GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
40
GitHub Actions
40
Go
2,974
Maven
5,000+
npm
4,621
NuGet
788
pip
4,317
Pub
12
RubyGems
984
Rust
1,131
Swift
49
Unreviewed advisories
All unreviewed
5,000+
130 advisories
Filter by severity
MacroHub developed by GIGABYTE has a Local Privilege Escalation vulnerability. Due to the...
High
Unreviewed
CVE-2026-0870
was published
Feb 9, 2026
A vulnerability in Brocade Fabric OS versions before 9.2.1c2 could allow an administrator-level...
High
Unreviewed
CVE-2025-58383
was published
Feb 3, 2026
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 could allow an...
High
Unreviewed
CVE-2025-36184
was published
Jan 31, 2026
Improper access control in the WCF endpoint in Edgemo (now owned by Danoffice IT) Local Admin...
High
Unreviewed
CVE-2026-1680
was published
Jan 30, 2026
HP ThinPro 8.1 System management application failed to verify user's true id. HP has released HP...
High
Unreviewed
CVE-2025-43017
was published
Oct 28, 2025
Skipper is vulnerable to arbitrary code execution through lua filters
High
CVE-2026-23742
was published
for
github.com/zalando/skipper
(Go)
Jan 16, 2026
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.4)....
High
Unreviewed
CVE-2025-40942
was published
Jan 13, 2026
The NPort 6100-G2/6200-G2 Series is affected by an execution with unnecessary privileges...
High
Unreviewed
CVE-2025-1977
was published
Dec 31, 2025
Versa SASE Client for Windows versions released between 7.8.7 and 7.9.4 contain a local privilege...
High
Unreviewed
CVE-2025-34290
was published
Dec 20, 2025
The vulnerability affects Ignition SCADA applications where Python
scripting is utilized for...
High
Unreviewed
CVE-2025-13911
was published
Dec 18, 2025
A vulnerability exists in multiple Radiometer products that allow an attacker with physical...
High
Unreviewed
CVE-2025-14096
was published
Dec 17, 2025
Execution with Unnecessary Privileges vulnerability in Nebim Neyir Computer Industry and Services...
High
Unreviewed
CVE-2025-13506
was published
Dec 12, 2025
In sendCommand of MediaSessionRecord.java, there is a possible way to launch the foreground...
High
Unreviewed
CVE-2025-48573
was published
Dec 8, 2025
Dell Display and Peripheral Manager, versions prior to 2.1.2.12, contains an Execution with...
High
Unreviewed
CVE-2025-46430
was published
Nov 10, 2025
IBM Db2 12.1.0 through 12.1.3 for Linux, UNIX and Windows (includes Db2 Connect Server) under...
High
Unreviewed
CVE-2025-36186
was published
Nov 7, 2025
A maliciously crafted file, when executed on the victim's machine, can lead to privilege...
High
Unreviewed
CVE-2025-10885
was published
Nov 6, 2025
Nagios XI versions prior to 5.8.7 used a temporary directory for Highcharts exports with overly...
High
Unreviewed
CVE-2021-47700
was published
Oct 31, 2025
Nagios XI versions prior to 5.5.7 contain a privilege escalation vulnerability in the MRTG...
High
Unreviewed
CVE-2018-25123
was published
Oct 31, 2025
Dell Command Monitor (DCM), versions prior to 10.12.3.28, contains an Execution with Unnecessary...
High
Unreviewed
CVE-2025-43990
was published
Nov 5, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.4, macOS...
High
Unreviewed
CVE-2024-23299
was published
Jun 10, 2024
The www-data user can elevate its privileges because sudo is configured to allow the execution of...
High
Unreviewed
CVE-2024-28139
was published
Dec 11, 2024
IBM Security Verify Access Docker 10.0.0 through 10.0.6 could allow a local user to escalate...
High
Unreviewed
CVE-2024-35141
was published
Dec 19, 2024
Attackers with local access to the medical office computer can
escalate their Windows user...
High
Unreviewed
CVE-2024-50590
was published
Nov 8, 2024
IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 could allow a local user to obtain...
High
Unreviewed
CVE-2023-30998
was published
Jun 27, 2024
IBM Security Verify Access Docker 10.0.0 through 10.0.6 could allow a local user to escalate...
High
Unreviewed
CVE-2024-35142
was published
May 31, 2024
ProTip!
Advisories are also available from the
GraphQL API