GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,508
Maven
5,000+
npm
5,000+
NuGet
1,091
pip
5,000+
Pub
13
RubyGems
1,145
Rust
1,511
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
9,247 advisories
Filter by severity
A path traversal vulnerability in Intelliants Subrion CMS through 4.2.1 allows authenticated...
Moderate
Unreviewed
CVE-2026-72604
was published
Aug 11, 2026
A path traversal vulnerability in AsyncFuncAI deepwiki-open through commit 16f35a0 allows...
High
Unreviewed
CVE-2026-72602
was published
Aug 11, 2026
A path traversal vulnerability was discovered in the Offline archives functionality of the local...
Moderate
Unreviewed
CVE-2026-33922
was published
Aug 11, 2026
SAP Approuter does not sufficiently validate certain incoming requests before forwarding them to...
Moderate
Unreviewed
CVE-2026-66777
was published
Aug 11, 2026
SAP Manufacturing Integration and Intelligence allows a privileged attacker to exploit...
High
Unreviewed
CVE-2026-44763
was published
Aug 11, 2026
Sucuri Security WordPress plugin through version 2.7.3 contains a path traversal vulnerability in...
High
Unreviewed
CVE-2026-73033
was published
Aug 10, 2026
unearth through 0.18.2, fixed in commit 6c78164, contains a path traversal vulnerability in the...
High
Unreviewed
CVE-2026-73030
was published
Aug 10, 2026
Hugging Face Accelerate through 1.14.0 contains a path traversal vulnerability in...
Moderate
Unreviewed
CVE-2026-69112
was published
Aug 10, 2026
A Zip Slip vulnerability in the WebUI ISP
Upgrade functionality allows arbitrary file write via a...
Moderate
Unreviewed
CVE-2026-12339
was published
Aug 10, 2026
A path traversal vulnerability in mustafaakin/cast-localvideo (all versions) allows an...
High
Unreviewed
CVE-2026-72571
was published
Aug 10, 2026
A path traversal vulnerability in cube-root/directory-serve through 1.3.7 allows an...
Critical
Unreviewed
CVE-2026-72569
was published
Aug 10, 2026
A path traversal vulnerability in o1lab/xmysql (all versions) allows an unauthenticated remote...
High
Unreviewed
CVE-2026-72572
was published
Aug 10, 2026
An improper path validation vulnerability in AsyncFuncAI/deepwiki-open through commit 16f35a0...
Critical
Unreviewed
CVE-2026-72567
was published
Aug 10, 2026
GNU cpio contains a Path Traversal vulnerability in its tar archive extraction functionality....
Moderate
Unreviewed
CVE-2026-66484
was published
Aug 10, 2026
A vulnerability was identified in Nikolaibibo claude-comfyui-mcp 1.0.0. Affected is the function...
Low
Unreviewed
CVE-2026-19371
was published
Aug 10, 2026
A vulnerability was determined in bartekke8it56w2 new-mcp 0.1.0. This impacts the function fs...
Low
Unreviewed
CVE-2026-19370
was published
Aug 10, 2026
A security flaw has been discovered in Handwriting-OCR handwriting-ocr-mcp-server 0.1.0. Affected...
Low
Unreviewed
CVE-2026-19372
was published
Aug 10, 2026
A vulnerability was identified in Ichigo3766 image-gen-mcp 0.1.0. The impacted element is an...
Low
Unreviewed
CVE-2026-19365
was published
Aug 9, 2026
A flaw has been found in NocteDefensor LudusMCP up to 1.0.24. Affected is an unknown function of...
Low
Unreviewed
CVE-2026-19366
was published
Aug 9, 2026
A vulnerability was found in PV-Bhat gemsuite-mcp 1.0.0. Affected by this issue is some unknown...
Moderate
Unreviewed
CVE-2026-19368
was published
Aug 9, 2026
A vulnerability was identified in automateyournetwork MCPyATS up to 0.1.4. The affected element...
Low
Unreviewed
CVE-2026-19338
was published
Aug 9, 2026
A vulnerability has been found in Jane-xiaoer skill-vision-control up to 1.3.0. This...
Low
Unreviewed
CVE-2026-19335
was published
Aug 9, 2026
A vulnerability was found in Pimzino spec-workflow-mcp up to 2.2.6. This issue affects the...
Moderate
Unreviewed
CVE-2026-19336
was published
Aug 9, 2026
The WP MAPS PRO WordPress plugin before 6.1.3 does not perform a capability check in one of its...
Moderate
Unreviewed
CVE-2026-18465
was published
Aug 9, 2026
A vulnerability was determined in angrysky56 advanced-reasoning-mcp 1.0.0. The impacted element...
Low
Unreviewed
CVE-2026-19330
was published
Aug 9, 2026
ProTip!
Advisories are also available from the
GraphQL API