GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,638
Maven
5,000+
npm
4,264
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,056
Swift
45
Unreviewed advisories
All unreviewed
5,000+
2,420 advisories
Filter by severity
A vulnerability classified as critical has been found in Shenzhen Youkate Industrial Facial Love...
High
Unreviewed
CVE-2023-6099
was published
Nov 13, 2023
A CWE-269: Improper Privilege Management vulnerability exists in Telit Cinterion BGS5, Telit...
High
Unreviewed
CVE-2023-47611
was published
Nov 10, 2023
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2023-36024
was published
Nov 10, 2023
The AppsAnywhere macOS client-privileged helper can be tricked into executing arbitrary commands...
High
Unreviewed
CVE-2023-41138
was published
Nov 9, 2023
The multi-screen interaction module has a vulnerability in permission management. Successful...
High
Unreviewed
CVE-2023-46758
was published
Nov 8, 2023
Security vulnerability in the face unlock module. Successful exploitation of this vulnerability...
High
Unreviewed
CVE-2023-46771
was published
Nov 8, 2023
In versions of FreeBSD 13-RELEASE before 13-RELEASE-p5, under certain circumstances the cap_net...
High
Unreviewed
CVE-2023-5978
was published
Nov 8, 2023
A privilege escalation flaw was found in the node restriction admission plugin of the kubernetes...
High
Unreviewed
CVE-2023-5408
was published
Nov 2, 2023
Certain versions of HP PC Hardware Diagnostics Windows are potentially vulnerable to elevation of...
High
Unreviewed
CVE-2023-5739
was published
Oct 31, 2023
In Activity Manager, there is a possible background activity launch due to a logic error in the...
High
Unreviewed
CVE-2023-21396
was published
Oct 30, 2023
In Setup Wizard, there is a possible way to save a WiFi network due to an insecure default value....
High
Unreviewed
CVE-2023-21397
was published
Oct 30, 2023
The installer (aka openvpn-client-installer) in Securepoint SSL VPN Client before 2.0.40 allows...
High
Unreviewed
CVE-2023-47101
was published
Oct 30, 2023
In System UI, there is a possible factory reset protection bypass due to a logic error in the...
High
Unreviewed
CVE-2023-21374
was published
Oct 30, 2023
In ActivityStarter, there is a possible background activity launch due to an unsafe PendingIntent...
High
Unreviewed
CVE-2023-21343
was published
Oct 30, 2023
Management Central as part of IBM i 7.2, 7.3, 7.4, and 7.5 Navigator contains a local privilege...
High
Unreviewed
CVE-2023-40686
was published
Oct 29, 2023
Management Central as part of IBM i 7.2, 7.3, 7.4, and 7.5 Navigator contains a local privilege...
High
Unreviewed
CVE-2023-40685
was published
Oct 29, 2023
A privilege elevation vulnerability was reported in the Lenovo Vantage SystemUpdate plugin...
High
Unreviewed
CVE-2022-3701
was published
Oct 27, 2023
A local privilege escalation vulnerability in SonicWall Directory Services Connector Windows MSI...
High
Unreviewed
CVE-2023-44219
was published
Oct 27, 2023
VMware Tools contains a local privilege escalation vulnerability. A malicious actor with local...
High
Unreviewed
CVE-2023-34057
was published
Oct 27, 2023
The application suffers from a privilege escalation vulnerability. A
user with read...
High
Unreviewed
CVE-2023-41966
was published
Oct 26, 2023
Under certain conditions, Nessus Network Monitor could allow a low privileged user to escalate...
High
Unreviewed
CVE-2023-5622
was published
Oct 26, 2023
HP Print and Scan Doctor for Windows may potentially be vulnerable to escalation of privilege. HP...
High
Unreviewed
CVE-2023-5671
was published
Oct 25, 2023
An authenticated XCC user can change permissions for any user through a crafted API command.
High
Unreviewed
CVE-2023-4607
was published
Oct 25, 2023
The leakage of the client secret in Tokueimaru_waiting Line 13.6.1 allows attackers to obtain the...
High
Unreviewed
CVE-2023-39732
was published
Oct 25, 2023
The leakage of the client secret in TonTon-Tei Line v13.6.1 allows attackers to obtain the...
High
Unreviewed
CVE-2023-39733
was published
Oct 25, 2023
ProTip!
Advisories are also available from the
GraphQL API