GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
987 advisories
Filter by severity
Insufficient access control in the firmware of the Intel(R) Ethernet 700 Series Controllers...
Moderate
Unreviewed
CVE-2020-8692
was published
May 24, 2022
Improper access control in the Intel(R) Visual Compute Accelerator 2, all versions, may allow a...
Moderate
Unreviewed
CVE-2020-8676
was published
May 24, 2022
Azure Sphere Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2020-16981, CVE...
Moderate
Unreviewed
CVE-2020-16993
was published
May 24, 2022
A vulnerability in the FTP inspection engine of Cisco Adaptive Security Appliance (ASA) Software...
Moderate
Unreviewed
CVE-2020-3564
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc)...
Moderate
Unreviewed
CVE-2020-16940
was published
May 24, 2022
A logic error in Nextcloud Server 19.0.0 caused a privilege escalation allowing malicious users...
Moderate
Unreviewed
CVE-2020-8223
was published
May 24, 2022
A vulnerability in Cisco IOS XE Wireless Controller Software for Cisco Catalyst 9800 Series...
Moderate
Unreviewed
CVE-2020-3418
was published
May 24, 2022
In onCreate of RequestPermissionActivity.java, there is a possible tapjacking vector due to an...
Moderate
Unreviewed
CVE-2020-0386
was published
May 24, 2022
In the Accessibility service, there is a possible permission bypass due to an unsafe...
Moderate
Unreviewed
CVE-2020-0263
was published
May 24, 2022
VMware Fusion (11.x) contains a privilege escalation vulnerability due to the way it allows...
Moderate
Unreviewed
CVE-2020-3980
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles...
Moderate
Unreviewed
CVE-2020-1169
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS)...
Moderate
Unreviewed
CVE-2020-1115
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector...
Moderate
Unreviewed
CVE-2020-1133
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector...
Moderate
Unreviewed
CVE-2020-1130
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Microsoft Store Runtime improperly...
Moderate
Unreviewed
CVE-2020-1146
was published
May 24, 2022
An elevation of privilege vulnerability exists when Windows improperly handles calls to Win32k...
Moderate
Unreviewed
CVE-2020-1152
was published
May 24, 2022
An elevation of privilege vulnerability exists in the way that the StartTileData.dll handles file...
Moderate
Unreviewed
CVE-2020-1159
was published
May 24, 2022
An elevation of privilege vulnerability exists in the way that the ssdpsrv.dll handles objects in...
Moderate
Unreviewed
CVE-2020-1052
was published
May 24, 2022
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory,...
Moderate
Unreviewed
CVE-2020-1053
was published
May 24, 2022
An elevation of privilege vulnerability exists when the Shell infrastructure component improperly...
Moderate
Unreviewed
CVE-2020-1098
was published
May 24, 2022
A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to...
Moderate
Unreviewed
CVE-2020-0890
was published
May 24, 2022
An AEM java servlet in AEM versions 6.5.5.0 (and below) and 6.4.8.1 (and below) executes with the...
Moderate
Unreviewed
CVE-2020-9733
was published
May 24, 2022
Privilege Escalation vulnerability in the installer in McAfee Agent (MA) for Windows prior to 5.6...
Moderate
Unreviewed
CVE-2020-7311
was published
May 24, 2022
IBM API Connect's API Manager 2018.4.1.0 through 2018.4.1.12 is vulnerable to privilege...
Moderate
Unreviewed
CVE-2020-4638
was published
May 24, 2022
Improper Privilege Management vulnerability exists in Schneider Electric Modbus Serial Driver ...
Moderate
Unreviewed
CVE-2020-7523
was published
May 24, 2022
ProTip!
Advisories are also available from the
GraphQL API