GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
49
GitHub Actions
50
Go
3,606
Maven
5,000+
npm
5,000+
NuGet
924
pip
4,831
Pub
13
RubyGems
1,045
Rust
1,256
Swift
53
Unreviewed advisories
All unreviewed
5,000+
156,449 advisories
Filter by severity
A weakness has been identified in donchelo processing-claude-mcp-bridge up to...
Moderate
Unreviewed
CVE-2026-7216
was published
Apr 28, 2026
A post-authentication command injection vulnerability in the EasyMesh-related APIs of Zyxel...
Moderate
Unreviewed
CVE-2026-0711
was published
Apr 28, 2026
A vulnerability was detected in ef10007 MLOps_MCP 1.0.0. This impacts an unknown function of the...
Moderate
Unreviewed
CVE-2026-7213
was published
Apr 28, 2026
A security flaw has been discovered in egtai gmx-vmd-mcp up to 0.1.0. This issue affects the...
Moderate
Unreviewed
CVE-2026-7215
was published
Apr 28, 2026
A vulnerability was identified in eghuzefa engineer-your-data up to 0.1.3. This vulnerability...
Moderate
Unreviewed
CVE-2026-7214
was published
Apr 28, 2026
A security vulnerability has been detected in Deepractice PromptX up to 2.4.0. The affected...
Moderate
Unreviewed
CVE-2026-7217
was published
Apr 28, 2026
A security vulnerability has been detected in edvardlindelof notes-mcp up to 0.1.4. This affects...
Moderate
Unreviewed
CVE-2026-7212
was published
Apr 28, 2026
A vulnerability was identified in duartium papers-mcp-server...
Moderate
Unreviewed
CVE-2026-7205
was published
Apr 28, 2026
A security flaw has been discovered in dubydu sqlite-mcp up to 0.1.0. The affected element is the...
Moderate
Unreviewed
CVE-2026-7206
was published
Apr 28, 2026
A weakness has been identified in dvladimirov MCP up to 0.1.0. The impacted element is the...
Moderate
Unreviewed
CVE-2026-7211
was published
Apr 28, 2026
OpenClaw versions 2026.2.14 through 2026.3.24 fail to consistently apply guild and channel policy...
Moderate
Unreviewed
CVE-2026-41367
was published
Apr 28, 2026
OpenClaw versions 2026.2.6 through 2026.3.24 contain a path traversal vulnerability in the Feishu...
Moderate
Unreviewed
CVE-2026-41363
was published
Apr 28, 2026
A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this...
Moderate
Unreviewed
CVE-2026-7200
was published
Apr 28, 2026
OpenClaw before 2026.3.31 contains a sender allowlist bypass vulnerability in MS Teams thread...
Moderate
Unreviewed
CVE-2026-41365
was published
Apr 28, 2026
Values produced by ${random.value} are not suitable for use as secrets. ${random.uuid} is not...
Moderate
Unreviewed
CVE-2026-40975
was published
Apr 28, 2026
When an application is configured to use `ApplicationPidFileWriter`, a local attacker with write...
Moderate
Unreviewed
CVE-2026-40977
was published
Apr 28, 2026
A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected...
Moderate
Unreviewed
CVE-2026-7199
was published
Apr 28, 2026
OpenClaw before 2026.4.2 fails to normalize trailing-dot localhost hosts in remote CDP discovery...
Moderate
Unreviewed
CVE-2026-41372
was published
Apr 28, 2026
A security vulnerability has been detected in CodeAstro Online Classroom 1.0. Affected is an...
Moderate
Unreviewed
CVE-2026-7196
was published
Apr 28, 2026
OpenClaw before 2026.3.31 contains a local roots self-whitelisting vulnerability in...
Moderate
Unreviewed
CVE-2026-41366
was published
Apr 28, 2026
Spring Boot's Cassandra auto-configuration does not perform hostname verification when...
Moderate
Unreviewed
CVE-2026-40974
was published
Apr 28, 2026
A security vulnerability has been detected in OSPG binwalk up to 2.4.3. This vulnerability...
Moderate
Unreviewed
CVE-2026-7179
was published
Apr 28, 2026
When configured to use an SSL bundle, Spring Boot's RabbitMQ auto-configuration does not perform...
Moderate
Unreviewed
CVE-2026-40971
was published
Apr 28, 2026
A weakness has been identified in SourceCodester Pharmacy Sales and Inventory System 1.0. This...
Moderate
Unreviewed
CVE-2026-7194
was published
Apr 28, 2026
A weakness has been identified in ChatGPTNextWeb NextChat up to 2.16.1. This affects the function...
Moderate
Unreviewed
CVE-2026-7178
was published
Apr 28, 2026
ProTip!
Advisories are also available from the
GraphQL API