GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,831 advisories
Filter by severity
An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly...
High
Unreviewed
CVE-2020-0678
was published
May 24, 2022
An elevation of privilege vulnerability exists when Windows improperly handles COM object...
High
Unreviewed
CVE-2020-0685
was published
May 24, 2022
An elevation of privilege vulnerability exists in the way that the Windows Function Discovery...
Moderate
Unreviewed
CVE-2020-0679
was published
May 24, 2022
An elevation of privilege vulnerability exists in the way that the Windows Function Discovery...
Moderate
Unreviewed
CVE-2020-0680
was published
May 24, 2022
An elevation of privilege vulnerability exists in the way that the Windows Function Discovery...
High
Unreviewed
CVE-2020-0682
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle...
High
Unreviewed
CVE-2020-0671
was published
May 24, 2022
An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects...
Moderate
Unreviewed
CVE-2020-0669
was published
May 24, 2022
An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles...
Moderate
Unreviewed
CVE-2020-0667
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle...
High
Unreviewed
CVE-2020-0670
was published
May 24, 2022
An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects...
Moderate
Unreviewed
CVE-2020-0668
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle...
High
Unreviewed
CVE-2020-0672
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly...
Moderate
Unreviewed
CVE-2020-0659
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS)...
Moderate
Unreviewed
CVE-2020-0657
was published
May 24, 2022
An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce...
Moderate
Unreviewed
CVE-2020-0663
was published
May 24, 2022
An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles...
Moderate
Unreviewed
CVE-2020-0666
was published
May 24, 2022
An elevation of privilege vulnerability exists in Active Directory Forest trusts due to a default...
High
Unreviewed
CVE-2020-0665
was published
May 24, 2022
The CorsairLLAccess64.sys and CorsairLLAccess32.sys drivers in CORSAIR iCUE before 3.25.60 allow...
High
Unreviewed
CVE-2020-8808
was published
May 24, 2022
An issue was discovered in EyesOfNetwork 5.3. The sudoers configuration is prone to a privilege...
High
Unreviewed
CVE-2020-8655
was published
May 24, 2022
It has been found in openshift-enterprise version 3.11 and all openshift-enterprise versions from...
Moderate
Unreviewed
CVE-2020-1708
was published
May 24, 2022
A privilege escalation in the EdgeSwitch prior to version 1.7.1, an CGI script don't fully...
High
Unreviewed
CVE-2020-8126
was published
May 24, 2022
An issue was discovered in OpServices OpMon 9.3.2. Starting from the apache user account, it is...
High
Unreviewed
CVE-2020-7954
was published
May 24, 2022
MCabber before 1.0.4 is vulnerable to roster push attacks, which allows remote attackers to...
Moderate
Unreviewed
CVE-2016-9928
was published
May 24, 2022
mysql_install_db in MariaDB 10.4.7 through 10.4.11 allows privilege escalation from the mysql...
High
Unreviewed
CVE-2020-7221
was published
May 24, 2022
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0, under specialized conditions, could...
Moderate
Unreviewed
CVE-2020-4163
was published
May 24, 2022
Prototype 1.6.0.1 allows remote authenticated users to forge ticket creation (on behalf of other...
Moderate
Unreviewed
CVE-2020-7993
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API