Â
The GitHub Advisory Database allows you to browse or search for vulnerabilities that affect open source projects on GitHub.
You can submit improvements to any advisory published in the GitHub Advisory Database.
GitHub sends Dependabot alerts when we detect vulnerabilities affecting your repository.
Enable Dependabot alerts to be notified when a new vulnerability is found in one of your dependencies.
If GitHub discovers vulnerable dependencies in your project, you can view them on the Dependabot alerts tab of your repository. Then, you can update your project to resolve or dismiss the vulnerability.
Optimize how you receive notifications about Dependabot alerts.