Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

189 advisories

Loading
Microsoft Bing Search Spoofing Vulnerability Moderate Unreviewed
CVE-2024-30041 was published May 14, 2024
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability Moderate Unreviewed
CVE-2024-21423 was published Feb 24, 2024
Internet Shortcut Files Security Feature Bypass Vulnerability High Unreviewed
CVE-2024-21412 was published Feb 13, 2024
Microsoft Office Remote Code Execution Vulnerability High Unreviewed
CVE-2024-20673 was published Feb 13, 2024
Windows Mark of the Web Security Feature Bypass Vulnerability Moderate Unreviewed
CVE-2024-30050 was published May 14, 2024
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability Moderate Unreviewed
CVE-2024-26163 was published Mar 15, 2024
Visual Studio Remote Code Execution Vulnerability Moderate Unreviewed
CVE-2024-30052 was published Jun 11, 2024
Mattermost Desktop App Remote Code Execution Moderate
CVE-2024-37182 was published for mattermost-desktop (npm) Jun 14, 2024
Mattermost Desktop App allows for bypassing TCC restrictions on macOS Low
CVE-2024-36287 was published for mattermost-desktop (npm) Jun 14, 2024
Jenkins Script Security Plugin has sandbox bypass vulnerability involving crafted constructor bodies High
CVE-2024-34144 was published for org.jenkins-ci.plugins:script-security (Maven) May 2, 2024
Sandbox bypass in Script Security Plugin Critical
CVE-2019-1003029 was published for org.jenkins-ci.plugins:script-security (Maven) May 13, 2022
westonsteimel
Azure CycleCloud Elevation of Privilege Vulnerability High Unreviewed
CVE-2024-38092 was published Jul 9, 2024
Windows LockDown Policy (WLDP) Security Feature Bypass Vulnerability High Unreviewed
CVE-2024-38070 was published Jul 9, 2024
BitLocker Security Feature Bypass Vulnerability Moderate Unreviewed
CVE-2024-38058 was published Jul 9, 2024
Openfind's Mail2000 has a vulnerability that allows the HttpOnly flag to be bypassed.... Moderate Unreviewed
CVE-2024-6741 was published Jul 15, 2024
Sandbox bypass in Jenkins Pipeline: Groovy Plugin Critical
CVE-2019-1003030 was published for org.jenkins-ci.plugins.workflow:workflow-cps (Maven) May 13, 2022
westonsteimel
ejs lacks certain pollution protection Moderate
CVE-2024-33883 was published for ejs (npm) Apr 28, 2024
ProTip! Advisories are also available from the GraphQL API