GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,873
Erlang
37
GitHub Actions
36
Go
2,520
Maven
5,000+
npm
4,160
NuGet
738
pip
3,959
Pub
12
RubyGems
946
Rust
1,027
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,336 advisories
Filter by severity
Polycom RealPresence Group 500 <=20 has Insecure Permissions due to automatically loaded cookies....
High
Unreviewed
CVE-2025-22918
was published
Feb 3, 2025
Improper handling of case sensitivity in Jenkins OpenId Connect Authentication Plugin
High
CVE-2025-24399
was published
for
org.jenkins-ci.plugins:oic-auth
(Maven)
Jan 22, 2025
WeGIA < 3.2.0 is vulnerable to Incorrect Access Control in controle/control.php. The application...
Critical
Unreviewed
CVE-2024-57032
was published
Jan 17, 2025
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
High
Unreviewed
CVE-2024-21116
was published
Apr 17, 2024
In BackgroundLaunchProcessController, there is a possible way to launch arbitrary activity from...
High
Unreviewed
CVE-2024-0034
was published
Feb 16, 2024
The issue was addressed with improved bounds checks. This issue is fixed in iOS 17.1 and iPadOS...
High
Unreviewed
CVE-2023-42928
was published
Feb 21, 2024
By default, SANnav OVA is shipped with root user login enabled. While protected by a password,...
Moderate
Unreviewed
CVE-2024-2859
was published
Apr 27, 2024
In multiple locations, there is a possible failure to persist permissions settings due to...
High
Unreviewed
CVE-2024-49735
was published
Jan 22, 2025
An issue in trojan v.2.0.0 through v.2.15.3 allows a remote attacker to escalate privileges via...
Critical
Unreviewed
CVE-2024-55215
was published
Feb 8, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Moderate
Unreviewed
CVE-2024-44135
was published
Sep 17, 2024
Improper buffer restrictions the Intel(R) C++ Compiler Classic before version 2021.8 for Intel(R)...
Moderate
Unreviewed
CVE-2023-29162
was published
Mar 28, 2024
Cache confusion in Jenkins Eiffel Broadcaster Plugin
Moderate
CVE-2025-24400
was published
for
com.axis.jenkins.plugins.eiffel:eiffel-broadcaster
(Maven)
Jan 22, 2025
MaysWind ezBookkeeping has Improper Privilege Management
Critical
CVE-2024-57604
was published
for
github.com/mayswind/ezbookkeeping
(Go)
Feb 13, 2025
AWS Amplify CLI has incorrect trust policy management
Critical
CVE-2024-28056
was published
for
@aws-amplify/cli
(npm)
Apr 15, 2024
When installing Nessus Agent to a non-default location on a Windows host, Nessus Agent versions...
High
Unreviewed
CVE-2025-24915
was published
Mar 21, 2025
Libcontainer is affected by capabilities elevation similar to GHSA-f3fp-gc8g-vw66
Moderate
CVE-2025-27612
was published
for
libcontainer
(Rust)
Mar 21, 2025
An issue in Nothing Tech Nothing OS v.2.6 allows a local attacker to escalate privileges via the...
High
Unreviewed
CVE-2024-51440
was published
Feb 13, 2025
PipeCD Vulnerable to Privilege Escalation
High
CVE-2024-53351
was published
for
github.com/pipe-cd/pipecd
(Go)
Mar 21, 2025
In multiple functions of AccountManagerService.java, there is a possible way to bypass...
High
Unreviewed
CVE-2024-49724
was published
Jan 22, 2025
In multiple functions of Parcel.cpp, there is a possible way to bypass address space layout...
High
Unreviewed
CVE-2018-9434
was published
Jan 18, 2025
In setActualDefaultRingtoneUri of RingtoneManager.java, there is a possible way to bypass content...
High
Unreviewed
CVE-2023-40132
was published
Jan 22, 2025
In many locations, there is a possible way to access kernel memory in user space due to an...
High
Unreviewed
CVE-2018-9401
was published
Jan 18, 2025
In onClick of MainClear.java, there is a possible way to trigger factory reset without explicit...
High
Unreviewed
CVE-2024-49736
was published
Jan 22, 2025
This issue was addressed through improved state management. This issue is fixed in visionOS 1.3,...
Moderate
Unreviewed
CVE-2024-54564
was published
Mar 21, 2025
Bypass of GACS Policy Configuration settings in Citrix Workspace app for HTML5
Moderate
Unreviewed
CVE-2024-6148
was published
Jul 10, 2024
ProTip!
Advisories are also available from the
GraphQL API