GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
44
GitHub Actions
45
Go
3,196
Maven
5,000+
npm
5,000+
NuGet
864
pip
4,483
Pub
12
RubyGems
992
Rust
1,186
Swift
51
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
80 advisories
Filter by severity
Software installed and run as a non-privileged user may conduct improper GPU system calls to gain...
Moderate
Unreviewed
CVE-2026-21736
was published
Mar 9, 2026
In dumpBitmapsProto of ActivityManagerService.java, there is a possible way for an app to access...
High
Unreviewed
CVE-2026-0047
was published
Mar 2, 2026
RTU500 web interface: An unprivileged user can read user management information. The information...
Moderate
Unreviewed
CVE-2026-1772
was published
Feb 24, 2026
Missing access permissions checks in M-Files Client before 23.5.12598.0 allows elevation of...
High
Unreviewed
CVE-2023-2480
was published
May 25, 2023
Missing access permissions checks
in the M-Files server before 23.11.13156.0 allow attackers to...
Moderate
Unreviewed
CVE-2023-6189
was published
Nov 22, 2023
Dell Update Package (DUP) Framework, versions 23.12.00 through 24.12.00, contains an Improper...
High
Unreviewed
CVE-2026-23857
was published
Feb 12, 2026
Improper handling of insufficient permissions or privileges in Windows Error Reporting allows an...
High
Unreviewed
CVE-2026-20817
was published
Jan 13, 2026
An issue in Automai Director v.25.2.0 allows a remote attacker to escalate privileges
Critical
Unreviewed
CVE-2025-46066
was published
Jan 12, 2026
APTIOV contains a vulnerability in BIOS where a user may cause “Improper Handling of Insufficient...
High
Unreviewed
CVE-2025-58770
was published
Dec 12, 2025
Insufficient permission validation in Checkmk versions prior to 2.4.0p17 and 2.3.0p42 allow low...
Moderate
Unreviewed
CVE-2025-64997
was published
Dec 18, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-43527
was published
Dec 12, 2025
Insufficient permission validation on multiple REST API endpoints in Checkmk 2.2.0, 2.3.0, and 2...
Moderate
Unreviewed
CVE-2025-58121
was published
Nov 18, 2025
Insufficient permission validation in Checkmk 2.4.0 before version 2.4.0p16 allows low-privileged...
Moderate
Unreviewed
CVE-2025-58122
was published
Nov 18, 2025
Software installed and run as a non-privileged user may conduct improper GPU system calls to gain...
High
Unreviewed
CVE-2025-58410
was published
Nov 17, 2025
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.6.3, macOS...
High
Unreviewed
CVE-2023-42931
was published
Mar 28, 2024
An attacker who successfully exploited these vulnerabilities could cause enable command execution...
High
Unreviewed
CVE-2024-12430
was published
Jan 7, 2025
The issue was addressed with additional permissions checks. This issue is fixed in macOS Sequoia...
High
Unreviewed
CVE-2025-30453
was published
May 13, 2025
there is a possible way to bypass due to a logic error in the code. This could lead to local...
High
Unreviewed
CVE-2024-29748
was published
Apr 5, 2024
Dell Repository Manager (DRM), versions 3.4.7 and 3.4.8, contains an Improper Handling of...
High
Unreviewed
CVE-2025-45376
was published
Sep 29, 2025
anji-plus AJ-Report is affected by an authentication bypass vulnerability. A remote and...
Critical
Unreviewed
CVE-2024-7314
was published
Aug 2, 2024
Vulnerability of improper access permission in the process management module
Impact: Successful...
Moderate
Unreviewed
CVE-2025-27521
was published
Mar 4, 2025
An improper permission handling vulnerability was reported in Lenovo PC Manager that could allow...
Moderate
Unreviewed
CVE-2025-2503
was published
May 30, 2025
Improper handling of insufficient permissions or privileges in Windows Cloud Files Mini Filter...
High
Unreviewed
CVE-2025-50170
was published
Aug 12, 2025
Kernel software installed and running inside an untrusted/rich execution environment (REE) could...
Critical
Unreviewed
CVE-2025-6573
was published
Aug 9, 2025
Software installed and run as a non-privileged user may conduct ptrace system calls to issue...
High
Unreviewed
CVE-2025-8109
was published
Aug 4, 2025
ProTip!
Advisories are also available from the
GraphQL API