GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,201 advisories
Filter by severity
Dell Command | Update, Dell Update, and Alienware Update versions 4.8.0 and prior contain an...
High
Unreviewed
CVE-2023-28065
was published
Jun 23, 2023
Minecraft through 1.19 and 1.20 pre-releases before 7 (Java) allow arbitrary file overwrite, and...
High
Unreviewed
CVE-2023-33245
was published
May 30, 2023
imapsync through 2.229 uses predictable paths under /tmp and /var/tmp in its default mode of...
Moderate
Unreviewed
CVE-2023-34204
was published
May 30, 2023
Wacom Tablet Driver installer prior to 6.4.2-1 (for macOS) contains an improper link resolution...
High
Unreviewed
CVE-2023-27529
was published
May 25, 2023
Docker Desktop for Windows before 4.6.0 allows attackers to overwrite any file through a symlink...
High
Unreviewed
CVE-2022-34292
was published
Apr 27, 2023
Docker Desktop before 4.6.0 on Windows allows attackers to delete any file through the hyperv...
High
Unreviewed
CVE-2022-31647
was published
Apr 27, 2023
The SolarWinds Platform was susceptible to the Local Privilege Escalation Vulnerability. This...
High
Unreviewed
CVE-2022-47505
was published
Apr 21, 2023
An NTFS Junction condition exists in the Qualys Cloud Agent
for Windows platform in versions...
Moderate
Unreviewed
CVE-2023-28141
was published
Apr 18, 2023
An Improper Link Resolution Before File Access vulnerability in console port access of Juniper...
Moderate
Unreviewed
CVE-2023-28972
was published
Apr 18, 2023
Symlink Traversal vulnerability in Belkin N900 due to misconfiguration in the SMB service.
High
Unreviewed
CVE-2013-4655
was published
May 24, 2022
OpenVPN Connect installer for macOS version 3.2.6 and older may corrupt system critical files it...
High
Unreviewed
CVE-2020-15075
was published
May 24, 2022
Mumble before 1.3.4 allows remote code execution if a victim navigates to a crafted URL on a...
High
Unreviewed
CVE-2021-27229
was published
May 24, 2022
OnCommand Unified Manager Core Package versions prior to 5.2.5 may disclose sensitive account...
Moderate
Unreviewed
CVE-2020-8585
was published
May 24, 2022
A vulnerability in the Cisco Application Framework component of the Cisco IOx application...
Moderate
Unreviewed
CVE-2020-3237
was published
May 24, 2022
A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an...
Moderate
Unreviewed
CVE-2020-3223
was published
May 24, 2022
Avira Antivirus before 5.0.2003.1821 on Windows allows privilege escalation or a denial of...
High
Unreviewed
CVE-2020-12254
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Windows AppX Deployment Server improperly...
High
Unreviewed
CVE-2019-1483
was published
May 24, 2022
Dell Command Update versions prior to 3.1 contain an Arbitrary File Deletion Vulnerability. A...
Moderate
Unreviewed
CVE-2019-3750
was published
May 24, 2022
The quarantine restoration function in Total Defense Anti-virus 11.5.2.28 is vulnerable to...
Moderate
Unreviewed
CVE-2019-18645
was published
May 24, 2022
It was found that rpm did not properly handle RPM installations when a destination path was a...
High
Unreviewed
CVE-2017-7500
was published
May 24, 2022
An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly...
High
Unreviewed
CVE-2019-1339
was published
May 24, 2022
A denial of service vulnerability exists when Windows improperly handles hard links, aka ...
High
Unreviewed
CVE-2019-1317
was published
May 24, 2022
A vulnerability in the filesystem of Cisco IOS XE Software could allow an authenticated, local...
High
Unreviewed
CVE-2019-12672
was published
May 24, 2022
An issue was discovered in Avira Free Security Suite 10. The permissive access rights on the...
High
Unreviewed
CVE-2019-11396
was published
May 24, 2022
UploaderService in SnagIT 2019.1.2 allows elevation of privilege by placing an invalid...
High
Unreviewed
CVE-2019-13382
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API