GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,679
Erlang
34
GitHub Actions
26
Go
2,268
Maven
5,000+
npm
3,923
NuGet
705
pip
3,686
Pub
12
RubyGems
916
Rust
944
Swift
38
Unreviewed advisories
All unreviewed
5,000+
288 advisories
Filter by severity
An issue in modernwms v.1.0 allows an attacker view the MD5 hash of the administrator password...
High
Unreviewed
CVE-2024-57698
was published
Apr 29, 2025
Improper Preservation of Permissions vulnerability in Wikimedia Foundation MediaWiki. This...
Low
Unreviewed
CVE-2025-32696
was published
Apr 10, 2025
Improper Preservation of Permissions vulnerability in Wikimedia Foundation MediaWiki. This...
Low
Unreviewed
CVE-2025-32697
was published
Apr 10, 2025
This issue was addressed with improved permissions checking. This issue is fixed in Safari 18.4,...
High
Unreviewed
CVE-2025-31184
was published
Apr 1, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-30449
was published
Apr 1, 2025
A parsing issue in the handling of directory paths was addressed with improved path validation....
High
Unreviewed
CVE-2025-30456
was published
Apr 1, 2025
An issue in Open Panel v.0.3.4 allows a remote attacker to escalate privileges via the Fix...
High
Unreviewed
CVE-2025-25871
was published
Mar 14, 2025
An issue in dtp.ae tNexus Airport View v.2.8 allows a remote attacker to escalate privileges via...
High
Unreviewed
CVE-2025-25711
was published
Mar 12, 2025
In dhd_process_full_gscan_result of dhd_pno.c, there is a possible EoP due to an integer overflow...
High
Unreviewed
CVE-2024-56191
was published
Mar 10, 2025
In wl_notify_gscan_event of wl_cfgscan.c, there is a possible out of bounds write due to a...
High
Unreviewed
CVE-2024-56192
was published
Mar 10, 2025
Insecure permissions in TSplus Remote Access v17.30 allow attackers to retrieve a list of all...
Critical
Unreviewed
CVE-2025-26318
was published
Mar 4, 2025
An improper access control issue in the VQL shell feature in Velociraptor Versions < 0.73.4...
Low
Unreviewed
CVE-2025-0914
was published
Feb 27, 2025
Insecure Permissions vulnerability in Alvaria, Inc Unified IP Unified Director before v.7.2SP2...
Critical
Unreviewed
CVE-2024-56973
was published
Feb 14, 2025
EasyVirt DCScope <=8.6.0 and CO2Scope <=1.3.0 are vulnerable to Incorrect Access Control. This...
High
Unreviewed
CVE-2024-53355
was published
Feb 1, 2025
snowflake-sdk may incorrectly validate temporary credential cache file permissions
Moderate
CVE-2025-24791
was published
for
snowflake-sdk
(npm)
Jan 29, 2025
RuoYi vulnerable to Denial of Service by attackers with admin privileges
Moderate
CVE-2024-57439
was published
for
com.ruoyi:ruoyi
(Maven)
Jan 29, 2025
In onCreate of ChooserActivity.java, there is a possible way to bypass factory reset protections...
High
Unreviewed
CVE-2024-40672
was published
Jan 28, 2025
An issue was discovered in Couchbase Server 7.6.x through 7.6.3. A user with the...
Moderate
Unreviewed
CVE-2024-56178
was published
Jan 28, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Low
Unreviewed
CVE-2024-54516
was published
Jan 28, 2025
The issue was addressed with additional permissions checks. This issue is fixed in macOS Sequoia...
Moderate
Unreviewed
CVE-2025-24087
was published
Jan 28, 2025
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sonoma 14.7...
High
Unreviewed
CVE-2024-54557
was published
Jan 28, 2025
Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Admin Screens...
Moderate
Unreviewed
CVE-2025-21541
was published
Jan 21, 2025
Vulnerability in the Oracle Communications Order and Service Management product of Oracle...
Moderate
Unreviewed
CVE-2025-21544
was published
Jan 21, 2025
gix-worktree-state nonexclusive checkout sets executable files world-writable
Moderate
CVE-2025-22620
was published
for
gix-worktree-state
(Rust)
Jan 21, 2025
Insecure default config access in WriteFreely
High
CVE-2025-24337
was published
for
github.com/writefreely/writefreely
(Go)
Jan 20, 2025
ProTip!
Advisories are also available from the
GraphQL API