GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
38
Go
2,880
Maven
5,000+
npm
4,518
NuGet
784
pip
4,260
Pub
12
RubyGems
975
Rust
1,105
Swift
49
Unreviewed advisories
All unreviewed
5,000+
148,800 advisories
Filter by severity
Unfurl's unbounded zlib decompression allows decompression bomb DoS
Moderate
GHSA-h5qv-qjv4-pc5m
was published
for
dfir-unfurl
(pip)
Jan 29, 2026
A security vulnerability has been detected in itsourcecode Society Management System 1.0....
Moderate
Unreviewed
CVE-2026-1594
was published
Jan 29, 2026
A vulnerability was identified in itsourcecode School Management System 1.0. This impacts an...
Moderate
Unreviewed
CVE-2026-1590
was published
Jan 29, 2026
GOautodial 4.0 contains a persistent cross-site scripting vulnerability that allows authenticated...
Moderate
Unreviewed
CVE-2020-37018
was published
Jan 29, 2026
Liman 0.7 contains a cross-site request forgery vulnerability that allows attackers to manipulate...
Moderate
Unreviewed
CVE-2020-37007
was published
Jan 29, 2026
A weakness has been identified in itsourcecode Society Management System 1.0. Affected by this...
Moderate
Unreviewed
CVE-2026-1593
was published
Jan 29, 2026
A vulnerability was determined in itsourcecode School Management System 1.0. This affects an...
Moderate
Unreviewed
CVE-2026-1589
was published
Jan 29, 2026
A flaw has been found in Open5GS up to 2.7.5. Impacted is the function ogs_gtp2_f_teid_to_ip of...
Moderate
Unreviewed
CVE-2026-1586
was published
Jan 29, 2026
A vulnerability was found in jishenghua jshERP up to 3.6. The impacted element is the function...
Moderate
Unreviewed
CVE-2026-1588
was published
Jan 29, 2026
Session Fixation vulnerability in QR Menu Pro Smart Menu Systems Menu Panel allows Session...
Moderate
Unreviewed
CVE-2025-7014
was published
Jan 29, 2026
A vulnerability has been found in Open5GS up to 2.7.6. The affected element is the function...
Moderate
Unreviewed
CVE-2026-1587
was published
Jan 29, 2026
Authorization Bypass Through User-Controlled Key vulnerability in QR Menu Pro Smart Menu Systems...
Moderate
Unreviewed
CVE-2025-7013
was published
Jan 29, 2026
QlikView 12.50.20000.0 contains a denial of service vulnerability in the FTP server address input...
Moderate
Unreviewed
CVE-2020-36994
was published
Jan 29, 2026
Mocha Telnet Lite for iOS 4.2 contains a denial of service vulnerability that allows attackers to...
Moderate
Unreviewed
CVE-2020-36995
was published
Jan 29, 2026
Maker.js has Unsafe Property Copying in makerjs.extendObject
Moderate
CVE-2026-24888
was published
for
makerjs
(npm)
Jan 29, 2026
Dell OpenManage Network Integration, versions prior to 3.9, contains an Improper Authentication...
Moderate
Unreviewed
CVE-2026-22764
was published
Jan 29, 2026
Stored Cross-Site Scripting (XSS) in RLE NOVA's PlanManager. This vulnerability allows an...
Moderate
Unreviewed
CVE-2026-1469
was published
Jan 29, 2026
Session Fixation vulnerability in Akın Software Computer Import Export Industry and Trade Ltd. QR...
Moderate
Unreviewed
CVE-2025-7015
was published
Jan 29, 2026
A vulnerability in TeamViewer DEX Client (former 1E Client) - Content Distribution Service ...
Moderate
Unreviewed
CVE-2026-23565
was published
Jan 29, 2026
A command injection vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically...
Moderate
Unreviewed
CVE-2026-23571
was published
Jan 29, 2026
An integer underflow in the UDP command handler of the TeamViewer DEX Client (former 1E Client) -...
Moderate
Unreviewed
CVE-2026-23567
was published
Jan 29, 2026
An out-of-bounds read vulnerability in the TeamViewer DEX Client (former 1E Client) - Content...
Moderate
Unreviewed
CVE-2026-23568
was published
Jan 29, 2026
An out-of-bounds read vulnerability in the TeamViewer DEX Client (former 1E Client) - Content...
Moderate
Unreviewed
CVE-2026-23569
was published
Jan 29, 2026
A missing validation of a user-controlled value in the TeamViewer DEX Client (former 1E Client) -...
Moderate
Unreviewed
CVE-2026-23570
was published
Jan 29, 2026
A vulnerability in TeamViewer DEX Client (former 1E Client) - Content Distribution Service ...
Moderate
Unreviewed
CVE-2026-23566
was published
Jan 29, 2026
ProTip!
Advisories are also available from the
GraphQL API