GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,667
Maven
5,000+
npm
4,295
NuGet
760
pip
4,073
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
32 advisories
Filter by severity
Files or Directories Accessible to External Parties, Exposure of Private Personal Information to...
High
Unreviewed
CVE-2025-11959
was published
Nov 11, 2025
A privacy issue was addressed by removing the vulnerable code. This issue is fixed in iOS 26.1...
High
Unreviewed
CVE-2025-43389
was published
Nov 4, 2025
The issue was addressed by adding additional logic. This issue is fixed in watchOS 26.1, iOS 26.1...
High
Unreviewed
CVE-2025-43496
was published
Nov 4, 2025
A privacy issue was addressed by removing sensitive data. This issue is fixed in iOS 26.1 and...
High
Unreviewed
CVE-2025-43439
was published
Nov 4, 2025
This issue was addressed with improved redaction of sensitive information. This issue is fixed in...
High
Unreviewed
CVE-2025-43399
was published
Nov 4, 2025
This issue was addressed through improved state management. This issue is fixed in iOS 18.6 and...
High
Unreviewed
CVE-2025-43227
was published
Jul 30, 2025
A privacy issue was addressed with improved handling of user preferences. This issue is fixed in...
High
Unreviewed
CVE-2025-43500
was published
Nov 4, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-43469
was published
Nov 4, 2025
This issue was addressed by restricting options offered on a locked device. This issue is fixed...
High
Unreviewed
CVE-2025-43452
was published
Nov 4, 2025
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in...
High
Unreviewed
CVE-2025-43409
was published
Nov 4, 2025
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in...
High
Unreviewed
CVE-2025-43405
was published
Nov 4, 2025
Unauthorized access vulnerability in the mobile application (com.transsion.phoenix) can lead to...
High
Unreviewed
CVE-2024-11206
was published
Nov 14, 2024
Logical vulnerability in the mobile application (com.transsion.carlcare) may lead to user...
High
Unreviewed
CVE-2024-7697
was published
Aug 12, 2024
Exposure of private personal information to an unauthorized actor in Dynamics 365 FastTrack...
High
Unreviewed
CVE-2025-49715
was published
Jun 20, 2025
Exposure of private personal information to an unauthorized actor in the user vaults component of...
High
Unreviewed
CVE-2025-5334
was published
May 29, 2025
An information disclosure vulnerability exists in the latest version of transformeroptimus...
High
Unreviewed
CVE-2024-10267
was published
Mar 20, 2025
Authorization Bypass Through User-Controlled Key, Exposure of Private Personal Information to an...
High
Unreviewed
CVE-2024-11216
was published
Mar 5, 2025
An attacker could expose cross-user personal identifiable information (PII) and personal health...
High
Unreviewed
CVE-2025-20060
was published
Feb 28, 2025
In its default configuration, the affected product transmits plain-text patient data to a hard...
High
Unreviewed
CVE-2025-0683
was published
Jan 30, 2025
Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x contains a a feature that could...
High
Unreviewed
CVE-2024-42494
was published
Dec 6, 2024
This vulnerability exists in LD DP Back Office due to improper validation of certain parameters ...
High
Unreviewed
CVE-2024-47085
was published
Sep 19, 2024
This vulnerability exists in Apex Softcell LD Geo due to improper validation of the certain...
High
Unreviewed
CVE-2024-47087
was published
Sep 19, 2024
Exposure of Private Personal Information to an Unauthorized Actor in GitHub repository gnuboard...
High
Unreviewed
CVE-2022-1252
was published
Apr 12, 2022
This vulnerability exists in Reedos aiM-Star version 2.0.1 due to transmission of sensitive...
High
Unreviewed
CVE-2024-45787
was published
Sep 11, 2024
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Botanik Software...
High
Unreviewed
CVE-2023-5983
was published
Nov 22, 2023
ProTip!
Advisories are also available from the
GraphQL API