GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
73
GitHub Actions
53
Go
4,029
Maven
5,000+
npm
5,000+
NuGet
976
pip
5,000+
Pub
13
RubyGems
1,070
Rust
1,404
Swift
61
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
309,074 advisories
Filter by severity
Use of Hard-coded Credentials vulnerability in Mitsubishi Electric Room Air Conditioners (for...
High
Unreviewed
CVE-2026-5667
was published
Jun 17, 2026
Integer Underflow (Wrap or Wraparound) vulnerability in RTI Connext Micro (Core Libraries) allows...
High
Unreviewed
CVE-2026-30803
was published
Jun 17, 2026
snes9x 1.63 allows an out-of-bounds write and denial of service via a crafted .ups file.
Low
Unreviewed
CVE-2026-39199
was published
Jun 17, 2026
NVIDIA Spatial Intelligence Lab's (SIL) GEN3C contains an unauthenticated remote code execution...
Critical
Unreviewed
CVE-2026-53805
was published
Jun 17, 2026
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI...
High
Unreviewed
CVE-2026-7300
was published
Jun 17, 2026
Missing Authentication for Critical Function vulnerability in RTI Connext Professional (Security...
Moderate
Unreviewed
CVE-2026-30799
was published
Jun 17, 2026
Improper Neutralization of Script in Attributes in a Web Page vulnerability in pragdave earmark...
Moderate
Unreviewed
CVE-2026-48591
was published
Jun 17, 2026
Out-of-bounds Read vulnerability in RTI Connext Professional (Core Libraries) allows Overread...
Critical
Unreviewed
CVE-2026-3894
was published
Jun 17, 2026
Dell PowerFlex Manager, version(s) [Versions], contain(s) an Improper Neutralization of Special...
Low
Unreviewed
CVE-2026-35068
was published
Jun 17, 2026
A maliciously crafted RFA file, when converted to FormIt via “Convert RFA to FormIt” in Autodesk...
Moderate
Unreviewed
CVE-2026-1288
was published
Jun 17, 2026
A flaw was found in Katello's of Red Hat Satellite. A content upload functionality where...
Moderate
Unreviewed
CVE-2026-12515
was published
Jun 17, 2026
A vulnerability in the vmadmin CLI of Cisco Umbrella Virtual Appliance could allow an...
Moderate
Unreviewed
CVE-2026-20246
was published
Jun 17, 2026
Dell PowerFlex Manager, version(s) [Versions], contain(s) an Improper Neutralization of Special...
Moderate
Unreviewed
CVE-2026-35069
was published
Jun 17, 2026
Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows...
Critical
Unreviewed
CVE-2026-2467
was published
Jun 17, 2026
Out-of-bounds Read vulnerability in RTI Connext Micro (Core Libraries) allows Overread Buffers...
High
Unreviewed
CVE-2026-30802
was published
Jun 17, 2026
picklescan before 0.0.35 contains an unsafe pickle deserialization vulnerability allowing...
High
Unreviewed
CVE-2026-53872
was published
Jun 17, 2026
picklescan before 1.0.3 contains a scanning bypass vulnerability in the scan_pytorch function...
High
Unreviewed
CVE-2026-53875
was published
Jun 17, 2026
picklescan before 1.0.1 contains an unsafe deserialization vulnerability allowing unauthenticated...
Critical
Unreviewed
CVE-2026-53874
was published
Jun 17, 2026
A vulnerability in the browser-based version of Cisco Webex App could have allowed an...
Moderate
Unreviewed
CVE-2026-20178
was published
Jun 17, 2026
picklescan before 1.0.4 fails to block pkgutil.resolve_name, allowing attackers to bypass the...
Critical
Unreviewed
CVE-2026-3490
was published
Jun 17, 2026
A vulnerability in the web-based management interface of Cisco Crosswork Network Controller could...
Moderate
Unreviewed
CVE-2026-20220
was published
Jun 17, 2026
Out-of-bounds Write, Out-of-bounds Write, Out-of-bounds Write vulnerability in RTI Connext...
Moderate
Unreviewed
CVE-2026-2674
was published
Jun 17, 2026
Dell AIOps Collector versions prior to 1.18.3 contain a "Use of Default Credentials"...
High
Unreviewed
CVE-2026-32652
was published
Jun 17, 2026
JimuReport versions 2.3.4 and below are vulnerable to remote code execution due to improper...
Critical
Unreviewed
CVE-2026-36418
was published
Jun 17, 2026
In Splunk AI Toolkit versions below 5.7.4, a user who holds the "admin" Splunk role could execute...
Critical
Unreviewed
CVE-2026-20266
was published
Jun 17, 2026
ProTip!
Advisories are also available from the
GraphQL API