GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,455
Maven
5,000+
npm
5,000+
NuGet
1,090
pip
5,000+
Pub
13
RubyGems
1,135
Rust
1,509
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
5,410 advisories
Filter by severity
A permissions issue was addressed with additional restrictions. This issue is fixed in Safari 26...
Moderate
Unreviewed
CVE-2026-43713
was published
Jun 29, 2026
Conditions administration did not consistently enforce tokens and component/mapped-item permissions.
High
Unreviewed
CVE-2026-63280
was published
Jul 22, 2026
Administrator routes and replacement requests did not consistently require Super User permission...
High
Unreviewed
CVE-2026-63685
was published
Jul 22, 2026
Privileged Regular Labs AJAX endpoints did not consistently require valid CSRF tokens, matching...
High
Unreviewed
CVE-2026-63265
was published
Jul 22, 2026
Free did not require both the article creator and last modifier to be Super Users before...
Critical
Unreviewed
CVE-2026-64796
was published
Jul 22, 2026
Vulnerability in the PeopleSoft Enterprise CS Financial Aid product of Oracle PeopleSoft ...
Moderate
Unreviewed
CVE-2026-60612
was published
Jul 22, 2026
A permissions issue was addressed by removing the vulnerable code. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2026-43763
was published
Jul 27, 2026
An authorization issue was addressed with improved state management. This issue is fixed in macOS...
High
Unreviewed
CVE-2026-64737
was published
Jul 27, 2026
The FluentCart A New Era of eCommerce WordPress plugin before 1.4.0 does not verify that a...
Moderate
Unreviewed
CVE-2026-14926
was published
Jul 28, 2026
Database-update requests lacked consistent token and Super User checks, this could cause...
High
Unreviewed
CVE-2026-64876
was published
Jul 23, 2026
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2026-64738
was published
Jul 27, 2026
[This CNA information record relates to multiple CVEs; the
text explains which aspects...
High
Unreviewed
CVE-2026-62427
was published
Jul 28, 2026
Vulnerability in the Oracle Bills of Material product of Oracle E-Business Suite (component:...
High
Unreviewed
CVE-2026-60807
was published
Jul 22, 2026
Vulnerability in the Oracle Common Application Components product of Oracle E-Business Suite ...
High
Unreviewed
CVE-2026-60677
was published
Jul 22, 2026
An access issue was addressed with improved access restrictions. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2026-43760
was published
Jul 27, 2026
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in...
High
Unreviewed
CVE-2026-28945
was published
Jul 27, 2026
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.7...
Critical
Unreviewed
CVE-2026-43779
was published
Jul 27, 2026
An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2026-43819
was published
Jul 27, 2026
A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.8,...
Moderate
Unreviewed
CVE-2026-64723
was published
Jul 27, 2026
This issue was addressed through improved state management. This issue is fixed in iOS 26.6 and...
Moderate
Unreviewed
CVE-2026-64732
was published
Jul 27, 2026
An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0.273. If a customer...
Critical
Unreviewed
CVE-2021-32084
was published
Jul 28, 2026
An access issue was addressed with improved access restrictions. This issue is fixed in Safari 26...
Moderate
Unreviewed
CVE-2026-43821
was published
Jul 27, 2026
An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2026-64702
was published
Jul 27, 2026
IBM Sterling B2B Integrator 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM...
Moderate
Unreviewed
CVE-2026-7362
was published
Jul 28, 2026
goshs --no-delete WebDAV MOVE bypass allows file deletion/overwrite
Critical
CVE-2026-64863
was published
for
github.com/patrickhener/goshs
(Go)
Jul 28, 2026
ProTip!
Advisories are also available from the
GraphQL API