GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,640
Maven
5,000+
npm
4,265
NuGet
760
pip
4,060
Pub
12
RubyGems
956
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
1,201 advisories
Filter by severity
Dell Command | Intel vPro Out of Band, versions before 4.4.0, contain an arbitrary folder delete...
Low
Unreviewed
CVE-2023-23697
was published
Feb 13, 2023
Dell Command | Integration Suite for System Center, versions before 6.4.0 contain an arbitrary...
Low
Unreviewed
CVE-2023-24572
was published
Feb 13, 2023
NVIDIA GeForce Experience contains a vulnerability in the NVContainer component, where a user...
High
Unreviewed
CVE-2022-42292
was published
Feb 12, 2023
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with...
High
Unreviewed
CVE-2018-1631
was published
May 24, 2022
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with...
High
Unreviewed
CVE-2018-1633
was published
May 24, 2022
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with...
High
Unreviewed
CVE-2018-1634
was published
May 24, 2022
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with...
High
Unreviewed
CVE-2018-1632
was published
May 24, 2022
IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with...
High
Unreviewed
CVE-2018-1630
was published
May 24, 2022
NVIDIA GeForce Experience contains a vulnerability in the installer, where a user installing the...
Moderate
Unreviewed
CVE-2022-42291
was published
Feb 7, 2023
openCryptoki 2.4.1 allows local users to create or set world-writable permissions on arbitrary...
Moderate
Unreviewed
CVE-2012-4455
was published
May 17, 2022
The edit_cmd function in crontab.c in (1) cronie before 1.4.4 and (2) Vixie cron (vixie-cron)...
Low
Unreviewed
CVE-2010-0424
was published
May 2, 2022
The distcheck rule in dist-check.mk in GNU coreutils 5.2.1 through 8.1 allows local users to gain...
Moderate
Unreviewed
CVE-2009-4135
was published
May 2, 2022
fuse 2.8.5 and earlier does not properly handle when /etc/mtab cannot be updated, which allows...
Low
Unreviewed
CVE-2011-0541
was published
May 17, 2022
Link Following in Iris
High
CVE-2021-23772
was published
for
github.com/kataras/iris
(Go)
Jan 6, 2022
Zip slip directory exploit in github.com/deislabs/oras
High
CVE-2021-21272
was published
for
github.com/deislabs/oras
(Go)
Feb 15, 2022
iproute2 before 3.3.0 allows local users to overwrite arbitrary files via a symlink attack on a...
Low
Unreviewed
CVE-2012-1088
was published
May 17, 2022
A directory traversal issue was found in reposync, a part of yum-utils, where reposync fails to...
High
Unreviewed
CVE-2018-10897
was published
May 13, 2022
The LXC driver (lxc/lxc_driver.c) in libvirt 1.0.1 through 1.2.1 allows local users to (1) delete...
Moderate
Unreviewed
CVE-2013-6456
was published
May 17, 2022
Pterodactyl Wings contains UNIX Symbolic Link (Symlink) Following resulting in deletion of files and directories on the host system
Critical
CVE-2023-25168
was published
for
github.com/pterodactyl/wings
(Go)
Feb 10, 2023
The default event handling scripts in Automatic Bug Reporting Tool (ABRT) allow local users to...
High
Unreviewed
CVE-2015-1869
was published
May 24, 2022
There is an open race window when writing output in the following utilities in GNU binutils...
Moderate
Unreviewed
CVE-2021-20197
was published
May 24, 2022
Privilege escalation flaws were found in the Red Hat initialization scripts of PostgreSQL. An...
High
Unreviewed
CVE-2017-15097
was published
May 24, 2022
The send_data_to_stdout function in prnt/hpijs/hpcupsfax.cpp in HP Linux Imaging and Printing ...
Low
Unreviewed
CVE-2011-2722
was published
May 17, 2022
nagios.upgrade_to_v3.sh, as distributed by Red Hat and possibly others for Nagios Core 3.4.4, 3.5...
Moderate
Unreviewed
CVE-2013-2029
was published
May 17, 2022
The abrt-action-install-debuginfo-to-abrt-cache help program in Automatic Bug Reporting Tool ...
Low
Unreviewed
CVE-2015-5273
was published
May 17, 2022
ProTip!
Advisories are also available from the
GraphQL API