GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
49
Go
3,434
Maven
5,000+
npm
5,000+
NuGet
882
pip
4,689
Pub
13
RubyGems
1,029
Rust
1,212
Swift
53
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
11,706 advisories
Filter by severity
Dell PowerProtect Agent Service, version(s) prior to 20.1, contain(s) an Incorrect Permission...
Low
Unreviewed
CVE-2026-28264
was published
Apr 8, 2026
An issue that allowed MCP agents to access certificate information from outside of their...
Low
Unreviewed
CVE-2026-5379
was published
Apr 7, 2026
An issue that could allow a user with access to a credential to view sensitive fields through an...
Low
Unreviewed
CVE-2026-5375
was published
Apr 7, 2026
An issue that could expose records outside of the authorized organization scope through the MCP...
Low
Unreviewed
CVE-2026-5382
was published
Apr 7, 2026
An issue that could expose task information outside of the authorized organization scope has been...
Low
Unreviewed
CVE-2026-5381
was published
Apr 7, 2026
Zcash zcashd before 6.12.0 allows invalid transactions to be accepted under certain conditions,...
Low
Unreviewed
CVE-2026-35679
was published
Apr 6, 2026
A flaw was found in util-linux. Improper hostname canonicalization in the `login(1)` utility,...
Low
Unreviewed
CVE-2026-3184
was published
Apr 3, 2026
A vulnerability was identified in NASA cFS up to 7.0.0 on 32-bit. Affected is the function...
Low
Unreviewed
CVE-2026-5476
was published
Apr 3, 2026
A vulnerability has been found in NASA cFS up to 7.0.0. The impacted element is the function...
Low
Unreviewed
CVE-2026-5473
was published
Apr 3, 2026
A vulnerability was detected in Investory Toy Planet Trouble App up to 1.5.5 on Android. Impacted...
Low
Unreviewed
CVE-2026-5471
was published
Apr 3, 2026
A weakness has been identified in Noelse Individuals & Pro App up to 2.1.7 on Android. This...
Low
Unreviewed
CVE-2026-5458
was published
Apr 3, 2026
A security flaw has been discovered in PropertyGuru AgentNet Singapore App up to 23.7.10 on...
Low
Unreviewed
CVE-2026-5457
was published
Apr 3, 2026
A vulnerability was determined in Dialogue App up to 4.3.2 on Android. The affected element is an...
Low
Unreviewed
CVE-2026-5455
was published
Apr 3, 2026
A vulnerability was identified in Align Technology My Invisalign App 3.12.4 on Android. The...
Low
Unreviewed
CVE-2026-5456
was published
Apr 3, 2026
A vulnerability was identified in Wahoo Fitness SYSTM App up to 7.2.1 on Android. Impacted is an...
Low
Unreviewed
CVE-2026-5462
was published
Apr 3, 2026
A vulnerability has been found in Rico só vantagem pra investir App up to 4.58.32.12421 on...
Low
Unreviewed
CVE-2026-5453
was published
Apr 3, 2026
A vulnerability was found in GRID Organiser App up to 1.0.5 on Android. Impacted is an unknown...
Low
Unreviewed
CVE-2026-5454
was published
Apr 3, 2026
A flaw has been found in UCC CampusConnect App up to 14.3.5 on Android. This vulnerability...
Low
Unreviewed
CVE-2026-5452
was published
Apr 3, 2026
A security flaw has been discovered in Shinrays Games Goods Triple App up to 1.200. The affected...
Low
Unreviewed
CVE-2026-5420
was published
Apr 2, 2026
A type confusion issue was addressed with improved memory handling. This issue is fixed in macOS...
Low
Unreviewed
CVE-2025-43236
was published
Apr 2, 2026
OpenSSH before 10.3 can use unintended ECDSA algorithms. Listing of any ECDSA algorithm in...
Low
Unreviewed
CVE-2026-35387
was published
Apr 2, 2026
In OpenSSH before 10.3, command execution can occur via shell metacharacters in a username within...
Low
Unreviewed
CVE-2026-35386
was published
Apr 2, 2026
OpenSSH before 10.3 omits connection multiplexing confirmation for proxy-mode multiplexing sessions.
Low
Unreviewed
CVE-2026-35388
was published
Apr 2, 2026
IBM Aspera Shares 1.9.9 through 1.11.0 does not properly rate limit the frequency that an...
Low
Unreviewed
CVE-2025-66487
was published
Apr 2, 2026
IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container...
Low
Unreviewed
CVE-2026-2475
was published
Apr 1, 2026
ProTip!
Advisories are also available from the
GraphQL API