GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,873
Erlang
37
GitHub Actions
36
Go
2,520
Maven
5,000+
npm
4,160
NuGet
738
pip
3,959
Pub
12
RubyGems
946
Rust
1,027
Swift
39
Unreviewed advisories
All unreviewed
5,000+
1,336 advisories
Filter by severity
Relax-and-Recover (aka ReaR) through 2.7 creates a world-readable initrd when using GRUB_RESCUE=y...
Moderate
Unreviewed
CVE-2024-23301
was published
Jan 13, 2024
[PROBLEMTYPE] in [VENDOR] [PRODUCT] [VERSION] on [PLATFORMS] allows [ATTACKER] to [IMPACT].
Moderate
Unreviewed
CVE-2022-45793
was published
Jan 10, 2024
Insecure Permissions vulnerability in fit2cloud Cloud Explorer Lite version 1.4.1, allow local...
High
Unreviewed
CVE-2023-50612
was published
Jan 6, 2024
A feature in LXD (LP#1829071), affects the default configuration of Ubuntu Server which allows...
Moderate
Unreviewed
CVE-2023-5536
was published
Dec 12, 2023
An issue was discovered in BeyondTrust Privilege Management for Mac before 5.7. An authenticated,...
High
Unreviewed
CVE-2021-3187
was published
Dec 12, 2023
Insecure File Permissions in Support Assistant in NCP Secure Enterprise Client before 12.22 allow...
Moderate
Unreviewed
CVE-2023-28870
was published
Dec 9, 2023
Permission management vulnerability in the PMS module. Successful exploitation of this...
Critical
Unreviewed
CVE-2023-46773
was published
Dec 6, 2023
Permission management vulnerability in the module for disabling Sound Booster. Successful...
Moderate
Unreviewed
CVE-2023-6273
was published
Dec 6, 2023
Softing OPC Suite version 5.25 and before has Incorrect Access Control, allows attackers to...
High
Unreviewed
CVE-2023-37572
was published
Dec 5, 2023
In createPendingIntent of CredentialManagerUi.java, there is a possible way to access credentials...
Moderate
Unreviewed
CVE-2023-40076
was published
Dec 5, 2023
Insecure Permissions vulnerability in GL.iNet AX1800 v.3.215 and before allows a remote attacker...
Critical
Unreviewed
CVE-2023-47462
was published
Nov 29, 2023
Apache Superset has Incorrect Default Permissions
Moderate
CVE-2023-42501
was published
for
apache-superset
(pip)
Nov 27, 2023
A vulnerability was found in CSZCMS 1.3.0 and classified as critical. Affected by this issue is...
Moderate
Unreviewed
CVE-2023-6302
was published
Nov 27, 2023
In mprivacy-tools before 2.0.406g in m-privacy TightGate-Pro Server, broken Access Control on X11...
High
Unreviewed
CVE-2023-47250
was published
Nov 22, 2023
PowerProtect Agent for File System Version 19.14 and prior, contains an incorrect default...
Moderate
Unreviewed
CVE-2023-43081
was published
Nov 22, 2023
in OpenHarmony v3.2.2 and prior versions allow a local attacker get confidential information or...
High
Unreviewed
CVE-2023-3116
was published
Nov 20, 2023
in OpenHarmony v3.2.2 and prior versions allow a local attacker get confidential information...
Moderate
Unreviewed
CVE-2023-42774
was published
Nov 20, 2023
IBM InfoSphere Information Server 11.7 could allow an authenticated user to change installation...
High
Unreviewed
CVE-2023-40363
was published
Nov 18, 2023
Insecure permissions in the setNFZEnable function of Autel Robotics EVO Nano drone v1.6.5 allows...
Moderate
Unreviewed
CVE-2023-47335
was published
Nov 16, 2023
When a particular process flow is initiated, an attacker may be able to gain unauthorized...
High
Unreviewed
CVE-2023-41718
was published
Nov 15, 2023
A vulnerability has been identified in the Ivanti Secure Access Windows client, which could allow...
High
Unreviewed
CVE-2023-35080
was published
Nov 15, 2023
Incorrect default permissions in some Intel Arc RGB Controller software before version 1.06 may...
Moderate
Unreviewed
CVE-2023-32638
was published
Nov 14, 2023
Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may...
High
Unreviewed
CVE-2023-23583
was published
Nov 14, 2023
Incorrect default permissions in some Intel(R) Arc(TM) & Iris(R) Xe Graphics - WHQL - Windows...
Moderate
Unreviewed
CVE-2023-27305
was published
Nov 14, 2023
ProTip!
Advisories are also available from the
GraphQL API