GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
987 advisories
Filter by severity
Visual Studio Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2021-42319
was published
May 24, 2022
Cloudera Manager 7.2.4 has Incorrect Access Control, allowing Escalation of Privileges to view...
Moderate
Unreviewed
CVE-2021-32483
was published
May 24, 2022
Nessus versions 8.15.2 and earlier were found to contain a local privilege escalation...
Moderate
Unreviewed
CVE-2021-20135
was published
May 24, 2022
Each authenticated Orion Platform user in a MSP (Managed Service Provider) environment can view...
Moderate
Unreviewed
CVE-2021-35225
was published
May 24, 2022
An issue was discovered in Zammad before 5.0.1. In some cases, there is improper enforcement of...
Moderate
Unreviewed
CVE-2021-42137
was published
May 24, 2022
An issue has been discovered in GitLab affecting all versions starting from 13.0 before 14.0.9,...
Moderate
Unreviewed
CVE-2021-22263
was published
May 24, 2022
A local attacker could read or write arbitrary files with administrator privileges in HitmanPro...
Moderate
Unreviewed
CVE-2021-25271
was published
May 24, 2022
An arbitrary file creation by privilege escalation vulnerability in Trend Micro Apex One, Apex...
Moderate
Unreviewed
CVE-2021-3848
was published
May 24, 2022
In the SELinux policy configured in system_app.te, there is a possible way for system_app to gain...
Moderate
Unreviewed
CVE-2021-0691
was published
May 24, 2022
An information disclosure vulnerability exists in AMD Platform Security Processor (PSP) chipset...
Moderate
Unreviewed
CVE-2021-26333
was published
May 24, 2022
Under certain conditions, SAP BusinessObjects Business Intelligence Platform (SAPUI5), versions -...
Moderate
Unreviewed
CVE-2021-33697
was published
May 24, 2022
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.14.1), RUGGEDCOM...
Moderate
Unreviewed
CVE-2021-37173
was published
May 24, 2022
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 14.5 and...
Moderate
Unreviewed
CVE-2021-1836
was published
May 24, 2022
Operational restrictions bypass vulnerability in Scheduler and MultiReport of Cybozu Garoon 4.0.0...
Moderate
Unreviewed
CVE-2021-20768
was published
May 24, 2022
There is a vulnerability in Workflow of Cybozu Garoon 4.0.0 to 5.5.0, which may allow a remote...
Moderate
Unreviewed
CVE-2021-20773
was published
May 24, 2022
Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an insufficient logging vulnerability....
Moderate
Unreviewed
CVE-2021-21568
was published
May 24, 2022
There is a privilege escalation vulnerability in Huawei ManageOne 8.0.0. External parameters of...
Moderate
Unreviewed
CVE-2021-22397
was published
May 24, 2022
The node management page in SolarWinds Orion Platform before 2020.2.5 HF1 allows an attacker to...
Moderate
Unreviewed
CVE-2021-28674
was published
May 24, 2022
Windows Partition Management Driver Elevation of Privilege Vulnerability
Moderate
Unreviewed
CVE-2021-34493
was published
May 24, 2022
Improper privilege management vulnerability in Bluetooth application prior to SMR July-2021...
Moderate
Unreviewed
CVE-2021-25429
was published
May 24, 2022
Nessus Agent 8.2.4 and earlier for Windows were found to contain multiple local privilege...
Moderate
Unreviewed
CVE-2021-20100
was published
May 24, 2022
Nessus Agent 8.2.4 and earlier for Windows were found to contain multiple local privilege...
Moderate
Unreviewed
CVE-2021-20099
was published
May 24, 2022
Adobe Connect version 11.2.1 (and earlier) is affected by an Improper access control...
Moderate
Unreviewed
CVE-2021-28579
was published
May 24, 2022
IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a local user that is in the with elevated group...
Moderate
Unreviewed
CVE-2021-29693
was published
May 24, 2022
Accellion Kiteworks before 7.3.1 allows a user with Admin privileges to escalate their privileges...
Moderate
Unreviewed
CVE-2021-31585
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API