GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,731
Maven
5,000+
npm
4,332
NuGet
763
pip
4,109
Pub
12
RubyGems
960
Rust
1,068
Swift
45
Unreviewed advisories
All unreviewed
5,000+
304,237 advisories
Filter by severity
In multiple locations, there is a possible permanent denial of service due to resource exhaustion...
Moderate
Unreviewed
CVE-2025-48569
was published
Dec 8, 2025
In hasAccountsOnAnyUser of DevicePolicyManagerService.java, there is a possible way to add a...
High
Unreviewed
CVE-2025-48633
was published
Dec 8, 2025
In validateIconUserBoundary of PrintManagerService.java, there is a possible cross-user image...
High
Unreviewed
CVE-2025-48628
was published
Dec 8, 2025
In __pkvm_load_tracing of trace.c, there is a possible out-of-bounds write due to improper input...
High
Unreviewed
CVE-2025-48638
was published
Dec 8, 2025
In preparePackage of InstallPackageHelper.java, there is a possible way for an app to appear...
High
Unreviewed
CVE-2025-48606
was published
Dec 8, 2025
Authenticated append-style command-injection Ruijie APs (AP_RGOS 11.1.x) allows an authenticated...
Moderate
Unreviewed
CVE-2025-65363
was published
Dec 8, 2025
memos lacks file name validation or verification
Moderate
CVE-2025-65799
was published
for
github.com/usememos/memos
(Go)
Dec 8, 2025
memos vulnerability allows the creation of arbitrary accounts
High
CVE-2025-65795
was published
for
github.com/usememos/memos
(Go)
Dec 8, 2025
In updateNotificationChannelGroupFromPrivilegedListener of NotificationManagerService.java, there...
Moderate
Unreviewed
CVE-2025-48576
was published
Dec 8, 2025
In multiple functions of CertInstaller.java, there is a possible way to install certificates due...
High
Unreviewed
CVE-2025-48575
was published
Dec 8, 2025
In appendFrom of Parcel.cpp, there is a possible out of bounds read due to a missing bounds check...
High
Unreviewed
CVE-2025-48596
was published
Dec 8, 2025
In onActivityResult of EditFdnContactScreen.java, there is a possible way to leak contacts from...
High
Unreviewed
CVE-2025-48586
was published
Dec 8, 2025
In onUidImportance of DisassociationProcessor.java, there is a possible way to retain companion...
High
Unreviewed
CVE-2025-48594
was published
Dec 8, 2025
In verifyAndGetBypass of AppOpsService.java, there is a possible method for a malicious app to...
Moderate
Unreviewed
CVE-2025-48590
was published
Dec 8, 2025
In multiple locations, there is a possible way to read files from another user due to a missing...
Moderate
Unreviewed
CVE-2025-48591
was published
Dec 8, 2025
In multiple locations, there is a possible way for an application on a work profile to set the...
High
Unreviewed
CVE-2025-48612
was published
Dec 8, 2025
In multiple locations, there is a possible permanent denial of service due to improper input...
Moderate
Unreviewed
CVE-2025-48601
was published
Dec 8, 2025
In multiple functions of HeaderPrivacyIconsController.kt, there is a possible way to grand...
High
Unreviewed
CVE-2025-48589
was published
Dec 8, 2025
In initDecoder of C2SoftDav1dDec.cpp, there is a possible out of bounds read due to a heap buffer...
High
Unreviewed
CVE-2025-48592
was published
Dec 8, 2025
In multiple locations, there is a possible way to read files from another user due to a missing...
Moderate
Unreviewed
CVE-2025-48604
was published
Dec 8, 2025
In multiple locations, there is a possible way to trick a user into accepting a permission due to...
High
Unreviewed
CVE-2025-48597
was published
Dec 8, 2025
In InputMethodInfo of InputMethodInfo.java, there is a possible permanent denial of service due...
Moderate
Unreviewed
CVE-2025-48603
was published
Dec 8, 2025
In __pkvm_guest_relinquish_to_host of mem_protect.c, there is a possible configuration data leak...
Moderate
Unreviewed
CVE-2025-48610
was published
Dec 8, 2025
In multiple functions of WifiScanModeActivity.java, there is a possible way to bypass a device...
High
Unreviewed
CVE-2025-48599
was published
Dec 8, 2025
In multiple functions of NotificationManagerService.java, there is a possible way to bypass the...
Moderate
Unreviewed
CVE-2025-48584
was published
Dec 8, 2025
ProTip!
Advisories are also available from the
GraphQL API