
was published
Jan 28, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2, watchOS...
Critical
Unreviewed
CVE-2024-54530
was published
Jan 28, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-24093
was published
Jan 28, 2025
The issue was addressed by removing the relevant flags. This issue is fixed in watchOS 11.2, iOS...
Critical
Unreviewed
CVE-2024-54512
was published
Jan 28, 2025
Network access can be used to execute arbitrary code with elevated privileges.
This
issue...
Critical
Unreviewed
CVE-2024-48841
was published
Jan 27, 2025
Deserialization of Untrusted Data vulnerability in Pdfcrowd Save as PDF plugin by Pdfcrowd allows...
Critical
Unreviewed
CVE-2025-24671
was published
Jan 27, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-24665
was published
Jan 27, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-24667
was published
Jan 27, 2025
TRENDnet TEW-632BRP v1.010B31 devices have an OS command injection vulnerability in the CGl...
Critical
Unreviewed
CVE-2024-57590
was published
Jan 27, 2025
DLINK DIR-825 REVB 2.03 devices have an OS command injection vulnerability in the CGl interface...
Critical
Unreviewed
CVE-2024-57595
was published
Jan 27, 2025
ProTip!
Advisories are also available from the
GraphQL API