GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,636
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
3,559 advisories
Filter by severity
AdvaBuild uses a command queue to launch certain operations. An attacker who gains access to the...
High
Unreviewed
CVE-2020-11640
was published
Jul 23, 2024
The improper privilege management vulnerability in the Zyxel WBE660S firmware version 6.70(ACGG.3...
Moderate
Unreviewed
CVE-2024-1575
was published
Jul 23, 2024
On versions before 2.1.4, after a regular user successfully logs in, they can manually make a...
Moderate
Unreviewed
CVE-2024-34457
was published
Jul 22, 2024
Potential vulnerabilities have been identified in the HP Display Control software component...
Moderate
Unreviewed
CVE-2024-24970
was published
Jul 19, 2024
Improper privilege management in Yugabyte Platform allows authenticated admin users to escalate...
Moderate
Unreviewed
CVE-2024-6908
was published
Jul 19, 2024
Philips Vue PACS does not properly assign, modify, track, or check actor privileges, creating an...
Moderate
Unreviewed
CVE-2023-40223
was published
Jul 18, 2024
Dell ECS, versions prior to 3.8.1, contain a privilege elevation vulnerability in user management...
Moderate
Unreviewed
CVE-2024-30473
was published
Jul 18, 2024
A flaw exists in Purity//FB whereby a local account is permitted to authenticate to the...
Critical
Unreviewed
CVE-2023-4976
was published
Jul 17, 2024
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). ...
High
Unreviewed
CVE-2024-21141
was published
Jul 17, 2024
An improper privilege management vulnerability allowed users to migrate private repositories...
Moderate
Unreviewed
CVE-2024-5566
was published
Jul 17, 2024
The v6.40 release of Rockwell Automation FactoryTalk® Policy Manager CVE-2021-22681 https://www...
Moderate
Unreviewed
CVE-2024-6325
was published
Jul 16, 2024
An exposure of sensitive information vulnerability exists in the Rockwell Automation FactoryTalk®...
Low
Unreviewed
CVE-2024-6326
was published
Jul 16, 2024
Improper privilege management in the installer for some Zoom Workplace Apps and SDKs for Windows...
Moderate
Unreviewed
CVE-2024-39819
was published
Jul 15, 2024
Improper Privilege Management vulnerability in NooTheme Jobmonster allows Privilege Escalation...
Critical
Unreviewed
CVE-2024-37927
was published
Jul 12, 2024
Improper Privilege Management vulnerability in IqbalRony WP User Switch allows Privilege...
High
Unreviewed
CVE-2024-37560
was published
Jul 12, 2024
Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix...
High
Unreviewed
CVE-2024-6286
was published
Jul 10, 2024
Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Virtual...
High
Unreviewed
CVE-2024-6151
was published
Jul 10, 2024
Vulnerability in Jaspersoft JasperReport Servers.This issue affects JasperReport Servers: from 8...
High
Unreviewed
CVE-2024-3325
was published
Jul 10, 2024
In DevmemIntFreeDefBackingPage of devicemem_server.c, there is a possible arbitrary code...
Moderate
Unreviewed
CVE-2024-31334
was published
Jul 9, 2024
In DevmemIntUnexportCtx of devicemem_server.c, there is a possible arbitrary code execution due...
High
Unreviewed
CVE-2024-34725
was published
Jul 9, 2024
In onCreate of multiple files, there is a possible way to trick the user into granting health...
High
Unreviewed
CVE-2024-31323
was published
Jul 9, 2024
In updateServicesLocked of AccessibilityManagerService.java, there is a possible way for an app...
Moderate
Unreviewed
CVE-2024-31322
was published
Jul 9, 2024
In setSkipPrompt of AssociationRequest.java , there is a possible way to establish a companion...
High
Unreviewed
CVE-2024-31320
was published
Jul 9, 2024
In CompanionDeviceManagerService.java, there is a possible way to pair a companion device without...
High
Unreviewed
CVE-2024-31318
was published
Jul 9, 2024
ProTip!
Advisories are also available from the
GraphQL API