GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,417 advisories
Filter by severity
Improper privilege management vulnerability in Parallels Desktop Software, which affects versions...
High
Unreviewed
CVE-2024-6240
was published
Jun 21, 2024
Local privilege escalation vulnerability allowed an attacker to misuse ESET's file operations...
High
Unreviewed
CVE-2024-2003
was published
Jun 21, 2024
Rancher's External RoleTemplates can lead to privilege escalation
High
CVE-2023-32196
was published
for
github.com/rancher/rancher
(Go)
Jun 17, 2024
Privilege escalation vulnerability in the AMS module
Impact: Successful exploitation of this...
High
Unreviewed
CVE-2024-36500
was published
Jun 14, 2024
In AcvpOnMessage of avcp.cpp, there is a possible EOP due to uninitialized data. This could lead...
High
Unreviewed
CVE-2024-32906
was published
Jun 13, 2024
In gpu_pm_power_off_top_nolock of pixel_gpu_power.c, there is a possible compromise of protected...
High
Unreviewed
CVE-2024-32899
was published
Jun 13, 2024
In prepare_response of lwis_periodic_io.c, there is a possible out of bounds write due to an...
High
Unreviewed
CVE-2024-29784
was published
Jun 13, 2024
AdGuardHome privilege escalation vulnerability
High
CVE-2024-36586
was published
for
github.com/AdguardTeam/AdGuardHome
(Go)
Jun 13, 2024
An access control issue in Wvp GB28181 Pro 2.0 allows authenticated attackers to escalate...
High
Unreviewed
CVE-2024-37665
was published
Jun 12, 2024
Keycloak's admin API allows low privilege users to use administrative functions
High
CVE-2024-3656
was published
for
org.keycloak:keycloak-services
(Maven)
Jun 11, 2024
Trend Micro Security 17.x (Consumer) is vulnerable to a Privilege Escalation vulnerability that...
High
Unreviewed
CVE-2024-32849
was published
Jun 11, 2024
The issue was addressed with improved checks. This issue is fixed in tvOS 17.5, visionOS 1.2, iOS...
High
Unreviewed
CVE-2024-27811
was published
Jun 10, 2024
An issue in SiSoftware SANDRA v31.66 (SANDRA.sys 15.18.1.1) and before allows an attacker to...
High
Unreviewed
CVE-2024-34332
was published
Jun 10, 2024
Improper Privilege Management vulnerability in Repute Infosystems ARMember allows Privilege...
High
Unreviewed
CVE-2023-47837
was published
Jun 4, 2024
A local privilege escalation vulnerability in Ivanti Secure Access Client for Linux before 22.7R1...
High
Unreviewed
CVE-2023-46810
was published
May 31, 2024
Improper privilege management vulnerability in Astrotalks affecting version 10/03/2023. This...
High
Unreviewed
CVE-2024-5525
was published
May 31, 2024
TYPO3 may allow editors to change, create, or delete metadata of files not within their file mounts
High
GHSA-4r76-xr68-w7m7
was published
for
typo3/cms
(Composer)
May 30, 2024
IBM Performance Tools for i 7.2, 7.3, 7.4, and 7.5 could allow a local user to gain elevated...
High
Unreviewed
CVE-2024-27264
was published
May 22, 2024
Qlik Sense Enterprise for Windows before 14.187.4 allows a remote attacker to elevate their...
High
Unreviewed
CVE-2024-36077
was published
May 22, 2024
An issue in the component rtkio64.sys of Realtek Semiconductor Corp Realtek lO Driver v1.008.0823...
High
Unreviewed
CVE-2024-33224
was published
May 22, 2024
An issue in the component IOMap64.sys of ASUSTeK Computer Inc ASUS GPU TweakII v1.4.5.2 allows...
High
Unreviewed
CVE-2024-33223
was published
May 22, 2024
An issue in MarvinTest Solutions Hardware Access Driver v.5.0.3.0 and before and fixed in v.5.0.4...
High
Unreviewed
CVE-2024-31756
was published
May 21, 2024
An issue in TeraByte Unlimited Image for Windows v.3.64.0.0 and before and fixed in v.4.0.0.0...
High
Unreviewed
CVE-2024-31757
was published
May 21, 2024
The mobile application (com.transsion.videocallenhancer) interface has improper permission...
High
Unreviewed
CVE-2024-4988
was published
May 21, 2024
Improper Privilege Management vulnerability in Sirv allows Privilege Escalation.This issue...
High
Unreviewed
CVE-2024-32959
was published
May 17, 2024
ProTip!
Advisories are also available from the
GraphQL API