GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
36 advisories
Filter by severity
Software installed and run as a non-privileged user may conduct improper GPU system calls to...
High
Unreviewed
CVE-2024-43702
was published
Nov 30, 2024
Dell SupportAssist for Business PCs version 3.4.0 contains a local Authentication Bypass...
Moderate
Unreviewed
CVE-2023-39249
was published
Oct 17, 2024
Improper Validation of Specified Quantity in Input vulnerability in OpenText OpenText Application...
Low
Unreviewed
CVE-2024-4211
was published
Oct 16, 2024
Improper Validation of Specified Quantity in Input vulnerability in OpenText OpenText Application...
Low
Unreviewed
CVE-2024-4692
was published
Oct 16, 2024
Certain switch models from PLANET Technology have an SSH service that improperly handles...
High
Unreviewed
CVE-2024-8451
was published
Sep 30, 2024
anji-plus AJ-Report is affected by an authentication bypass vulnerability. A remote and...
Critical
Unreviewed
CVE-2024-7314
was published
Aug 2, 2024
Improper handling of insufficient permissions or privileges vulnerability exists in ajaxterm...
High
Unreviewed
CVE-2024-36451
was published
Jul 10, 2024
Lack of privilege checking when processing a redaction in Conduit versions v0.6.0 and lower,...
High
Unreviewed
CVE-2024-6302
was published
Jun 25, 2024
Improper permission settings for mobile applications (com.transsion.carlcare) may lead to user...
Critical
Unreviewed
CVE-2024-5163
was published
Jun 17, 2024
Veeam Backup Enterprise Manager allows high-privileged users to read backup session logs.
Low
Unreviewed
CVE-2024-29852
was published
May 23, 2024
In JetBrains TeamCity before 2024.03.1 commit status publisher didn't check project scope of the...
Moderate
Unreviewed
CVE-2024-35301
was published
May 16, 2024
A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in...
High
Unreviewed
CVE-2024-27837
was published
May 14, 2024
In onCreate of WifiDialogActivity.java, there is a possible way to bypass the...
High
Unreviewed
CVE-2024-23704
was published
May 7, 2024
In Foxit PDF Reader and Editor before 2024.1, Local Privilege Escalation could occur during...
High
Unreviewed
CVE-2024-32488
was published
Apr 15, 2024
Vulnerability of package name verification being bypassed in the HwIms module.
Impact: Successful...
High
Unreviewed
CVE-2023-52537
was published
Apr 8, 2024
Vulnerability of insufficient permission verification in the app management module.
Impact:...
High
Unreviewed
CVE-2024-30418
was published
Apr 7, 2024
there is a possible way to bypass due to a logic error in the code. This could lead to local...
High
Unreviewed
CVE-2024-29748
was published
Apr 5, 2024
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.6.3, macOS...
High
Unreviewed
CVE-2023-42931
was published
Mar 28, 2024
In some rare cases, there is a password type validation missing in Revert Password check and for...
High
Unreviewed
CVE-2023-41972
was published
Mar 26, 2024
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before....
High
Unreviewed
CVE-2024-22078
was published
Mar 20, 2024
An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. The...
Moderate
Unreviewed
CVE-2024-22077
was published
Mar 20, 2024
A vulnerability was found in 3Scale, when used with Keycloak 15 (or RHSSO 7.5.0) and superiors....
Moderate
Unreviewed
CVE-2024-0560
was published
Feb 28, 2024
In OPPO Usercenter Credit SDK, there's a possible escalation of privilege due to loose permission...
Critical
Unreviewed
CVE-2024-1608
was published
Feb 20, 2024
Dell Power Manager, versions prior to 3.14, contain an Improper Authorization vulnerability in...
High
Unreviewed
CVE-2023-25543
was published
Feb 6, 2024
Missing access permissions checks
in the M-Files server before 23.11.13156.0 allow attackers...
Moderate
Unreviewed
CVE-2023-6189
was published
Nov 22, 2023
ProTip!
Advisories are also available from the
GraphQL API