GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,645
Maven
5,000+
npm
4,271
NuGet
760
pip
4,065
Pub
12
RubyGems
957
Rust
1,057
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
3,561 advisories
Filter by severity
A vulnerability in the GlobalProtect Gateway in Palo Alto Networks PAN-OS software enables an...
Moderate
Unreviewed
CVE-2024-3388
was published
Apr 10, 2024
Improper privilege management in the installer for Zoom Desktop Client for macOS before version 5...
Moderate
Unreviewed
CVE-2024-27247
was published
Apr 9, 2024
Improper privilege management in the installer for Zoom Desktop Client for Windows before version...
Moderate
Unreviewed
CVE-2024-24694
was published
Apr 9, 2024
Windows Storage Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-29052
was published
Apr 9, 2024
Microsoft Brokering File System Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-28905
was published
Apr 9, 2024
Microsoft Brokering File System Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-28904
was published
Apr 9, 2024
Microsoft Defender for IoT Elevation of Privilege Vulnerability
High
Unreviewed
CVE-2024-21324
was published
Apr 9, 2024
NVIDIA ChatRTX for Windows contains a vulnerability in the UI, where an attacker can cause...
High
Unreviewed
CVE-2024-0082
was published
Apr 9, 2024
Permission verification vulnerability in the system module.
Impact: Successful exploitation of...
Moderate
Unreviewed
CVE-2023-52543
was published
Apr 8, 2024
Vulnerability of starting activities in the background in the ActivityManagerService (AMS) module...
High
Unreviewed
CVE-2023-52716
was published
Apr 7, 2024
An issue in Secnet Security Network Intelligent AC Management System v.1.02.040 allows a local...
High
Unreviewed
CVE-2024-30977
was published
Apr 5, 2024
In pblS2mpuResume of s2mpu.c, there is a possible mitigation bypass due to a logic error in the...
High
Unreviewed
CVE-2024-29741
was published
Apr 5, 2024
Improper Privilege Management vulnerability in ExtremePacs Extreme XDS allows Collect Data as...
High
Unreviewed
CVE-2023-6522
was published
Apr 5, 2024
ykman-gui (aka YubiKey Manager GUI) before 1.2.6 on Windows, when Edge is not used, allows...
High
Unreviewed
CVE-2024-31498
was published
Apr 5, 2024
A vulnerability in Cisco Nexus Dashboard could allow an authenticated, local attacker with valid...
Moderate
Unreviewed
CVE-2024-20282
was published
Apr 3, 2024
Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an improper privilege management...
High
Unreviewed
CVE-2024-0172
was published
Apr 3, 2024
SQL Injection vulnerability in Tongtianxing Technology Co., Ltd CMSV6 v.7.31.0.2 through v.7.31.0...
Critical
Unreviewed
CVE-2024-29667
was published
Mar 29, 2024
An authentication bypass vulnerability was found in Stilog Visual Planning 8. It allows an...
Critical
Unreviewed
CVE-2023-49232
was published
Mar 29, 2024
Improper Privilege Management vulnerability in Apache Fineract.This issue affects Apache Fineract...
High
Unreviewed
CVE-2024-23537
was published
Mar 29, 2024
Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an improper privilege management...
Moderate
Unreviewed
CVE-2024-25961
was published
Mar 28, 2024
A command injection issue was discovered on Supermicro X11SSM-F, X11SAE-F, and X11SSE-F 1.66...
High
Unreviewed
CVE-2023-40289
was published
Mar 27, 2024
In some rare cases, there is a password type validation missing in Revert Password check and for...
High
Unreviewed
CVE-2023-41972
was published
Mar 26, 2024
By leveraging the vulnerability, lower-privileged users of Content Manager can manipulate Content...
High
Unreviewed
CVE-2024-1973
was published
Mar 26, 2024
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'),...
High
Unreviewed
CVE-2024-24892
was published
Mar 25, 2024
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
Moderate
Unreviewed
CVE-2024-26247
was published
Mar 23, 2024
ProTip!
Advisories are also available from the
GraphQL API