GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
44
GitHub Actions
45
Go
3,212
Maven
5,000+
npm
5,000+
NuGet
864
pip
4,494
Pub
12
RubyGems
995
Rust
1,186
Swift
51
Unreviewed advisories
All unreviewed
5,000+
321,204 advisories
Filter by severity
A JSONPath injection vulnerability in Spring AI's AbstractFilterExpressionConverter allows...
High
Unreviewed
CVE-2026-22729
was published
Mar 18, 2026
In the Linux kernel, the following vulnerability has been resolved:
smb/server: fix refcount...
Moderate
Unreviewed
CVE-2025-71223
was published
Feb 14, 2026
In the Linux kernel, the following vulnerability has been resolved:
can: usb_8dev:...
Moderate
Unreviewed
CVE-2026-23108
was published
Feb 4, 2026
In the Linux kernel, the following vulnerability has been resolved:
hfs: ensure sb->s_fs_info is...
Moderate
Unreviewed
CVE-2025-71230
was published
Feb 18, 2026
In the Linux kernel, the following vulnerability has been resolved:
dmaengine: mmp_pdma: Fix...
High
Unreviewed
CVE-2025-71221
was published
Feb 14, 2026
In the Linux kernel, the following vulnerability has been resolved:
spi: tegra210-quad: Protect...
Moderate
Unreviewed
CVE-2026-23207
was published
Feb 14, 2026
In the Linux kernel, the following vulnerability has been resolved:
crypto: iaa - Fix out-of...
High
Unreviewed
CVE-2025-71231
was published
Feb 18, 2026
FileBrowser Quantum: Password-Protected Share Bypass via /public/api/share/info
High
CVE-2026-30933
was published
for
github.com/gtsteffaniak/filebrowser/backend
(Go)
Mar 9, 2026
In the Linux kernel, the following vulnerability has been resolved:
PCI: endpoint: Avoid...
Moderate
Unreviewed
CVE-2025-71233
was published
Feb 18, 2026
Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This...
Moderate
Unreviewed
CVE-2026-3497
was published
Mar 12, 2026
In the Linux kernel, the following vulnerability has been resolved:
smb/server: fix refcount...
Moderate
Unreviewed
CVE-2025-71204
was published
Feb 14, 2026
In the Linux kernel, the following vulnerability has been resolved:
scsi: qla2xxx: Free sp in...
Moderate
Unreviewed
CVE-2025-71232
was published
Feb 18, 2026
In the Linux kernel, the following vulnerability has been resolved:
wifi: rtl8xxxu: fix slab-out...
High
Unreviewed
CVE-2025-71234
was published
Feb 18, 2026
In the Linux kernel, the following vulnerability has been resolved:
scsi: qla2xxx: Delay module...
Moderate
Unreviewed
CVE-2025-71235
was published
Feb 18, 2026
In the Linux kernel, the following vulnerability has been resolved:
wifi: rtw88: Fix alignment...
Moderate
Unreviewed
CVE-2025-71229
was published
Feb 18, 2026
In the Linux kernel, the following vulnerability has been resolved:
riscv: Sanitize syscall...
High
Unreviewed
CVE-2025-71203
was published
Feb 14, 2026
In the Linux kernel, the following vulnerability has been resolved:
can: esd_usb:...
Moderate
Unreviewed
CVE-2026-23075
was published
Feb 4, 2026
In the Linux kernel, the following vulnerability has been resolved:
regmap: Fix race condition...
Moderate
Unreviewed
CVE-2026-23071
was published
Feb 4, 2026
In the Linux kernel, the following vulnerability has been resolved:
l2tp: Fix memleak in...
Moderate
Unreviewed
CVE-2026-23072
was published
Feb 4, 2026
Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.181, 15G and 16G...
Moderate
Unreviewed
CVE-2026-26945
was published
Mar 18, 2026
A stored cross-site scripting (XSS) vulnerability exists in the NotChatbot WebChat widget thru 1...
Unknown
Unreviewed
CVE-2026-30048
was published
Mar 18, 2026
In the Linux kernel, the following vulnerability has been resolved:
fbdev: rivafb: fix divide...
Unknown
Unreviewed
CVE-2026-23266
was published
Mar 18, 2026
The WiFi Extender WDR201A (HW V2.1, FW LFMZX28040922V1.02) exposes an unprotected UART interface...
Unknown
Unreviewed
CVE-2026-30704
was published
Mar 18, 2026
A command injection vulnerability exists in the web management interface of the WiFi Extender...
Unknown
Unreviewed
CVE-2026-30703
was published
Mar 18, 2026
Jenkins LoadNinja Plugin 2.1 and earlier stores LoadNinja API keys unencrypted in job config.xml...
Moderate
Unreviewed
CVE-2026-33003
was published
Mar 18, 2026
ProTip!
Advisories are also available from the
GraphQL API