GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,871
Erlang
37
GitHub Actions
36
Go
2,517
Maven
5,000+
npm
4,154
NuGet
736
pip
3,953
Pub
12
RubyGems
946
Rust
1,026
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,336 advisories
Filter by severity
Incorrect default permissions in the AMD Manageability API could allow an attacker to achieve...
High
Unreviewed
CVE-2023-31359
was published
May 13, 2025
A DLL hijacking vulnerability in the AMD Optimizing CPU Libraries could allow an attacker to...
High
Unreviewed
CVE-2024-36339
was published
May 13, 2025
Incorrect default permissions in the AMD Optimizing CPU Libraries (AOCL) installation directory...
High
Unreviewed
CVE-2024-21960
was published
May 13, 2025
AsusSwitch.exe on ASUS personal computers (running Windows) sets weak file permissions, leading...
High
Unreviewed
CVE-2022-36438
was published
Oct 18, 2022
AsusSoftwareManager.exe in ASUS System Control Interface on ASUS personal computers (running...
Moderate
Unreviewed
CVE-2022-36439
was published
Oct 18, 2022
A vulnerability within the Software Updater functionality of Avira Security for Windows allowed...
High
Unreviewed
CVE-2022-3368
was published
Oct 18, 2022
Permission control vulnerability in the media library module
Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2025-46587
was published
May 6, 2025
A privilege escalation vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9...
High
Unreviewed
CVE-2022-33182
was published
Jul 6, 2023
Incorrect default permissions in the software installer for the Intel(R) Advisor before version...
High
Unreviewed
CVE-2021-33129
was published
Feb 11, 2022
Improper permissions for Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allow an...
High
Unreviewed
CVE-2022-21204
was published
Feb 11, 2022
Incorrect default permissions for the Intel(R) RXT for Chromebook application, all versions, may...
Moderate
Unreviewed
CVE-2021-33166
was published
Feb 11, 2022
Incorrect default permissions in the firmware for some Intel(R) Processors may allow a privileged...
Moderate
Unreviewed
CVE-2021-0093
was published
Feb 11, 2022
In navigateUpTo of Task.java, there is a possible way to launch an unexported intent handler due...
High
Unreviewed
CVE-2022-20441
was published
Nov 9, 2022
In initializeFromParcelLocked of BaseBundle.java, there is a possible method arbitrary code...
High
Unreviewed
CVE-2022-20452
was published
Nov 9, 2022
In dismiss and related functions of KeyguardHostViewController.java and related files, there is a...
Moderate
Unreviewed
CVE-2022-20465
was published
Nov 9, 2022
In buzzBeepBlinkLocked of NotificationManagerService.java, there is a possible way to share data...
Moderate
Unreviewed
CVE-2022-20448
was published
Nov 9, 2022
There is a vulnerability in permission verification during the Bluetooth pairing process....
Moderate
Unreviewed
CVE-2022-44548
was published
Nov 10, 2022
The SmartTrimProcessEvent module has a vulnerability of obtaining the read and write permissions...
High
Unreviewed
CVE-2022-44557
was published
Nov 10, 2022
The preset launcher module has a permission verification vulnerability. Successful exploitation...
High
Unreviewed
CVE-2022-44561
was published
Nov 10, 2022
The power module has a vulnerability in permission verification. Successful exploitation of this...
High
Unreviewed
CVE-2022-44554
was published
Nov 10, 2022
Incorrect Default Permissions in Liferay Portal
Moderate
CVE-2022-42130
was published
for
com.liferay.portal:release.portal.bom
(Maven)
Nov 15, 2022
Incorrect Default Permissions in Liferay Portal
Moderate
CVE-2022-42127
was published
for
com.liferay.portal:release.portal.bom
(Maven)
Nov 15, 2022
NETSCOUT nGeniusONE before 6.4.0 b2350 allows local users to leverage Insecure Permissions for...
High
Unreviewed
CVE-2025-32981
was published
Apr 25, 2025
A potential vulnerability has been identified in the system BIOS for certain HP PC products which...
High
Unreviewed
CVE-2022-37018
was published
Dec 12, 2022
Potential security vulnerabilities have been identified in an OMEN Gaming Hub SDK package which...
Critical
Unreviewed
CVE-2021-3437
was published
Dec 12, 2022
ProTip!
Advisories are also available from the
GraphQL API