GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
116
GitHub Actions
55
Go
4,788
Maven
5,000+
npm
5,000+
NuGet
1,124
pip
5,000+
Pub
13
RubyGems
1,152
Rust
1,576
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
2
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
20
1,466 advisories
Filter by severity
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions...
High
Unreviewed
CVE-2026-84081
was published
Sep 18, 2026
AnyIO: TLSStream IDNA 2003 host name encoding enables potential TLS certificate spoofing
Critical
CVE-2026-63374
was published
for
anyio
(pip)
Sep 18, 2026
rustls-webpki (rustls/webpki) versions 0.101.0 through 0.103.11 and 0.104.0-alpha releases before...
Low
Unreviewed
CVE-2026-93600
was published
Sep 18, 2026
rustls-webpki (the Rust webpki fork used by rustls) versions >= 0.101.0 and prior to 0.103.12 and...
Low
Unreviewed
CVE-2026-93601
was published
Sep 18, 2026
An improper certificate validation vulnerability in Email API in Synology DiskStation Manager ...
High
Unreviewed
CVE-2026-40539
was published
Sep 18, 2026
OpenTelemetry-Go: Log gRPC exporter ignores env TLS certs, bypassing mTLS/pinning
Moderate
CVE-2026-81871
was published
for
go.opentelemetry.io/otel/exporters/otlp/otlplog/otlploggrpc
(Go)
Sep 17, 2026
Steeltoe: Header-forwarded client cert lacks proof of private-key possession
Moderate
CVE-2026-81868
was published
for
Steeltoe.Security.Authorization.Certificate
(NuGet)
Sep 17, 2026
Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Improper...
Moderate
Unreviewed
CVE-2026-81447
was published
Sep 17, 2026
A vulnerability in the sftunnel inter-device communication protocol of Cisco Secure FMC Software...
High
Unreviewed
CVE-2026-20323
was published
Sep 16, 2026
The lack of TLS certificate validation when downloading firmware updates in VEO and VEO-XS Wi-Fi...
High
Unreviewed
CVE-2026-86474
was published
Sep 16, 2026
Improper certificate validation on LDAPS connections to Active Directory in Devolutions Server...
Unknown
Unreviewed
CVE-2026-13327
was published
Sep 15, 2026
Improper certificate validation in the shared HTTP client used by synchronization and integration...
Unknown
Unreviewed
CVE-2026-84850
was published
Sep 15, 2026
A certificate validation issue was addressed with improved certificate validation. This issue is...
Moderate
Unreviewed
CVE-2026-86889
was published
Sep 14, 2026
A certificate validation issue was addressed with improved certificate validation. This issue is...
Critical
Unreviewed
CVE-2026-86881
was published
Sep 14, 2026
ASE/Kalkitech ASE2000 V2 Communication Test Set 2.35 through 2.37 on Windows contains an improper...
Critical
Unreviewed
CVE-2026-90647
was published
Sep 13, 2026
Socket Firewall (socketdev/socket-registry-firewall) in registry mode before 2.0.0 does not...
High
Unreviewed
CVE-2026-90651
was published
Sep 13, 2026
Requests from the reverse proxy to the identity-provider service for token discovery,...
Moderate
Unreviewed
CVE-2026-90452
was published
Sep 12, 2026
A flaw was found in the OCAPI modules (ocapi_command, ocapi_info) of the
community.general...
Moderate
Unreviewed
CVE-2026-87872
was published
Sep 9, 2026
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior...
Low
Unreviewed
CVE-2026-79729
was published
Sep 9, 2026
Dell Secure Connect Gateway (SCG) 5.0 Appliance, versions prior to 5.36.00.xx, contains an...
Low
Unreviewed
CVE-2026-79732
was published
Sep 9, 2026
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior...
Low
Unreviewed
CVE-2026-79736
was published
Sep 9, 2026
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior...
Low
Unreviewed
CVE-2026-79690
was published
Sep 9, 2026
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior...
Moderate
Unreviewed
CVE-2026-78483
was published
Sep 9, 2026
Improper certificate trust validation during VPN negotiation in Check Point Quantum Security...
Critical
Unreviewed
CVE-2026-85102
was published
Sep 9, 2026
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior...
High
Unreviewed
CVE-2026-79637
was published
Sep 9, 2026
ProTip!
Advisories are also available from the
GraphQL API