GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
102
GitHub Actions
54
Go
4,428
Maven
5,000+
npm
5,000+
NuGet
1,088
pip
5,000+
Pub
13
RubyGems
1,129
Rust
1,506
Swift
62
Unreviewed advisories
All unreviewed
5,000+
249 advisories
Filter by severity
Pronetiqs IntraVUE versions 3.2.1a14 and prior have an exposure of sensitive system information...
Moderate
Unreviewed
CVE-2026-44955
was published
Jul 24, 2026
Contributor Sensitive Data Exposure in TinyMCE Templates <= 4.8.1 versions.
Moderate
Unreviewed
CVE-2026-65535
was published
Jul 23, 2026
Unauthenticated Sensitive Data Exposure in Create by Mediavine <= 2.5.3 versions.
Moderate
Unreviewed
CVE-2026-65490
was published
Jul 23, 2026
Unauthenticated Sensitive Data Exposure in Complianz <= 7.5.0 versions.
Moderate
Unreviewed
CVE-2026-65498
was published
Jul 23, 2026
Unauthenticated Sensitive Data Exposure in Ultimate Store Kit Elementor Addons <= 3.0.5 versions.
Moderate
Unreviewed
CVE-2026-65505
was published
Jul 23, 2026
Unauthenticated Sensitive Data Exposure in WP Social Ninja <= 4.3.0 versions.
Moderate
Unreviewed
CVE-2026-65521
was published
Jul 23, 2026
Unauthenticated Sensitive Data Exposure in Ninja Tables <= 5.2.10 versions.
Moderate
Unreviewed
CVE-2026-65474
was published
Jul 23, 2026
Contributor Sensitive Data Exposure in Polylang <= 3.8.5 versions.
Moderate
Unreviewed
CVE-2026-65458
was published
Jul 23, 2026
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2026-61945
was published
Jul 23, 2026
HCL DevOps Plan is susceptible to an information disclosure that can allow an attacker to focus...
Moderate
Unreviewed
CVE-2023-37507
was published
Jul 21, 2026
A potential vulnerability could allow a local privileged attacker to disclose the address of...
Moderate
Unreviewed
CVE-2026-10588
was published
Jul 16, 2026
Exposure of sensitive system information to an unauthorized control sphere in Windows Kernel...
Moderate
Unreviewed
CVE-2026-50294
was published
Jul 14, 2026
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2026-61976
was published
Jul 13, 2026
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2026-61975
was published
Jul 13, 2026
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2026-61977
was published
Jul 13, 2026
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in...
Moderate
Unreviewed
CVE-2026-57393
was published
Jul 13, 2026
The Azure Blob Storage container used for Gardyn device logs is publicly listable without...
Moderate
Unreviewed
CVE-2026-55726
was published
Jul 3, 2026
Unauthenticated Sensitive Data Exposure in Kit (formerly ConvertKit) for WooCommerce <= 2.1.5...
Moderate
Unreviewed
CVE-2026-57753
was published
Jul 2, 2026
Unauthenticated Sensitive Data Exposure in Bopo – WooCommerce Product Bundle Builder <= 1.1.6...
Moderate
Unreviewed
CVE-2026-57664
was published
Jun 26, 2026
Subscriber Sensitive Data Exposure in GetGenie <= 4.4.2 versions.
Moderate
Unreviewed
CVE-2026-57316
was published
Jun 26, 2026
Unauthenticated Sensitive Data Exposure in WCBoost – Products Compare <= 1.1.0 versions.
Moderate
Unreviewed
CVE-2026-57633
was published
Jun 26, 2026
A sensitive information disclosure security issue exists within the affected CompactLogix...
Moderate
Unreviewed
CVE-2026-9307
was published
Jun 16, 2026
Subscriber Sensitive Data Exposure in Visual Link Preview <= 2.4.1 versions.
Moderate
Unreviewed
CVE-2026-48878
was published
Jun 15, 2026
Subscriber Sensitive Data Exposure in Contest Gallery <= 28.1.7 versions.
Moderate
Unreviewed
CVE-2026-42660
was published
Jun 15, 2026
Subscriber Sensitive Data Exposure in WPPizza <= 3.19.9 versions.
Moderate
Unreviewed
CVE-2026-40796
was published
Jun 15, 2026
ProTip!
Advisories are also available from the
GraphQL API