GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,822 advisories
Filter by severity
A non-admin user with user management permission can escalate his privilege to admin user via...
High
Unreviewed
CVE-2022-22572
was published
Apr 12, 2022
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability....
Moderate
Unreviewed
CVE-2021-36290
was published
Apr 9, 2022
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability....
Moderate
Unreviewed
CVE-2021-36293
was published
Apr 9, 2022
The HTTP interface of Synaman v5.1 and below was discovered to allow authenticated attackers to...
High
Unreviewed
CVE-2022-26251
was published
Apr 7, 2022
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE)...
Moderate
Unreviewed
CVE-2022-20782
was published
Apr 7, 2022
Insufficient policy enforcement in Installer in Google Chrome on Windows prior to 99.0.4844.51...
High
Unreviewed
CVE-2022-0799
was published
Apr 6, 2022
An issue was discovered in Softwarebuero Zauner ARC 4.2.0.4., that allows attackers to escalate...
High
Unreviewed
CVE-2021-45891
was published
Apr 6, 2022
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from...
High
Unreviewed
CVE-2022-26894
was published
Apr 6, 2022
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from...
High
Unreviewed
CVE-2022-26891
was published
Apr 6, 2022
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from...
High
Unreviewed
CVE-2022-26912
was published
Apr 6, 2022
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from...
High
Unreviewed
CVE-2022-24475
was published
Apr 6, 2022
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from...
High
Unreviewed
CVE-2022-26908
was published
Apr 6, 2022
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from...
High
Unreviewed
CVE-2022-26909
was published
Apr 6, 2022
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from...
High
Unreviewed
CVE-2022-26895
was published
Apr 6, 2022
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from...
High
Unreviewed
CVE-2022-26900
was published
Apr 6, 2022
Improper handling of permissions of a shared memory region can lead to memory corruption in...
High
Unreviewed
CVE-2021-1942
was published
Apr 2, 2022
IBM SterlingPartner Engagement Manager 6.2.0 could allow a malicious user to elevate their...
Moderate
Unreviewed
CVE-2022-22328
was published
Apr 2, 2022
In PermissionController, there is a possible way to delete some local files due to an unsafe...
High
Unreviewed
CVE-2021-39746
was published
Mar 31, 2022
In Bubbles, there is a possible way to interfere with Bubbles due to a permissions bypass. This...
High
Unreviewed
CVE-2021-39752
was published
Mar 31, 2022
In Bluetooth, there is a possible way to access the a2dp audio control switch due to a missing...
High
Unreviewed
CVE-2021-39772
was published
Mar 31, 2022
In Telecomm, there is a possible way to determine whether an app is installed, without query...
Moderate
Unreviewed
CVE-2021-39778
was published
Mar 31, 2022
In Telephony, there is a possible unauthorized modification of the PLMN SIM file due to a missing...
High
Unreviewed
CVE-2021-39782
was published
Mar 31, 2022
In rcsservice, there is a possible way to modify TTY mode due to a missing permission check. This...
High
Unreviewed
CVE-2021-39783
was published
Mar 31, 2022
In CellBroadcastReceiver, there is a possible path to enable specific cellular features due to a...
High
Unreviewed
CVE-2021-39784
was published
Mar 31, 2022
In SmsController, there is a possible information disclosure due to a permissions bypass. This...
High
Unreviewed
CVE-2021-39781
was published
Mar 31, 2022
ProTip!
Advisories are also available from the
GraphQL API