GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,475
Maven
5,000+
npm
5,000+
NuGet
1,091
pip
5,000+
Pub
13
RubyGems
1,144
Rust
1,511
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
55 advisories
Filter by severity
A flaw was found in OpenSSH. A local unprivileged attacker on a Linux client host can hijack...
Moderate
Unreviewed
CVE-2026-55655
was published
Jun 23, 2026
Kyuubi Engine UI proxy accepts a host and port from the request path and proxies HTTP requests to...
High
Unreviewed
CVE-2026-23904
was published
Jul 29, 2026
Printers and Multifunction Printers (MFPs) provided by Ricoh Company, Ltd. do not implement...
Moderate
Unreviewed
CVE-2026-63226
was published
Jul 23, 2026
A improper restriction of communication channel to intended endpoints vulnerability in Fortinet...
High
Unreviewed
CVE-2026-59841
was published
Jul 14, 2026
An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper...
Moderate
Unreviewed
CVE-2026-33803
was published
Jul 10, 2026
An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper...
Moderate
Unreviewed
CVE-2026-57028
was published
Jul 10, 2026
Docker Sandboxes (sbx) enforces an HTTP/S-only egress allowlist but does not apply it to DNS...
Moderate
Unreviewed
CVE-2026-12039
was published
Jun 18, 2026
IBM watsonx.data 2.2 through 2.3.1 IBM Lakehouse does not properly restrict inbound and outbound...
Moderate
Unreviewed
CVE-2025-36145
was published
May 26, 2026
Route Services can be leveraged to send app traffic to network destinations outside of an app's...
Moderate
Unreviewed
CVE-2026-22726
was published
May 1, 2026
IBM watsonx.data 2.2 through 2.3 IBM Lakehouse does not properly restrict communication between...
Moderate
Unreviewed
CVE-2025-36180
was published
May 1, 2026
An improper restriction of communication channel to intended endpoints vulnerability has been...
Low
Unreviewed
CVE-2025-62843
was published
Mar 20, 2026
IBM Concert 1.0.0 through 2.2.0 could allow a privileged user to perform unauthorized actions due...
Moderate
Unreviewed
CVE-2025-36438
was published
Mar 25, 2026
Dell OS10 Networking Switches running 10.5.2.x and above contain a vulnerability with zeroMQ...
Critical
Unreviewed
CVE-2023-28078
was published
Feb 15, 2024
This issue affects: Secomea GateManager All versions prior to 9.6. Improper Check of host header...
Moderate
Unreviewed
CVE-2021-32004
was published
Nov 23, 2021
Improper restriction of communication channel to intended endpoints in Azure IoT Explorer allows...
High
Unreviewed
CVE-2026-23664
was published
Mar 10, 2026
A vulnerability has been identified in Heliox Flex 180 kW EV Charging Station (All versions < F4...
Low
Unreviewed
CVE-2025-27769
was published
Mar 10, 2026
VMWare Workstation and Fusion contain a logic flaw in the management of network packets.
Known...
Moderate
Unreviewed
CVE-2026-22715
was published
Feb 26, 2026
An unused function in MicroServer can start a reverse SSH connection to a vendor registered...
High
Unreviewed
CVE-2025-61939
was published
Jan 7, 2026
NVIDIA RunAI for all platforms contains a vulnerability where a user could cause an improper...
Moderate
Unreviewed
CVE-2025-33176
was published
Nov 4, 2025
By manipulating the Signal Level Attenuation Characterization (SLAC)
protocol with spoofed...
High
Unreviewed
CVE-2025-12357
was published
Oct 31, 2025
Improper restriction of communication channel to intended endpoints in Windows PowerShell allows...
High
Unreviewed
CVE-2025-49734
was published
Sep 9, 2025
In BlackBerry QNX Software Development Platform (SDP) 6.6.0, an elevation of privilege...
High
Unreviewed
CVE-2017-3891
was published
May 13, 2022
Improper restriction of communication channel to intended endpoints in Windows Hyper-V allows an...
High
Unreviewed
CVE-2025-48807
was published
Aug 12, 2025
Improper restriction of communication channel to intended endpoints issue exists in UpdateNavi V1...
Moderate
Unreviewed
CVE-2025-35978
was published
Jun 12, 2025
An improper restriction of communication channel to intended endpoints vulnerability [CWE-923] in...
Low
Unreviewed
CVE-2025-22251
was published
Jun 10, 2025
ProTip!
Advisories are also available from the
GraphQL API