GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,414 advisories
Filter by severity
Cloud Foundry UAA Privilege Escalation
High
CVE-2017-4973
was published
for
org.cloudfoundry.identity:cloudfoundry-identity-server
(Maven)
May 13, 2022
Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader...
High
Unreviewed
CVE-2015-5090
was published
May 13, 2022
Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader...
High
Unreviewed
CVE-2015-4446
was published
May 13, 2022
The identity zones feature in Pivotal Cloud Foundry 208 through 229; UAA 2.0.0 through 2.7.3 and...
High
Unreviewed
CVE-2016-0732
was published
May 13, 2022
The KEYS subsystem in the Linux kernel before 4.4 allows local users to gain privileges or cause...
High
Unreviewed
CVE-2015-8539
was published
May 13, 2022
mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types,...
High
Unreviewed
CVE-2016-1572
was published
May 13, 2022
The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users...
High
Unreviewed
CVE-2018-13405
was published
May 13, 2022
Rancher Project Members Have Continued Access to Namespaces After Being Removed From Them
High
CVE-2019-6287
was published
for
github.com/rancher/rancher
(Go)
May 13, 2022
The aufs module for the Linux kernel 3.x and 4.x does not properly restrict the mount namespace,...
High
Unreviewed
CVE-2016-2853
was published
May 13, 2022
The overlayfs implementation in the Linux kernel through 4.5.2 does not properly maintain POSIX...
High
Unreviewed
CVE-2016-1575
was published
May 13, 2022
An exploitable privilege escalation vulnerability exists in the Shimo VPN 4.1.5.1 helper service...
High
Unreviewed
CVE-2018-4008
was published
May 13, 2022
A privilege escalation vulnerability exists in the router configuration import functionality of...
High
Unreviewed
CVE-2022-21182
was published
May 13, 2022
Insufficient control flow management in the Intel(R) Advisor software before version 7.6.0.37 may...
High
Unreviewed
CVE-2022-21128
was published
May 13, 2022
Check Point ZoneAlarm before version 15.8.200.19118 allows a local actor to escalate privileges...
High
Unreviewed
CVE-2022-23743
was published
May 12, 2022
Privilege escalation in easyappointments
High
CVE-2022-1397
was published
for
alextselegidis/easyappointments
(Composer)
May 11, 2022
In placeCall of TelecomManager.java, there is a possible way for an application to keep itself...
High
Unreviewed
CVE-2022-20114
was published
May 11, 2022
Storage Spaces Direct Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022...
High
Unreviewed
CVE-2022-26939
was published
May 11, 2022
Storage Spaces Direct Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022...
High
Unreviewed
CVE-2022-26938
was published
May 11, 2022
Windows Push Notifications Apps Elevation of Privilege Vulnerability.
High
Unreviewed
CVE-2022-29125
was published
May 11, 2022
The BigFix Server API installer is created with InstallShield, which was affected by CVE-2021...
High
Unreviewed
CVE-2021-27765
was published
May 7, 2022
The BigFix Console installer is created with InstallShield, which was affected by CVE-2021-41526,...
High
Unreviewed
CVE-2021-27767
was published
May 7, 2022
The BigFix Client installer is created with InstallShield, which was affected by CVE-2021-41526,...
High
Unreviewed
CVE-2021-27766
was published
May 7, 2022
An user able to alter the savevm data (either on the disk or over the wire during migration)...
High
Unreviewed
CVE-2013-4536
was published
May 5, 2022
gksu-polkit-0.0.3-6.fc18 was reported as fixing the issue in CVE-2012-5617 but the patch was...
High
Unreviewed
CVE-2013-4161
was published
May 5, 2022
A flaw was found in the way qemu v1.3.0 and later (virtio-rng) validates addresses when guest...
High
Unreviewed
CVE-2013-2016
was published
May 5, 2022
ProTip!
Advisories are also available from the
GraphQL API