GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,856
Erlang
36
GitHub Actions
36
Go
2,483
Maven
5,000+
npm
4,104
NuGet
734
pip
3,917
Pub
12
RubyGems
945
Rust
1,017
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,187 advisories
Filter by severity
Google Sign-In for Rails allowed redirect to protocol-relative URI
Moderate
CVE-2025-58067
was published
for
google_sign_in
(RubyGems)
Aug 29, 2025
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Eric Teubert Podlove Podcast...
Moderate
Unreviewed
CVE-2025-58204
was published
Aug 27, 2025
A vulnerability in the Virtual Keyboard Video Monitor (vKVM) connection handling of Cisco...
High
Unreviewed
CVE-2025-20317
was published
Aug 27, 2025
Google Sign-In for Rails allowed redirects to malformed URLs
Moderate
CVE-2025-57821
was published
for
google_sign_in
(RubyGems)
Aug 27, 2025
IBM Cognos Command Center 10.2.4.1 and 10.2.5
could allow a remote attacker to conduct phishing...
High
Unreviewed
CVE-2025-2697
was published
Aug 26, 2025
SelectZero SelectZero Data Observability Platform before 2025.5.2 contains an Open Redirect...
Moderate
Unreviewed
CVE-2025-52219
was published
Aug 26, 2025
Liferay Portal allows open redirect in /c/portal/edit_info_item parameter redirect
Moderate
CVE-2025-43767
was published
for
com.liferay:com.liferay.info.impl
(Maven)
Aug 23, 2025
An intent redirection vulnerability in Reolink v4.54.0.4.20250526 allows unauthorized attackers...
Moderate
Unreviewed
CVE-2025-55624
was published
Aug 22, 2025
An open redirect vulnerability in Reolink v4.54.0.4.20250526 allows attackers to redirect users...
Moderate
Unreviewed
CVE-2025-55625
was published
Aug 22, 2025
The mirror-registry doesn't properly sanitize the host header HTTP header in HTTP request...
Moderate
Unreviewed
CVE-2025-7777
was published
Aug 20, 2025
URL redirection to untrusted site ('Open Redirect') issue exists in Movable Type. If this...
Moderate
Unreviewed
CVE-2025-55706
was published
Aug 20, 2025
A flaw has been found in TOTVS Portal Meu RH up to 12.1.17. Impacted is an unknown function of...
Moderate
Unreviewed
CVE-2025-9193
was published
Aug 20, 2025
Focus for iOS would not respect a Content-Disposition header of type Attachment and would...
Moderate
Unreviewed
CVE-2025-55032
was published
Aug 19, 2025
Malicious pages could use Firefox for iOS to pass FIDO: links to the OS and trigger the hybrid...
Critical
Unreviewed
CVE-2025-55031
was published
Aug 19, 2025
The QR scanner could allow arbitrary websites to be opened if a user was tricked into scanning a...
Critical
Unreviewed
CVE-2025-54145
was published
Aug 19, 2025
The URL scheme used by Firefox to facilitate searching of text queries could incorrectly allow...
Moderate
Unreviewed
CVE-2025-54144
was published
Aug 19, 2025
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Bunkerity Bunker Web on...
Moderate
Unreviewed
CVE-2025-8066
was published
Aug 15, 2025
@astrojs/node's trailing slash handling causes open redirect issue
Moderate
CVE-2025-55207
was published
for
@astrojs/node
(npm)
Aug 15, 2025
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Connector for...
Moderate
Unreviewed
CVE-2025-54681
was published
Aug 14, 2025
svg-sanitizer Bypasses Attribute Sanitization
Moderate
CVE-2025-55166
was published
for
enshrined/svg-sanitize
(Composer)
Aug 12, 2025
A vulnerability has been found in atjiu pybbs up to 6.0.0 and classified as problematic. This...
Moderate
Unreviewed
CVE-2025-8813
was published
Aug 10, 2025
A vulnerability, which was classified as problematic, was found in zlt2000 microservices-platform...
Moderate
Unreviewed
CVE-2025-8737
was published
Aug 8, 2025
Astros's duplicate trailing slash feature leads to an open redirection security issue
Moderate
CVE-2025-54793
was published
for
astro
(npm)
Aug 7, 2025
IBM Operational Decision Manager 8.11.0.1, 8.11.1.0, 8.12.0.1, 9.0.0.1, and 9.5.0 could allow a...
High
Unreviewed
CVE-2025-2824
was published
Aug 1, 2025
An open redirect in Sielox AnyWare v2.1.2 allows attackers to execute a man-in-the-middle attack...
Moderate
Unreviewed
CVE-2024-34328
was published
Jul 31, 2025
ProTip!
Advisories are also available from the
GraphQL API