GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,743
Erlang
35
GitHub Actions
29
Go
2,315
Maven
5,000+
npm
3,949
NuGet
711
pip
3,729
Pub
12
RubyGems
920
Rust
965
Swift
38
Unreviewed advisories
All unreviewed
5,000+
1,277 advisories
Filter by severity
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia...
Moderate
Unreviewed
CVE-2025-24140
was published
Jan 28, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
High
Unreviewed
CVE-2025-24107
was published
Jan 28, 2025
This issue was addressed with improved message validation. This issue is fixed in macOS Sequoia...
Critical
Unreviewed
CVE-2025-24135
was published
Jan 28, 2025
A use after free issue was addressed with improved memory management. This issue is fixed in...
High
Unreviewed
CVE-2025-24085
was published
Jan 28, 2025
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS...
Critical
Unreviewed
CVE-2025-24093
was published
Jan 28, 2025
Local privilege escalation in G DATA Security Client due to incorrect assignment of privileges to...
High
Unreviewed
CVE-2025-0543
was published
Jan 25, 2025
In Thermo Fisher Scientific Xcalibur before 4.7 SP1 and Thermo Foundation Instrument Control...
High
Unreviewed
CVE-2024-55957
was published
Jan 22, 2025
Improper handling of case sensitivity in Jenkins OpenId Connect Authentication Plugin
High
CVE-2025-24399
was published
for
org.jenkins-ci.plugins:oic-auth
(Maven)
Jan 22, 2025
Cache confusion in Jenkins Eiffel Broadcaster Plugin
Moderate
CVE-2025-24400
was published
for
com.axis.jenkins.plugins.eiffel:eiffel-broadcaster
(Maven)
Jan 22, 2025
A vulnerability in the REST API of Cisco Meeting Management could allow a remote, authenticated...
Critical
Unreviewed
CVE-2025-20156
was published
Jan 22, 2025
In checkKeyIntentParceledCorrectly of AccountManagerService.java, there is a possible way to...
High
Unreviewed
CVE-2024-49744
was published
Jan 22, 2025
In multiple locations, there is a possible failure to persist permissions settings due to...
High
Unreviewed
CVE-2024-49735
was published
Jan 22, 2025
In applyTaskFragmentOperation of WindowOrganizerController.java, there is a possible way to...
High
Unreviewed
CVE-2024-49737
was published
Jan 22, 2025
In onCreate of NotificationAccessConfirmationActivity.java , there is a possible way to hide an...
High
Unreviewed
CVE-2024-49742
was published
Jan 22, 2025
In onClick of MainClear.java, there is a possible way to trigger factory reset without explicit...
High
Unreviewed
CVE-2024-49736
was published
Jan 22, 2025
In multiple locations, there is a possible bypass of user consent to enabling new Bluetooth HIDs...
High
Unreviewed
CVE-2024-34730
was published
Jan 22, 2025
In multiple locations, there is a possible way to obtain access to a folder due to a tapjacking...
High
Unreviewed
CVE-2024-43765
was published
Jan 22, 2025
In multiple functions of CompanionDeviceManagerService.java, there is a possible way to grant...
High
Unreviewed
CVE-2024-49732
was published
Jan 22, 2025
In setActualDefaultRingtoneUri of RingtoneManager.java, there is a possible way to bypass content...
High
Unreviewed
CVE-2023-40132
was published
Jan 22, 2025
In multiple functions of AccountManagerService.java, there is a possible way to bypass...
High
Unreviewed
CVE-2024-49724
was published
Jan 22, 2025
Vulnerability in the Oracle Analytics Desktop product of Oracle Analytics (component: Install). ...
High
Unreviewed
CVE-2025-21532
was published
Jan 21, 2025
Northern.tech Mender Client 4.x before 4.0.5 has Insecure Permissions.
Critical
Unreviewed
CVE-2024-55959
was published
Jan 21, 2025
In many locations, there is a possible way to access kernel memory in user space due to an...
High
Unreviewed
CVE-2018-9401
was published
Jan 18, 2025
In multiple functions of Parcel.cpp, there is a possible way to bypass address space layout...
High
Unreviewed
CVE-2018-9434
was published
Jan 18, 2025
ProTip!
Advisories are also available from the
GraphQL API