GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,883
Maven
5,000+
npm
4,522
NuGet
785
pip
4,262
Pub
12
RubyGems
975
Rust
1,105
Swift
49
Unreviewed advisories
All unreviewed
5,000+
148,904 advisories
Filter by severity
The Booking Calendar plugin for WordPress is vulnerable to unauthorized access of data due to a...
Moderate
Unreviewed
CVE-2026-1431
was published
Jan 31, 2026
The SupportCandy – Helpdesk & Customer Support Ticket System plugin for WordPress is vulnerable...
Moderate
Unreviewed
CVE-2026-0683
was published
Jan 31, 2026
The Ajax Load More – Infinite Scroll, Load More, & Lazy Load plugin for WordPress is vulnerable...
Moderate
Unreviewed
CVE-2025-15525
was published
Jan 31, 2026
The NEX-Forms – Ultimate Forms Plugin for WordPress is vulnerable to unauthorized access of data...
Moderate
Unreviewed
CVE-2025-15510
was published
Jan 31, 2026
Navigate CMS 2.8.7 contains a cross-site request forgery vulnerability that allows attackers to...
Moderate
Unreviewed
CVE-2020-37054
was published
Jan 31, 2026
Frigate 2.02 contains a denial of service vulnerability that allows attackers to crash the...
Moderate
Unreviewed
CVE-2020-37039
was published
Jan 31, 2026
Crystal Shard http-protection 0.2.0 contains an IP spoofing vulnerability that allows attackers...
Moderate
Unreviewed
CVE-2020-37056
was published
Jan 31, 2026
Sistem Informasi Pengumuman Kelulusan Online 1.0 contains a cross-site request forgery...
Moderate
Unreviewed
CVE-2020-37046
was published
Jan 31, 2026
OpenCTI 3.3.1 is vulnerable to a reflected cross-site scripting (XSS) attack via the /graphql...
Moderate
Unreviewed
CVE-2020-37044
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12...
Moderate
Unreviewed
CVE-2025-36009
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12...
Moderate
Unreviewed
CVE-2025-36098
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 - 11.5.9 could allow an...
Moderate
Unreviewed
CVE-2025-36387
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12...
Moderate
Unreviewed
CVE-2025-36001
was published
Jan 31, 2026
A vulnerability was detected in D-Link DSL-6641K N8.TR069.20131126. Affected by this issue is the...
Moderate
Unreviewed
CVE-2026-1705
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12...
Moderate
Unreviewed
CVE-2025-36407
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12...
Moderate
Unreviewed
CVE-2025-36353
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12...
Moderate
Unreviewed
CVE-2025-36123
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12...
Moderate
Unreviewed
CVE-2025-36427
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 is vulnerable...
Moderate
Unreviewed
CVE-2025-2668
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12...
Moderate
Unreviewed
CVE-2025-36424
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12...
Moderate
Unreviewed
CVE-2025-36366
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12...
Moderate
Unreviewed
CVE-2025-36442
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12...
Moderate
Unreviewed
CVE-2025-36070
was published
Jan 31, 2026
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 12.1.0 - 12.1.3 could allow a...
Moderate
Unreviewed
CVE-2025-36423
was published
Jan 31, 2026
Code Blocks 20.03 contains a denial of service vulnerability that allows attackers to crash the...
Moderate
Unreviewed
CVE-2020-37038
was published
Jan 31, 2026
ProTip!
Advisories are also available from the
GraphQL API