GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
3,834 advisories
Filter by severity
An error was found in the X-Pack Security 5.3.0 to 5.5.2 privilege enforcement. If a user has...
Moderate
Unreviewed
CVE-2017-8447
was published
May 13, 2022
Vulnerability in the Java Advanced Management Console component of Oracle Java SE (subcomponent:...
High
Unreviewed
CVE-2017-10104
was published
May 13, 2022
Vulnerability in the Primavera P6 Enterprise Project Portfolio Management component of Oracle...
Moderate
Unreviewed
CVE-2017-10046
was published
May 13, 2022
An Improper Privilege Management issue was discovered in Fuji Electric Monitouch V-SFT versions...
Moderate
Unreviewed
CVE-2017-9662
was published
May 13, 2022
GitLab Community Edition (CE) and Enterprise Edition (EE) before 9.0.11, 9.1.8, 9.2.8 allow an...
Moderate
Unreviewed
CVE-2017-11438
was published
May 13, 2022
An Improper Access Control issue was discovered in Cambium Networks ePMP. After a valid user has...
Moderate
Unreviewed
CVE-2017-7918
was published
May 13, 2022
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to 250 and CAPI...
Moderate
Unreviewed
CVE-2016-8219
was published
May 13, 2022
In Open Ticket Request System (OTRS) 3.3.x through 3.3.16, 4.x through 4.0.23, and 5.x through 5...
High
Unreviewed
CVE-2017-9324
was published
May 13, 2022
Foreman since version 1.5 is vulnerable to an incorrect authorization check due to which users...
High
Unreviewed
CVE-2017-7505
was published
May 13, 2022
An issue was discovered in Personify360 e-Business 7.5.2 through 7.6.1. When going to the /TabId...
Critical
Unreviewed
CVE-2017-7312
was published
May 13, 2022
Elastic X-Pack Security versions 5.0.0 to 5.4.0 contain a privilege escalation bug in the run_as...
High
Unreviewed
CVE-2017-8438
was published
May 13, 2022
Honeywell Intermec PM23, PM42, PM43, PC23, PC43, PD43, and PC42 industrial printers before 10.11...
High
Unreviewed
CVE-2017-5671
was published
May 13, 2022
Firejail before 0.9.44.4, when running a bandwidth command, allows local users to gain root...
High
Unreviewed
CVE-2017-5207
was published
May 13, 2022
An issue was discovered in OxygenOS before 4.0.3 for OnePlus 3 and 3T. The attacker can...
Critical
Unreviewed
CVE-2017-5624
was published
May 13, 2022
Firejail before 0.9.44.6 and 0.9.38.x LTS before 0.9.38.10 LTS does not comprehensively address...
High
Unreviewed
CVE-2017-5940
was published
May 13, 2022
The UrbanGo Membership plugin for WordPress is vulnerable to privilege escalation in versions up...
Critical
Unreviewed
CVE-2025-3278
was published
Apr 19, 2025
vRealize Operations (vROps) contains a privilege escalation vulnerability. VMware has evaluated...
High
Unreviewed
CVE-2022-31707
was published
Dec 21, 2022
Some Honor products are affected by incorrect privilege assignment vulnerability, successful...
High
Unreviewed
CVE-2023-51435
was published
Dec 29, 2023
The tested version of Dominion Voting Systems ImageCast X has a Terminal Emulator application...
High
Unreviewed
CVE-2022-1741
was published
Jun 25, 2022
Some smartphones have configuration issues. Successful exploitation of this vulnerability may...
Critical
Unreviewed
CVE-2022-46327
was published
Dec 20, 2022
Omnissa Horizon Client for Windows contains an LPE Vulnerability. A malicious actor with local...
High
Unreviewed
CVE-2025-25230
was published
Apr 17, 2025
An issue in Erick xmall v.1.1 and before allows a remote attacker to escalate privileges via the...
Critical
Unreviewed
CVE-2025-28399
was published
Apr 15, 2025
Rancher Remote Code Execution via Cluster/Node Drivers
Critical
CVE-2024-22036
was published
for
github.com/rancher/rancher
(Go)
Oct 25, 2024
Rancher allows privilege escalation in Windows nodes due to Insecure Access Control Lists
Critical
CVE-2023-32197
was published
for
github.com/rancher/rancher
(Go)
Oct 25, 2024
The aufs module for the Linux kernel 3.x and 4.x does not properly restrict the mount namespace,...
High
Unreviewed
CVE-2016-2853
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API