GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,963
Erlang
39
GitHub Actions
38
Go
2,615
Maven
5,000+
npm
4,255
NuGet
760
pip
4,036
Pub
12
RubyGems
953
Rust
1,049
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,150 advisories
Filter by severity
In lunary-ai/lunary before version 1.4.26, the checklists.post() endpoint allows users to create...
High
Unreviewed
CVE-2024-9000
was published
Mar 20, 2025
Due to a lack of access control, unauthorized users are able to view and modify information...
High
Unreviewed
CVE-2024-2292
was published
Mar 20, 2025
lunary-ai/lunary is vulnerable to broken access control in the latest version. An attacker can...
High
Unreviewed
CVE-2024-10272
was published
Mar 20, 2025
An improper access control vulnerability exists in the gaizhenbiao/chuanhuchatgpt application,...
High
Unreviewed
CVE-2024-4520
was published
Jun 4, 2024
An improper access control vulnerability exists in the lunary-ai/lunary repository, specifically...
High
Unreviewed
CVE-2024-5126
was published
Jun 6, 2024
An Incorrect Authorization vulnerability exists in lunary-ai/lunary versions up to and including...
High
Unreviewed
CVE-2024-5130
was published
Jun 6, 2024
The WPBifröst – Instant Passwordless Temporary Login Links plugin for WordPress is vulnerable to...
High
Unreviewed
CVE-2025-10299
was published
Oct 15, 2025
The Find And Replace content for WordPress plugin for WordPress is vulnerable to unauthorized...
High
Unreviewed
CVE-2025-10313
was published
Oct 15, 2025
NVIDIA Jetson Linux contains a vulnerability in UEFI, where improper authentication may allow a...
High
Unreviewed
CVE-2025-33182
was published
Oct 14, 2025
The GSheetConnector For Gravity Forms plugin for WordPress is vulnerable to authorization bypass...
High
Unreviewed
CVE-2025-8593
was published
Oct 11, 2025
Missing authorization vulnerability in TCMAN's GIM v11. This allows an authenticated attacker to...
High
Unreviewed
CVE-2025-40667
was published
May 26, 2025
The Cost Calculator Builder plugin for WordPress is vulnerable to unauthorizedmodification of...
High
Unreviewed
CVE-2025-9243
was published
Oct 4, 2025
Ericsson
Indoor Connect 8855 contains a missing authorization vulnerability which if
exploited...
High
Unreviewed
CVE-2025-40837
was published
Sep 25, 2025
Claude Code Vulnerable to Arbitrary Code Execution via Plugin Autoloading with Specific Yarn Versions
High
CVE-2025-59828
was published
for
@anthropic-ai/claude-code
(npm)
Sep 24, 2025
Missing Authorization vulnerability in shinetheme Traveler allows Exploiting Incorrectly...
High
Unreviewed
CVE-2025-59011
was published
Sep 26, 2025
An authorization bypass vulnerability has been discovered in the Click Plus C2-03CPU2 device...
High
Unreviewed
CVE-2025-55038
was published
Sep 24, 2025
Lack of server-side authorisation on department admin assignment APIs in AiKaan IoT Platform...
High
Unreviewed
CVE-2025-57605
was published
Sep 22, 2025
The Miniorange OTP Verification with Firebase plugin for WordPress is vulnerable to privilege...
High
Unreviewed
CVE-2025-7665
was published
Sep 19, 2025
The Privacy Policy Generator, Terms & Conditions Generator WordPress Plugin : WP Legal Pages...
High
Unreviewed
CVE-2025-8565
was published
Sep 18, 2025
Permission control vulnerability in the App Multiplier module
Impact:Successful exploitation of...
High
Unreviewed
CVE-2024-42035
was published
Aug 8, 2024
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-43286
was published
Sep 16, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in watchOS 26...
High
Unreviewed
CVE-2025-43329
was published
Sep 16, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-43341
was published
Sep 16, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-43316
was published
Sep 16, 2025
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in...
High
Unreviewed
CVE-2025-43358
was published
Sep 16, 2025
ProTip!
Advisories are also available from the
GraphQL API